Impact
The vulnerability is an Improper Certificate Validation flaw in Dell Secure Connect Gateway 5.0. An unauthenticated attacker who can reach the gateway remotely could exploit the flaw to bypass authentication checks, leading to unauthorized access to the appliance or application.
Affected Systems
Affected systems include Dell Secure Connect Gateway 5.0 Appliance versions prior to 5.36.00.16 and Dell Secure Connect Gateway 5.0 Application versions prior to 5.36.00.00. These versions are available as appliance or application deployments.
Risk and Exploitability
The flaw carries a CVSS score of 8.2, indicating high severity. No EPSS data is available, and the vulnerability is not listed in the CISA KEV catalog. The attack vector is inferred to be remote, unauthenticated access; an attacker could exploit the improper validation of certificates to gain unauthorized entry. The presence of CWE‑295 highlights the weakness in trust validation logic.
OpenCVE Enrichment