DSA-2025-249: Security Update for Dell Secure Connect Gateway Policy Manager Multiple Third-Party Component Vulnerabilities.
Summary: Dell Secure Connect Gateway Policy Manager contains remediation for multiple vulnerabilities that could be exploited by malicious users to compromise the affected system.
This article applies to
This article does not apply to
This article is not tied to any specific product.
Not all product versions are identified in this article.
Impact
High
Details
| Third-Party Component | CVEs | More information |
| Java | CVE-2024-47606, CVE-2024-54534, CVE-2025-21587, CVE-2025-30698, CVE-2025-30691 | https://nvd.nist.gov/vuln/search |
| SUSE Enterprise 12 SP5 | CVE-2020-15778, CVE-2024-10979, CVE-2025-26465, CVE-2025-32728 | https://nvd.nist.gov/vuln/search |
| Apache Tomcat | CVE-2025-24813, CVE-2025-31650, CVE-2025-31651, CVE-2025-46701, CVE-2025-48988, CVE-2025-49125 | https://nvd.nist.gov/vuln/search |
| Spring Framework and Related | CVE-2024-57699, CVE-2025-22233, CVE-2025-22228, CVE-2025-22234, CVE-2025-41232 | https://nvd.nist.gov/vuln/search |
| Other | CVE-2025-27820, CVE-2025-48734 | https://nvd.nist.gov/vuln/search |
Affected Products & Remediation
| CVEs Addressed | Product | Affected Versions | Updated Version | Link to Update |
| CVE-2020-15778, CVE-2024-10979, CVE-2024-47606, CVE-2024-54534, CVE-2024-57699, CVE-2025-21587, CVE-2025-22228, CVE-2025-22233, CVE-2025-22234, CVE-2025-24813, CVE-2025-26465, CVE-2025-26465, CVE-2025-27820, CVE-2025-30691, CVE-2025-30698, CVE-2025-31650, CVE-2025-32728, CVE-2025-41232, CVE-2025-46701, CVE-2025-48734, CVE-2025-48988, CVE-2025-49125 | Dell Policy Manager for Secure Connect Gateway | Versions prior to 5.28.00.14 | Version 5.30.00.14 or later | https://www.dell.com/support/home/product-support/product/secure-connect-gateway-ve/drivers |
| CVEs Addressed | Product | Affected Versions | Updated Version | Link to Update |
| CVE-2020-15778, CVE-2024-10979, CVE-2024-47606, CVE-2024-54534, CVE-2024-57699, CVE-2025-21587, CVE-2025-22228, CVE-2025-22233, CVE-2025-22234, CVE-2025-24813, CVE-2025-26465, CVE-2025-26465, CVE-2025-27820, CVE-2025-30691, CVE-2025-30698, CVE-2025-31650, CVE-2025-32728, CVE-2025-41232, CVE-2025-46701, CVE-2025-48734, CVE-2025-48988, CVE-2025-49125 | Dell Policy Manager for Secure Connect Gateway | Versions prior to 5.28.00.14 | Version 5.30.00.14 or later | https://www.dell.com/support/home/product-support/product/secure-connect-gateway-ve/drivers |
Revision History
| Revision | Date | Description |
| 1.0 | 2025-06-23 | Initial Release |
| 2.0 | 2025-07-08 | Updated the category section |
| 3.0 | 2025-07-23 | Updated the category section |
Related Information
Legal Disclaimer
Affected Products
Secure Connect Gateway, Secure Connect Gateway - Application Edition, Secure Connect Gateway - Virtual EditionArticle Properties
Article Number: 000335109
Article Type: Dell Security Advisory
Last Modified: 23 Jul 2025
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.