Impact
An execution with unnecessary privileges flaw (CWE‑250) in Dell Secure Connect Gateway 5.0 Appliance and Application allows an attacker with local access to exploit the exposed Docker socket. The attacker can bypass protection mechanisms, gain root‑level access to the host without a password, or escape a container boundary if a service inside the orchestrator container is compromised. This capability enables full control over the SCG host.
Affected Systems
Dell Secure Connect Gateway 5.0 Appliance versions earlier than 5.36.00.16 and Dell Secure Connect Gateway 5.0 Application versions earlier than 5.36.00.00 are affected. These products run on the SCG host and provide the Docker environment that is exploited.
Risk and Exploitability
The CVSS score of 9.3 classifies this vulnerability as critical. Although no EPSS score is provided, Dell notes that a low‑privileged operator with SSH access to the SCG host can gain root-level access immediately by leveraging the exposed Docker socket. The issue can also be exploited by compromising a service running within the orchestrator container, allowing escape from the container boundary and host‑level control. Because the vulnerability requires local access or compromise of an orchestrator service, the attack surface is limited, but the potential impact remains severe.
OpenCVE Enrichment