Vulnerability Details CVE-2024-37131
SCG Policy Manager, all versions, contains an overly permissive Cross-Origin Resource Policy (CORP) vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of malicious actions on the application in the context of the authenticated user.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.044
EPSS Ranking 88.5%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2024-37131
-
cpe:2.3:a:dell:policy_manager_for_secure_connect_gateway:5.18.00.20
-
cpe:2.3:a:dell:policy_manager_for_secure_connect_gateway:5.20.00.10
-
cpe:2.3:a:dell:policy_manager_for_secure_connect_gateway:5.22.00.16
-
cpe:2.3:a:dell:policy_manager_for_secure_connect_gateway:5.22.00.18