Impact
This vulnerability is an Improper Check or Handling of Exceptional Conditions in Dell Secure Connect Gateway 5.0 that can allow an attacker to bypass a protection mechanism. The flaw enables an unauthenticated attacker with remote access to manipulate the system in a way that the intended security controls are circumvented. The documentation indicates that bypassing these controls could potentially expose the system to further exploitation, though precise downstream effects are not detailed.
Affected Systems
Affected systems are Dell Secure Connect Gateway 5.0 Appliance versions earlier than 5.36.00.16 and Dell Secure Connect Gateway 5.0 Application earlier than 5.36.00.00. These versions were shipped before the fix that addresses the improper exception handling. Users running any of the listed older versions are potentially vulnerable if exposed to remote traffic.
Risk and Exploitability
The CVSS score of 7.5 describes a medium‑to‑high severity vulnerability. An attacker could exploit it remotely without authentication, as noted in the advisory. Although the EPSS score is unavailable, the lack of a KEV listing suggests no publicly known exploits yet, but the potential impact and ease of access mean the risk remains high. Administrators should treat this as a priority for remediation.
OpenCVE Enrichment