DSA-2025-249: Security Update for Dell Secure Connect Gateway Policy Manager Multiple Third-Party Component Vulnerabilities.

Riepilogo: Dell Secure Connect Gateway Policy Manager contains remediation for multiple vulnerabilities that could be exploited by malicious users to compromise the affected system.

Questo articolo si applica a Questo articolo non si applica a Questo articolo non è legato a un prodotto specifico. Non tutte le versioni del prodotto sono identificate in questo articolo.

Impatto

High

Dettagli

Third-Party Component CVEs More information
Java CVE-2024-47606, CVE-2024-54534, CVE-2025-21587, CVE-2025-30698, CVE-2025-30691 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
SUSE Enterprise 12 SP5 CVE-2020-15778, CVE-2024-10979, CVE-2025-26465, CVE-2025-32728 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
Apache Tomcat CVE-2025-24813, CVE-2025-31650, CVE-2025-31651, CVE-2025-46701, CVE-2025-48988, CVE-2025-49125 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
Spring Framework and Related CVE-2024-57699, CVE-2025-22233, CVE-2025-22228, CVE-2025-22234, CVE-2025-41232 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
Other CVE-2025-27820, CVE-2025-48734 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

 

Dell Technologies raccomanda a tutti i clienti di prendere in considerazione sia il punteggio base CVSS, sia ogni eventuale punteggio temporale o ambientale che possa avere effetti sul livello di gravità potenziale associato a una specifica vulnerabilità di sicurezza.

Prodotti interessati e correzione

CVEs Addressed Product Affected Versions Updated Version Link to Update
CVE-2020-15778, CVE-2024-10979, CVE-2024-47606, CVE-2024-54534, CVE-2024-57699, CVE-2025-21587, CVE-2025-22228, CVE-2025-22233, CVE-2025-22234, CVE-2025-24813, CVE-2025-26465, CVE-2025-26465, CVE-2025-27820, CVE-2025-30691, CVE-2025-30698, CVE-2025-31650, CVE-2025-32728, CVE-2025-41232, CVE-2025-46701, CVE-2025-48734, CVE-2025-48988, CVE-2025-49125 Dell Policy Manager for Secure Connect Gateway Versions prior to 5.28.00.14 Version 5.30.00.14 or later https://www.dell.com/support/home/product-support/product/secure-connect-gateway-ve/drivers

 

CVEs Addressed Product Affected Versions Updated Version Link to Update
CVE-2020-15778, CVE-2024-10979, CVE-2024-47606, CVE-2024-54534, CVE-2024-57699, CVE-2025-21587, CVE-2025-22228, CVE-2025-22233, CVE-2025-22234, CVE-2025-24813, CVE-2025-26465, CVE-2025-26465, CVE-2025-27820, CVE-2025-30691, CVE-2025-30698, CVE-2025-31650, CVE-2025-32728, CVE-2025-41232, CVE-2025-46701, CVE-2025-48734, CVE-2025-48988, CVE-2025-49125 Dell Policy Manager for Secure Connect Gateway Versions prior to 5.28.00.14 Version 5.30.00.14 or later https://www.dell.com/support/home/product-support/product/secure-connect-gateway-ve/drivers

 

Cronologia delle revisioni

RevisionDateDescription
1.02025-06-23Initial Release
2.02025-07-08Updated the category section
3.02025-07-23Updated the category section

 

Informazioni correlate

Prodotti interessati

Secure Connect Gateway, Secure Connect Gateway - Application Edition, Secure Connect Gateway - Virtual Edition
Proprietà dell'articolo
Numero articolo: 000335109
Tipo di articolo: Dell Security Advisory
Ultima modifica: 23 lug 2025
Trova risposta alle tue domande dagli altri utenti Dell
Support Services
Verifica che il dispositivo sia coperto dai Servizi di supporto.