Dell SCG, versions prior to 5.22.00.00, contain a SQL Injection Vulnerability in the SCG UI for an internal audit REST API. A remote authenticated attacker could potentially exploit this vulnerability, leading to the execution of certain SQL commands on the application's backend database causing potential unauthorized access and modification of application data.
History

Tue, 04 Feb 2025 17:45:00 +0000

Type Values Removed Values Added
First Time appeared Dell
Dell secure Connect Gateway
CPEs cpe:2.3:a:dell:secure_connect_gateway:*:*:*:*:appliance:*:*:*
Vendors & Products Dell
Dell secure Connect Gateway

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2024-08-02T01:10:54.105Z

Reserved: 2024-03-18T08:44:18.922Z

Link: CVE-2024-29169

cve-icon Vulnrichment

Updated: 2024-08-02T01:10:54.105Z

cve-icon NVD

Status : Analyzed

Published: 2024-06-13T16:15:10.610

Modified: 2025-02-04T17:21:08.633

Link: CVE-2024-29169

cve-icon Redhat

No data.