Description
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Execution with Unnecessary Privileges vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Protection mechanism bypass. This vulnerability is considered critical because a low-privileged operator with SSH access to the SCG host can gain root-level access to the host without requiring a password by leveraging the exposed Docker socket. Additionally, an attacker who compromises a service running within the orchestrator container can access the same socket and escape the container boundary to obtain host-level control. Dell recommends that customers upgrade at the earliest opportunity.
Published: 2026-09-07
Score: 9.3 Critical
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

An execution with unnecessary privileges flaw (CWE‑250) in Dell Secure Connect Gateway 5.0 Appliance and Application allows an attacker with local access to exploit the exposed Docker socket. The attacker can bypass protection mechanisms, gain root‑level access to the host without a password, or escape a container boundary if a service inside the orchestrator container is compromised. This capability enables full control over the SCG host.

Affected Systems

Dell Secure Connect Gateway 5.0 Appliance versions earlier than 5.36.00.16 and Dell Secure Connect Gateway 5.0 Application versions earlier than 5.36.00.00 are affected. These products run on the SCG host and provide the Docker environment that is exploited.

Risk and Exploitability

The CVSS score of 9.3 classifies this vulnerability as critical. Although no EPSS score is provided, Dell notes that a low‑privileged operator with SSH access to the SCG host can gain root-level access immediately by leveraging the exposed Docker socket. The issue can also be exploited by compromising a service running within the orchestrator container, allowing escape from the container boundary and host‑level control. Because the vulnerability requires local access or compromise of an orchestrator service, the attack surface is limited, but the potential impact remains severe.

Generated by OpenCVE AI on September 7, 2026 at 15:03 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Dell Secure Connect Gateway 5.0 to version 5.36.00.16 (Appliance) or 5.36.00.00 (Application) or later
  • Disable or restrict the Docker socket by removing it from the container context and setting appropriate host permissions
  • Restrict local SSH access to trusted administrators and enforce strong authentication mechanisms
  • Monitor logs for unauthorized Docker socket activity

Generated by OpenCVE AI on September 7, 2026 at 15:03 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 07 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Title Exploitable Exposed Docker Socket Allows Local Privilege Escalation in Dell Secure Connect Gateway 5.0

Mon, 07 Sep 2026 13:15:00 +0000

Type Values Removed Values Added
Description Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Execution with Unnecessary Privileges vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Protection mechanism bypass. This vulnerability is considered critical because a low-privileged operator with SSH access to the SCG host can gain root-level access to the host without requiring a password by leveraging the exposed Docker socket. Additionally, an attacker who compromises a service running within the orchestrator container can access the same socket and escape the container boundary to obtain host-level control. Dell recommends that customers upgrade at the earliest opportunity.
Weaknesses CWE-250
References
Metrics cvssV3_1

{'score': 9.3, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2026-09-07T12:58:19.733Z

Reserved: 2026-08-26T06:04:58.631Z

Link: CVE-2026-80238

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-07T13:20:39.293

Modified: 2026-09-07T13:20:39.293

Link: CVE-2026-80238

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-07T15:15:17Z

Weaknesses
  • CWE-250

    Execution with Unnecessary Privileges