CVE-2024-51539

CVSS 3.1 Score 2.3 of 10 (low)

Details

Published Feb 25, 2025
CWE ID 89

Summary

CVE-2024-51539 is a local SQL injection vulnerability affecting the Dell Secure Connect Gateway (SCG) Application and Appliance, versions prior to 5.28. An attacker with high privileges on the affected system can potentially exploit this flaw, resulting in the disclosure of non-sensitive information that does not involve customer data. The vulnerability arises due to the application's failure to properly neutralize special SQL command elements. This issue can only be exploited on the local system, posing a risk for organizations using unpatched Dell SCG systems.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share