Dell SCG 5.0 Path Traversal Remote Code Execution Vulnerability
First seen Sep 10, 2026 · Updated Sep 10, 2026 · CVSS 6.5
A path traversal vulnerability in Dell SCG 5.0 Appliance and Application allows an unauthenticated remote attacker to escape restricted directories, potentially leading to remote code execution. The flaw affects versions prior to 5.36.00.16 (Appliance) and 5.36.00.00 (Application) and carries a CVSS score of 6.5, indicating medium severity despite the RCE potential.
Technical Analysis
CVE-2026-80129 is classified as an Improper Limitation of a Pathname to a Restricted Directory (CWE-22, Path Traversal) flaw impacting Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Application versions prior to 5.36.00.00. An unauthenticated attacker with network access can craft malicious path sequences (e.g., '../' traversal payloads) to escape sandboxed directories and write or access files outside intended boundaries, which Dell states can lead to remote code execution. No authentication is required, lowering the exploitation barrier, though the moderate CVSS score suggests some constraints on attack complexity or impact scope not fully detailed in the advisory. Organizations should treat this as a priority patch item given the unauthenticated RCE potential on a network-facing appliance. If Dell SCG appliances are used as gateways or ingress points for AI agent infrastructure, RAG data pipelines, or tool-orchestration backends, a successful compromise could allow attackers to pivot into agent environments, exfiltrate API keys/credentials used by agents, or tamper with data flowing through the gateway.
Affected Systems
Dell SCG 5.0 Appliance versions prior to 5.36.00.16; Dell SCG 5.0 Application versions prior to 5.36.00.00
Indicators of Compromise
- No specific IOCs published at this time; monitor Dell Security Advisories for updates.
Remediation Steps
- 1
Apply Dell Security Patch
Upgrade Dell SCG 5.0 Appliance to version 5.36.00.16 or later, and Dell SCG 5.0 Application to version 5.36.00.00 or later as soon as patches are available.
- 2
Restrict Network Access
Limit exposure of Dell SCG management and application interfaces to trusted internal networks only, using firewall rules or VPN access, until patching is complete.
- 3
Monitor for Exploitation Attempts
Review logs for anomalous path traversal patterns (e.g., '../' sequences) in requests to SCG appliances and enable alerting on unauthorized file access attempts.
- 4
Validate Downstream Agent Integrations
If SCG appliances sit in front of or route traffic for AI agent, RAG, or automation pipelines, audit credentials and API keys accessible via the appliance and rotate them if compromise is suspected.
CVE / Advisory IDs
Industries Most Exposed
Respond to this threat
Pro subscribers get a full AI-generated incident-response playbook for this threat — detection, containment, eradication, and recovery steps — plus an unlimited AI Threat Advisor for questions about your environment.