← Browse

CVE-2026-61409

Medium

Elevated severity or exploit probability.

CVSS base
7.3 HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
EPSS — probability of exploitation (30 days)
1.4%
70.3th percentile
CISA KEV
Not listed
Weakness / dates
CWE-78
Published 2026-09-07 · modified 2026-09-16

Description

Dell Secure Connect Gateway (SCG) 5.0 Application, versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to remote execution.

Affected

dell

References

Official: NVD · CVE.org