CVE-2026-80238

9.3

Dell · Secure Connect Gateway

Dell Secure Connect Gateway 5.0 contains an execution with unnecessary privileges vulnerability due to an exposed Docker socket, allowing local attackers to achieve root-level host access.

Executive summary

An unauthenticated local attacker can exploit a privilege escalation flaw in Dell Secure Connect Gateway to gain full root-level control over the underlying host system.

Vulnerability

This vulnerability involves the execution of processes with unnecessary privileges, specifically due to an exposed Docker socket. An unauthenticated attacker with local access can leverage this socket to escape container boundaries or escalate privileges to root on the host system without requiring a password.

Business impact

The exploitation of this vulnerability results in full system compromise, granting an attacker complete control over the appliance or application host. Given the critical CVSS score of 9.3, this flaw poses a severe risk of data exfiltration, lateral movement within the network, and complete loss of system integrity. Organizations relying on this gateway for secure connectivity may face significant operational disruption and security exposure if left unpatched.

Remediation

Immediate Action: Upgrade Dell Secure Connect Gateway to version 5.36.00.00 (for Application) or 5.36.00.16 (for Appliance) or later as specified in the vendor security advisory.

Proactive Monitoring: Review system access logs for unauthorized attempts to interact with the Docker daemon or unexpected shell activity originating from containerized services.

Compensating Controls: Restrict local system access to authorized personnel only and implement strict host-based firewall rules to prevent unauthorized socket communication.

Exploitation status

Public Exploit Available: Unknown

Analyst recommendation

Due to the critical severity and the potential for full host-level compromise, this update should be prioritized immediately. Administrators must ensure that the gateway is upgraded to the specified versions to close the Docker socket exposure and prevent unauthorized privilege escalation.

More Dell CVEs all →

History

  1. Disclosed CVE record published
  2. Collected by CVE Brief via github
  3. Analyst report written
  4. Published in the daily brief critical section

Sources