🔥 この記事の詳細
2026-10-09 更新
B
今週中

Dell Secure Connect Gateway (SCG) Policy Managerにおいて、複数の脆弱性が修正されました

脆弱性🌐 英語ソース
📅 2026-10-09📰 csirt_it
📌 一言でいうと
Dell Secure Connect Gateway (SCG) Policy Managerにおいて、複数の脆弱性が修正されました。この中には「高」深刻度の脆弱性が18件含まれており、リモートコード実行 (RCE) や認証バイパス、権限昇格などのリスクが存在します。影響を受けるバージョンは 5.34.00.16 未満であり、最新バージョンへのアップデートが推奨されています。
🔍該当判定
  • Dell Secure Connect Gateway (SCG) Policy Manager を導入している
  • Dell Secure Connect Gateway (SCG) Policy Manager のバージョンが 5.34.00.16 より古い
  • Dellの製品を用いて、リモートアクセス権限やスクリプト実行の管理を行っている
上記いずれにも該当しない → 静観でOK
✅該当時の対応
影響を受ける製品のバージョンを確認し、ベンダーが提供する最新バージョン(5.34.00.16以降)へ速やかにアップデートしてください。
📧 メール案を見る (管理者向け)
⚠️ これは AI が生成した参考例です。配信前に必ず内容をご確認のうえ、貴社の状況に合わせて編集してご利用ください。実際の被害状況や自社の利用環境を踏まえた判断は、貴社のセキュリティ責任者にご確認ください。
件名: 【共有】Dell Secure Connect Gateway Policy Manager 脆弱性対応について

お疲れさまです。Dell Secure Connect Gateway (SCG) Policy Managerに関する脆弱性情報共有です。

■ 概要
Dell SCG Policy Managerにおいて、リモートコード実行 (RCE)、認証バイパス、権限昇格、任意ファイルの読み書き/削除、DoS、情報漏洩などの複数の脆弱性が報告されました。特に深刻度が「高」とされる脆弱性が18件含まれています。

■ 影響範囲
- 対象製品: Dell Secure Connect Gateway (SCG) Policy Manager
- 対象バージョン: 5.34.00.16 未満

■ 対応手順
1. 現在利用している SCG Policy Manager のバージョンを確認してください。
2. 5.34.00.16 未満である場合は、ベンダーのセキュリティアドバイザリに従い、最新バージョンへアップデートを適用してください。

■ 参考情報
- Dell 公式セキュリティアドバイザリ

対応優先度: 高
対応期限: 速やかに
Subject: [Security Advisory] Dell Secure Connect Gateway Policy Manager Vulnerabilities

Dear IT Administration Team,

We are sharing critical vulnerability information regarding Dell Secure Connect Gateway (SCG) Policy Manager.

■ Overview
Multiple vulnerabilities have been identified in Dell SCG Policy Manager, including 18 'High' severity flaws. These vulnerabilities could potentially allow Remote Code Execution (RCE), authentication bypass, elevation of privilege, arbitrary file operations, Denial of Service (DoS), and information disclosure.

■ Scope
- Product: Dell Secure Connect Gateway (SCG) Policy Manager
- Affected Versions: Prior to 5.34.00.16

■ Mitigation Steps
1. Verify the current version of your SCG Policy Manager installation.
2. If the version is older than 5.34.00.16, immediately update to the latest version as per the vendor's security bulletin.

■ Reference
- Dell Official Security Advisory

Priority: High
Deadline: Immediate