CVE-2026-73586
MEDIUM
6,4
Source: [email protected]
Attack Vector: adjacent_network
Attack Complexity: high
Privileges Required: low
User Interaction: required
Scope: unchanged
Confidentiality: high
Integrity: high
Availability: low
Description
AI Translation Available
Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains an Insufficient Session Expiration vulnerability. A low privileged attacker with adjacent network access could potentially exploit this vulnerability, leading to Elevation of privileges, Protection mechanism bypass, and Unauthorized access.
613
Insufficient Session Expiration
IncompleteCommon Consequences
Security Scopes Affected:
Access Control
Potential Impacts:
Bypass Protection Mechanism
Applicable Platforms
Technologies:
Web Based, Web Server
Application
Policy Manager For Secure Connect Gateway by Dell
Version Range Affected
To
5.36.00.16
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:a:dell:policy_manager_for_secure_connect_gateway:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://www.dell.com/support/kbdoc/en-ca/000503592/dsa-2026-385-security-update…