Description
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Execution with Unnecessary Privileges vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Protection mechanism bypass. This vulnerability is considered critical because a low-privileged operator with SSH access to the SCG host can gain root-level access to the host without requiring a password by leveraging the exposed Docker socket. Additionally, an attacker who compromises a service running within the orchestrator container can access the same socket and escape the container boundary to obtain host-level control. Dell recommends that customers upgrade at the earliest opportunity.
Published: 2026-09-07
Score: 9.3 Critical
EPSS: < 1% Very Low
KEV: No
Impact: Root-level host access via exposed Docker socket
Action: Patch Immediately
AI Analysis

Impact

An execution with unnecessary privileges flaw (CWE‑250) in Dell Secure Connect Gateway 5.0 Appliance and Application allows an attacker with local access to exploit the exposed Docker socket. The attacker can bypass protection mechanisms, gain root‑level access to the host without a password, or escape a container boundary if a service inside the orchestrator container is compromised. This capability enables full control over the SCG host.

Affected Systems

Dell Secure Connect Gateway 5.0 Appliance versions earlier than 5.36.00.16 and Dell Secure Connect Gateway 5.0 Application versions earlier than 5.36.00.00 are affected. These products run on the SCG host and provide the Docker environment that is exploited.

Risk and Exploitability

The CVSS score of 9.3 classifies this vulnerability as critical. Although no EPSS score is provided, Dell notes that a low‑privileged operator with SSH access to the SCG host can gain root-level access immediately by leveraging the exposed Docker socket. The issue can also be exploited by compromising a service running within the orchestrator container, allowing escape from the container boundary and host‑level control. Because the vulnerability requires local access or compromise of an orchestrator service, the attack surface is limited, but the potential impact remains severe.

Generated by OpenCVE AI on September 7, 2026 at 15:03 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Dell Secure Connect Gateway 5.0 to version 5.36.00.16 (Appliance) or 5.36.00.00 (Application) or later
  • Disable or restrict the Docker socket by removing it from the container context and setting appropriate host permissions
  • Restrict local SSH access to trusted administrators and enforce strong authentication mechanisms
  • Monitor logs for unauthorized Docker socket activity

Generated by OpenCVE AI on September 7, 2026 at 15:03 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 11 Sep 2026 23:45:00 +0000

Type Values Removed Values Added
First Time appeared Dell secure Connect Gateway
CPEs cpe:2.3:a:dell:secure_connect_gateway:*:*:*:*:application:*:*:*
cpe:2.3:a:dell:secure_connect_gateway:*:*:*:*:virtual:*:*:*
Vendors & Products Dell secure Connect Gateway

Tue, 08 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
First Time appeared Dell
Dell secure Connect Gateway Appliance
Dell secure Connect Gateway Application
Vendors & Products Dell
Dell secure Connect Gateway Appliance
Dell secure Connect Gateway Application

Tue, 08 Sep 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 07 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Title Exploitable Exposed Docker Socket Allows Local Privilege Escalation in Dell Secure Connect Gateway 5.0

Mon, 07 Sep 2026 13:15:00 +0000

Type Values Removed Values Added
Description Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Execution with Unnecessary Privileges vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Protection mechanism bypass. This vulnerability is considered critical because a low-privileged operator with SSH access to the SCG host can gain root-level access to the host without requiring a password by leveraging the exposed Docker socket. Additionally, an attacker who compromises a service running within the orchestrator container can access the same socket and escape the container boundary to obtain host-level control. Dell recommends that customers upgrade at the earliest opportunity.
Weaknesses CWE-250
References
Metrics cvssV3_1

{'score': 9.3, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H'}


Subscriptions

Dell Secure Connect Gateway Secure Connect Gateway Appliance Secure Connect Gateway Application
cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2026-09-08T13:14:40.546Z

Reserved: 2026-08-26T06:04:58.631Z

Link: CVE-2026-80238

cve-icon Vulnrichment

Updated: 2026-09-08T13:14:36.147Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-07T13:20:39.293

Modified: 2026-09-11T21:23:22.180

Link: CVE-2026-80238

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-08T20:37:05Z

Weaknesses
  • CWE-250

    Execution with Unnecessary Privileges