CVE-2024-51539
CVSS 3.1 Score 2.3 of 10 (low)
Details
Summary
CVE-2024-51539 is a local SQL injection vulnerability affecting the Dell Secure Connect Gateway (SCG) Application and Appliance, versions prior to 5.28. An attacker with high privileges on the affected system can potentially exploit this flaw, resulting in the disclosure of non-sensitive information that does not involve customer data. The vulnerability arises due to the application's failure to properly neutralize special SQL command elements. This issue can only be exploited on the local system, posing a risk for organizations using unpatched Dell SCG systems.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Dell Technologies