CVE-2025-23382 MEDIUM

CVE-2025-23382

Vendor Dell
Product Secure Connect Gateway (SCG) 5.0 Appliance - SRS
Weakness CWE-497
Published March 19, 2025
Last update March 19, 2025

CVSS base score

5.5/10
Attack vector Network
Attack complexity High
Privileges required Low
User interaction Required
Confidentiality Low
Integrity Low

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:L

What the vulnerability does

01Description

Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.26, contain(s) an Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.c

Key dates

02Disclosure timeline

March 19, 2025 CVE published
March 19, 2025 Record updated