Impact
This vulnerability is an Improper Privilege Management flaw that allows a low‑privileged user with local access to elevate privileges on Dell Secure Connect Gateway 5.0. An attacker who can execute operations locally may gain higher privileges, potentially taking full control of the appliance or application.
Affected Systems
The affected products are Dell Secure Connect Gateway 5.0 Appliance and 5.0 Application. Versions prior to 5.36.00.16 for the Appliance and prior to 5.36.00.00 for the Application contain the vulnerability.
Risk and Exploitability
The CVSS score of 5.5 indicates a medium severity, and because the EPSS score is not available, the exact exploitation probability cannot be determined; however, the vulnerability is not currently listed in the CISA KEV catalog. A low‑privileged attacker who can access the system locally can exploit the flaw to gain elevated privileges, enabling them to move laterally or perform other malicious actions on the compromised device.
OpenCVE Enrichment