Description
Dell Secure Connect Gateway 5.20 contains an improper authentication vulnerability during the SRS to SCG update path. A remote low privileged attacker could potentially exploit this vulnerability, leading to impersonation of the server through presenting a fake self-signed certificate and communicating with the remote server.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-20001 | Dell Secure Connect Gateway 5.20 contains an improper authentication vulnerability during the SRS to SCG update path. A remote low privileged attacker could potentially exploit this vulnerability, leading to impersonation of the server through presenting a fake self-signed certificate and communicating with the remote server. |
References
History
Wed, 04 Dec 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dell
Dell secure Connect Gateway |
|
| CPEs | cpe:2.3:a:dell:secure_connect_gateway:5.20.00.10:*:*:*:*:*:*:* | |
| Vendors & Products |
Dell
Dell secure Connect Gateway |
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2024-08-15T19:11:27.851Z
Reserved: 2024-01-10T15:29:59.457Z
Link: CVE-2024-22457
Updated: 2024-08-01T22:43:34.962Z
Status : Analyzed
Published: 2024-03-01T11:15:07.127
Modified: 2024-12-04T17:57:09.997
Link: CVE-2024-22457
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD