Impact
A race condition in Dell Secure Connect Gateway 5.0 Appliance and Application allows an attacker to thread concurrent operations on shared resources, resulting in improper synchronization. If exploited, an unauthenticated attacker with remote access can trigger a denial of service by corrupting shared state or exhausting system resources. This flaw is categorized as CWE‑567.
Affected Systems
Dell Secure Connect Gateway 5.0 Appliance versions older than 5.36.00.16 and Dell Secure Connect Gateway 5.0 Application versions older than 5.36.00.00 are affected. The vulnerability applies to both appliance and application deployments listed by Dell as insecure prior to the specified patch releases.
Risk and Exploitability
The CVSS score of 5.3 indicates a moderate severity, and no EPSS value is available, implying limited data on real‑world exploitation probability. The vulnerability is not listed in the CISA KEV catalog, suggesting it is not yet widely exploited. However, the attack vector is likely remote and unauthenticated, meaning any host reachable over the network could be targeted to cause service disruption. Organizations should evaluate exposure based on their network segmentation and exposure to remote access.
OpenCVE Enrichment