Dell SCG 5.0 Appliance ISE before 5.36.00.16 / App before 5.36.00.00
CVE-2026-80174 Published on September 9, 2026
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insufficient Session Expiration vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to session theft.
Vulnerability Analysis
CVE-2026-80174 is exploitable with network access, and requires small amount of user privileges. This vulnerability is consided to have a high level of attack complexity. The potential impact of an exploit of this vulnerability is considered to have a high impact on confidentiality, with no impact on integrity and availability.
Weakness Type
Insufficient Session Expiration
According to WASC, "Insufficient Session Expiration is when a web site permits an attacker to reuse old session credentials or session IDs for authorization."
Products Associated with CVE-2026-80174
Want to know whenever a new CVE is published for Dell Secure Connect Gateway? stack.watch will email you.
Affected Versions
Dell Secure Connect Gateway 5.0 - Application:- Before 5.36.00.00 or later is affected.
- Before 5.36.00.16 or later is affected.