ID

VAR-202601-0741


CVE

CVE-2025-46696


DESCRIPTION

Dell Secure Connect Gateway (SCG) 5.0 Appliance and Application, version(s) versions 5.26 to 5.30, contain(s) an Execution with Unnecessary Privileges vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.

Trust: 1.0

sources: NVD: CVE-2025-46696

AFFECTED PRODUCTS

vendor:dellmodel:secure connect gatewayscope:ltversion:5.32.00.00

Trust: 1.0

vendor:dellmodel:secure connect gatewayscope:gteversion:5.26.00.00

Trust: 1.0

sources: NVD: CVE-2025-46696

CVSS

SEVERITY

CVSSV2

CVSSV3

security_alert@emc.com: CVE-2025-46696
value: MEDIUM

Trust: 1.0

nvd@nist.gov: CVE-2025-46696
value: MEDIUM

Trust: 1.0

security_alert@emc.com: CVE-2025-46696
baseSeverity: MEDIUM
baseScore: 6.4
vectorString: CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
attackVector: LOCAL
attackComplexity: HIGH
privilegesRequired: HIGH
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 0.5
impactScore: 5.9
version: 3.1

Trust: 1.0

nvd@nist.gov: CVE-2025-46696
baseSeverity: MEDIUM
baseScore: 6.7
vectorString: CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: HIGH
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 0.8
impactScore: 5.9
version: 3.1

Trust: 1.0

sources: NVD: CVE-2025-46696 // NVD: CVE-2025-46696

PROBLEMTYPE DATA

problemtype:NVD-CWE-noinfo

Trust: 1.0

problemtype:CWE-250

Trust: 1.0

sources: NVD: CVE-2025-46696

EXTERNAL IDS

db:NVDid:CVE-2025-46696

Trust: 1.0

sources: NVD: CVE-2025-46696

REFERENCES

url:https://www.dell.com/support/kbdoc/en-us/000385230/dsa-2025-390-dell-secure-connect-gateway-security-update-for-multiple-vulnerabilities

Trust: 1.0

sources: NVD: CVE-2025-46696

SOURCES

db:NVDid:CVE-2025-46696

LAST UPDATE DATE

2026-02-04T23:16:41.764000+00:00


SOURCES UPDATE DATE

db:NVDid:CVE-2025-46696date:2026-02-03T16:57:35.983

SOURCES RELEASE DATE

db:NVDid:CVE-2025-46696date:2026-01-06T15:15:44.040