DSA-2025-249: Security Update for Dell Secure Connect Gateway Policy Manager Multiple Third-Party Component Vulnerabilities.

Résumé: Dell Secure Connect Gateway Policy Manager contains remediation for multiple vulnerabilities that could be exploited by malicious users to compromise the affected system.

Cet article concerne Cet article ne concerne pas Cet article n’est associé à aucun produit spécifique. Toutes les versions du produit ne sont pas identifiées dans cet article.

Impact

High

Détails

Third-Party Component CVEs More information
Java CVE-2024-47606, CVE-2024-54534, CVE-2025-21587, CVE-2025-30698, CVE-2025-30691 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
SUSE Enterprise 12 SP5 CVE-2020-15778, CVE-2024-10979, CVE-2025-26465, CVE-2025-32728 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
Apache Tomcat CVE-2025-24813, CVE-2025-31650, CVE-2025-31651, CVE-2025-46701, CVE-2025-48988, CVE-2025-49125 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
Spring Framework and Related CVE-2024-57699, CVE-2025-22233, CVE-2025-22228, CVE-2025-22234, CVE-2025-41232 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
Other CVE-2025-27820, CVE-2025-48734 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

 

Dell Technologies recommande à tous les clients de prendre en compte à la fois le score de base CVSS et les scores temporels et environnementaux pertinents qui peuvent avoir un impact sur la gravité potentielle associée à une faille de sécurité donnée.

Produits concernés et mesure corrective

CVEs Addressed Product Affected Versions Updated Version Link to Update
CVE-2020-15778, CVE-2024-10979, CVE-2024-47606, CVE-2024-54534, CVE-2024-57699, CVE-2025-21587, CVE-2025-22228, CVE-2025-22233, CVE-2025-22234, CVE-2025-24813, CVE-2025-26465, CVE-2025-26465, CVE-2025-27820, CVE-2025-30691, CVE-2025-30698, CVE-2025-31650, CVE-2025-32728, CVE-2025-41232, CVE-2025-46701, CVE-2025-48734, CVE-2025-48988, CVE-2025-49125 Dell Policy Manager for Secure Connect Gateway Versions prior to 5.28.00.14 Version 5.30.00.14 or later https://www.dell.com/support/home/product-support/product/secure-connect-gateway-ve/drivers

 

CVEs Addressed Product Affected Versions Updated Version Link to Update
CVE-2020-15778, CVE-2024-10979, CVE-2024-47606, CVE-2024-54534, CVE-2024-57699, CVE-2025-21587, CVE-2025-22228, CVE-2025-22233, CVE-2025-22234, CVE-2025-24813, CVE-2025-26465, CVE-2025-26465, CVE-2025-27820, CVE-2025-30691, CVE-2025-30698, CVE-2025-31650, CVE-2025-32728, CVE-2025-41232, CVE-2025-46701, CVE-2025-48734, CVE-2025-48988, CVE-2025-49125 Dell Policy Manager for Secure Connect Gateway Versions prior to 5.28.00.14 Version 5.30.00.14 or later https://www.dell.com/support/home/product-support/product/secure-connect-gateway-ve/drivers

 

Historique des révisions

RevisionDateDescription
1.02025-06-23Initial Release
2.02025-07-08Updated the category section
3.02025-07-23Updated the category section

 

Informations connexes

Produits concernés

Secure Connect Gateway, Secure Connect Gateway - Application Edition, Secure Connect Gateway - Virtual Edition
Propriétés de l’article
Numéro d’article: 000335109
Type d’article: Dell Security Advisory
Dernière modification: 23 Jul 2025
Trouvez des réponses à vos questions auprès d’autres utilisateurs Dell
Services de support
Vérifiez si votre appareil est couvert par les services de support.