Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Dell Secure Connect Gateway (SCG) Application and Appliance, versions prior to 5.28, contains a SQL injection vulnerability due to improper neutralization of special elements used in an SQL command. This vulnerability can only be exploited locally on the affected system. A high-privilege attacker with access to the system could potentially exploit this vulnerability, leading to the disclosure of non-sensitive information that does not include any customer data.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
SQL命令中使用的特殊元素转义处理不恰当(SQL注入)
Vulnerability Title
Dell Secure Connect Gateway SQL注入漏洞
Vulnerability Description
Dell Secure Connect Gateway(Dell SCG)是美国戴尔(Dell)公司的一款安全连接网关。 Dell Secure Connect Gateway 5.28之前版本存在SQL注入漏洞,该漏洞源于SQL命令中特殊元素中和不当,可能导致非敏感信息泄露。
CVSS Information
N/A
Vulnerability Type
N/A