Search

Find a vulnerability

Search criteria

    186 vulnerabilities by Stormshield

    CVE-2026-14466 (GCVE-0-2026-14466)

    Vulnerability from nvd – Published: 2026-09-04 14:27 – Updated: 2026-09-04 14:41
    VLAI
    Title
    Possible XSS in the SNS web administration panel
    Summary
    It’s possible to run a stored XSS in Stormshield’s web administration panel. To exploit this vulnerability, a SNS administrator with appropriate permissions must inject  some malicious script in a group’s comments in the webservices administration interface.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-04 14:40 UTC
    CWE
    • CWE-79 - Improper neutralization of input during web page generation ('cross-site scripting')
    References
    Impacted products
    Vendor Product Version
    Stormshield Stormshield Network Security Affected: 4.8.0 , ≤ 4.8.16 (semver)
    Affected: 5.0.0 , ≤ 5.0.6 (semver)
    Unaffected: 4.8.17 (semver)
    Unaffected: 5.0.7 (semver)
    Unaffected: 5.1.0 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-14466",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-04T14:40:47.477086Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-04T14:41:07.268Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unknown",
              "product": "Stormshield Network Security",
              "vendor": "Stormshield",
              "versions": [
                {
                  "lessThanOrEqual": "4.8.16",
                  "status": "affected",
                  "version": "4.8.0",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "5.0.6",
                  "status": "affected",
                  "version": "5.0.0",
                  "versionType": "semver"
                },
                {
                  "status": "unaffected",
                  "version": "4.8.17",
                  "versionType": "semver"
                },
                {
                  "status": "unaffected",
                  "version": "5.0.7",
                  "versionType": "semver"
                },
                {
                  "status": "unaffected",
                  "version": "5.1.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "We acknowledge the researcher Supr4s for discovering this vulnerability."
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eIt\u2019s possible to run a stored XSS in Stormshield\u2019s web administration panel.\u003c/p\u003e\u003cp\u003eTo exploit this vulnerability, a SNS administrator with appropriate permissions must inject\u0026nbsp; some malicious script in a group\u2019s comments in the webservices administration interface.\u003c/p\u003e"
                }
              ],
              "value": "It\u2019s possible to run a stored XSS in Stormshield\u2019s web administration panel.\n\n\n\nTo exploit this vulnerability, a SNS administrator with appropriate permissions must inject\u00a0 some malicious script in a group\u2019s comments in the webservices administration interface."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "ADJACENT_NETWORK",
                "availabilityImpact": "NONE",
                "baseScore": 4.3,
                "baseSeverity": "MEDIUM",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "NONE",
                "privilegesRequired": "HIGH",
                "scope": "UNCHANGED",
                "userInteraction": "REQUIRED",
                "vectorString": "CVSS:3.1/AV:A/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-79",
                  "description": "CWE-79 Improper neutralization of input during web page generation (\u0027cross-site scripting\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-04T14:32:28.756Z",
            "orgId": "24a3c815-5f22-4d74-967a-30958d6466f4",
            "shortName": "airbus"
          },
          "references": [
            {
              "url": "https://advisories.stormshield.eu/2026-006"
            }
          ],
          "solutions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eThe following updates will fix this vulnerability:\u003c/p\u003e\u003cul\u003e\u003cli\u003eSNS 5.1.0\u003c/li\u003e\u003cli\u003eSNS 5.0.7\u003c/li\u003e\u003cli\u003eSNS 4.8.17\u003c/li\u003e\u003c/ul\u003e"
                }
              ],
              "value": "The following updates will fix this vulnerability:\n\n  *  SNS 5.1.0\n  *  SNS 5.0.7\n  *  SNS 4.8.17"
            }
          ],
          "source": {
            "discovery": "UNKNOWN"
          },
          "title": "Possible XSS in the SNS web administration panel",
          "x_generator": {
            "engine": "Vulnogram 1.0.5"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "24a3c815-5f22-4d74-967a-30958d6466f4",
        "assignerShortName": "airbus",
        "cveId": "CVE-2026-14466",
        "datePublished": "2026-09-04T14:27:58.190Z",
        "dateReserved": "2026-07-02T12:42:10.025Z",
        "dateUpdated": "2026-09-04T14:41:07.268Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-8482 (GCVE-0-2026-8482)

    Vulnerability from nvd – Published: 2026-07-02 08:42 – Updated: 2026-07-02 12:20
    VLAI
    Title
    Information leak in NSRPC client history
    Summary
    A vulnerability was discovered on StormShield Network Security 4.3.0 to 4.3.41 (included), 4.8.0 to 4.8.15 (included) , 5.0.0 to 5.0.5 (included) There is a possible leak of secret information if administration commands have been passed with the CLI command line tool. Someone with SSH access to the firewall (if SSH multiuser mode is enabled) could possibly get the proxy CA passphrase or TPM password.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-07-02 12:20 UTC
    CWE
    • CWE-532 - Insertion of sensitive information into log file
    References
    Impacted products
    Vendor Product Version
    Stormshield Stormshield Network Security Affected: 4.3.0 , ≤ 4.3.41 (semver)
    Affected: 4.8.0 , ≤ 4.8.15 (semver)
    Affected: 5.0.0 , ≤ 5.0.5 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-8482",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-07-02T12:20:06.574781Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-07-02T12:20:17.839Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unknown",
              "product": "Stormshield Network Security",
              "vendor": "Stormshield",
              "versions": [
                {
                  "lessThanOrEqual": "4.3.41",
                  "status": "affected",
                  "version": "4.3.0",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "4.8.15",
                  "status": "affected",
                  "version": "4.8.0",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "5.0.5",
                  "status": "affected",
                  "version": "5.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "A vulnerability was discovered on StormShield Network Security 4.3.0 to 4.3.41 (included), 4.8.0 to 4.8.15 (included) , 5.0.0 to 5.0.5 (included)\n\u003cbr\u003eThere is a possible leak of secret information if administration commands have been passed with the CLI command line tool.\n\u003cbr\u003eSomeone with SSH access to the firewall (if SSH multiuser mode is enabled) could possibly get the proxy CA passphrase or TPM password.\u0026nbsp;\u003cbr\u003e"
                }
              ],
              "value": "A vulnerability was discovered on StormShield Network Security 4.3.0 to 4.3.41 (included), 4.8.0 to 4.8.15 (included) , 5.0.0 to 5.0.5 (included)\n\nThere is a possible leak of secret information if administration commands have been passed with the CLI command line tool.\n\nSomeone with SSH access to the firewall (if SSH multiuser mode is enabled) could possibly get the proxy CA passphrase or TPM password."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "ADJACENT_NETWORK",
                "availabilityImpact": "NONE",
                "baseScore": 4.3,
                "baseSeverity": "MEDIUM",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "NONE",
                "privilegesRequired": "HIGH",
                "scope": "UNCHANGED",
                "userInteraction": "REQUIRED",
                "vectorString": "CVSS:3.1/AV:A/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-532",
                  "description": "CWE-532 Insertion of sensitive information into log file",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-07-02T08:42:56.777Z",
            "orgId": "24a3c815-5f22-4d74-967a-30958d6466f4",
            "shortName": "airbus"
          },
          "references": [
            {
              "url": "https://advisories.stormshield.eu/2025-007/"
            }
          ],
          "solutions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "The following updates fix this vulnerability:\u003cbr\u003e\u003cul\u003e\u003cli\u003eSNS 5.0.6\n\u003c/li\u003e\u003cli\u003eSNS 4.8.16\n\u003c/li\u003e\u003cli\u003eSNS 4.3.42\u003c/li\u003e\u003c/ul\u003e"
                }
              ],
              "value": "The following updates fix this vulnerability:\n  *  SNS 5.0.6\n\n  *  SNS 4.8.16\n\n  *  SNS 4.3.42"
            }
          ],
          "source": {
            "discovery": "UNKNOWN"
          },
          "title": "Information leak in NSRPC client history",
          "x_generator": {
            "engine": "Vulnogram 1.0.2"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "24a3c815-5f22-4d74-967a-30958d6466f4",
        "assignerShortName": "airbus",
        "cveId": "CVE-2026-8482",
        "datePublished": "2026-07-02T08:42:56.777Z",
        "dateReserved": "2026-05-13T14:04:22.661Z",
        "dateUpdated": "2026-07-02T12:20:17.839Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-8480 (GCVE-0-2026-8480)

    Vulnerability from nvd – Published: 2026-07-01 14:52 – Updated: 2026-07-01 15:45
    VLAI
    Title
    Connection possible to the Administration portal with a revoked certificate
    Summary
    A vulnerability was discovered on Stormshield Network Security 4.3.0  to 4.3.41 (included), 4.4.0 to 4.8.15 (included) , 5.0.2 EA to 5.0.5 (included) A revoked client certificate can still be used to authenticate to the captive‑admin portal, allowing an attacker who possesses the revoked certificate to gain administrative access.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-07-01 15:44 UTC
    CWE
    • CWE-295 - Improper certificate validation
    References
    Impacted products
    Vendor Product Version
    Stormshield Stormshield Network Security Affected: 4.3.0 , ≤ 4.3.41 (semver)
    Affected: 4.4.0 , ≤ 4.8.15 (semver)
    Affected: 5.0.2 EA , ≤ 5.0.5 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-8480",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-07-01T15:44:58.262034Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-07-01T15:45:32.124Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unknown",
              "product": "Stormshield Network Security",
              "vendor": "Stormshield",
              "versions": [
                {
                  "lessThanOrEqual": "4.3.41",
                  "status": "affected",
                  "version": "4.3.0",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "4.8.15",
                  "status": "affected",
                  "version": "4.4.0",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "5.0.5",
                  "status": "affected",
                  "version": "5.0.2 EA",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA vulnerability was discovered on Stormshield Network Security 4.3.0\u0026nbsp; to 4.3.41 (included), 4.4.0 to 4.8.15 (included) , 5.0.2 EA to 5.0.5 (included)\u003c/p\u003e\u003cp\u003eA revoked client certificate can still be used to authenticate to the captive\u2011admin portal, allowing an attacker who possesses the revoked certificate to gain administrative access.\u003c/p\u003e\u003cbr\u003e"
                }
              ],
              "value": "A vulnerability was discovered on Stormshield Network Security 4.3.0\u00a0 to 4.3.41 (included), 4.4.0 to 4.8.15 (included) , 5.0.2 EA to 5.0.5 (included)\n\n\n\nA revoked client certificate can still be used to authenticate to the captive\u2011admin portal, allowing an attacker who possesses the revoked certificate to gain administrative access."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "ADJACENT_NETWORK",
                "availabilityImpact": "NONE",
                "baseScore": 4.3,
                "baseSeverity": "MEDIUM",
                "confidentialityImpact": "LOW",
                "integrityImpact": "NONE",
                "privilegesRequired": "NONE",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-295",
                  "description": "CWE-295 Improper certificate validation",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-07-01T14:52:12.815Z",
            "orgId": "24a3c815-5f22-4d74-967a-30958d6466f4",
            "shortName": "airbus"
          },
          "references": [
            {
              "url": "https://advisories.stormshield.eu/2026-002/"
            }
          ],
          "solutions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "The following updates fix this vulnerability:\u003cbr\u003e\u003cul\u003e\u003cli\u003eSNS 5.0.6\n\u003c/li\u003e\u003cli\u003eSNS 4.8.16\n\u003c/li\u003e\u003cli\u003eSNS 4.3.42\u003c/li\u003e\u003c/ul\u003e"
                }
              ],
              "value": "The following updates fix this vulnerability:\n  *  SNS 5.0.6\n\n  *  SNS 4.8.16\n\n  *  SNS 4.3.42"
            }
          ],
          "source": {
            "discovery": "UNKNOWN"
          },
          "title": "Connection possible to the Administration portal with a revoked certificate",
          "x_generator": {
            "engine": "Vulnogram 1.0.2"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "24a3c815-5f22-4d74-967a-30958d6466f4",
        "assignerShortName": "airbus",
        "cveId": "CVE-2026-8480",
        "datePublished": "2026-07-01T14:52:12.815Z",
        "dateReserved": "2026-05-13T13:48:21.232Z",
        "dateUpdated": "2026-07-01T15:45:32.124Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-8474 (GCVE-0-2026-8474)

    Vulnerability from nvd – Published: 2026-06-01 07:47 – Updated: 2026-06-01 13:05
    VLAI
    Title
    Possible to run a Cross Site Scripting request on the login API available on Stormshield SNS appliances.
    Summary
    A vulnerability was discovered on Stormshield Network Security  * 4.3.0 to 4.3.41,  * 4.8.0 to 4.8.15,  * 5.0.0 to 5.0.5 It is possible to execute a reflected XSS attack on the login API available on Stormshield SNS appliance by executing a script on the victim's machine. The risks include the theft of cookies or other sensitive data, as well as the modification of page behavior, for example, by redirecting the victim to malicious websites.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-06-01 13:05 UTC
    CWE
    • CWE-79 - Improper neutralization of input during web page generation ('cross-site scripting')
    References
    Impacted products
    Vendor Product Version
    StormShield StormShield Network Security Affected: 4.3.0 , ≤ 4.3.41 (semver)
    Affected: 4.8.0 , ≤ 4.8.15 (semver)
    Affected: 5.0.0 , ≤ 5.0.5 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-8474",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-06-01T13:05:31.957702Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-06-01T13:05:45.399Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "StormShield Network Security",
              "vendor": "StormShield",
              "versions": [
                {
                  "lessThanOrEqual": "4.3.41",
                  "status": "affected",
                  "version": "4.3.0",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "4.8.15",
                  "status": "affected",
                  "version": "4.8.0",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "5.0.5",
                  "status": "affected",
                  "version": "5.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA vulnerability was discovered on Stormshield Network Security\u0026nbsp;\u003c/p\u003e\u003cp\u003e\u003c/p\u003e\u003cul\u003e\u003cli\u003e4.3.0 to 4.3.41,\u0026nbsp;\u003c/li\u003e\u003cli\u003e4.8.0 to 4.8.15,\u0026nbsp;\u003c/li\u003e\u003cli\u003e5.0.0 to 5.0.5\u003c/li\u003e\u003c/ul\u003e\u003cp\u003e\u003c/p\u003e\u003cp\u003eIt is possible to execute a reflected XSS attack on the login API available on Stormshield SNS appliance by executing a script on the victim\u0027s machine. The risks include the theft of cookies or other sensitive data, as well as the modification of page behavior, for example, by redirecting the victim to malicious websites.\u003c/p\u003e"
                }
              ],
              "value": "A vulnerability was discovered on Stormshield Network Security\u00a0\n\n\n\n\n\n  *  4.3.0 to 4.3.41,\u00a0\n  *  4.8.0 to 4.8.15,\u00a0\n  *  5.0.0 to 5.0.5\n\n\n\n\n\n\n\n\nIt is possible to execute a reflected XSS attack on the login API available on Stormshield SNS appliance by executing a script on the victim\u0027s machine. The risks include the theft of cookies or other sensitive data, as well as the modification of page behavior, for example, by redirecting the victim to malicious websites."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "NONE",
                "baseScore": 5.3,
                "baseSeverity": "MEDIUM",
                "confidentialityImpact": "NONE",
                "integrityImpact": "LOW",
                "privilegesRequired": "NONE",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-79",
                  "description": "CWE-79 Improper neutralization of input during web page generation (\u0027cross-site scripting\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-06-01T07:50:04.199Z",
            "orgId": "24a3c815-5f22-4d74-967a-30958d6466f4",
            "shortName": "airbus"
          },
          "references": [
            {
              "url": "https://advisories.stormshield.eu/2026-003/"
            }
          ],
          "solutions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eThe following updates fix this vulnerability:\u003c/p\u003e\u003cul\u003e\u003cli\u003eSNS 5.0.6\u003c/li\u003e\u003cli\u003eSNS 4.8.16\u003c/li\u003e\u003cli\u003eSNS 4.3.42\u003c/li\u003e\u003c/ul\u003e"
                }
              ],
              "value": "The following updates fix this vulnerability:\n\n  *  SNS 5.0.6\n  *  SNS 4.8.16\n  *  SNS 4.3.42"
            }
          ],
          "source": {
            "discovery": "UNKNOWN"
          },
          "title": "Possible to run a Cross Site Scripting request on the login API available on Stormshield SNS appliances.",
          "x_generator": {
            "engine": "Vulnogram 1.0.2"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "24a3c815-5f22-4d74-967a-30958d6466f4",
        "assignerShortName": "airbus",
        "cveId": "CVE-2026-8474",
        "datePublished": "2026-06-01T07:47:54.875Z",
        "dateReserved": "2026-05-13T13:10:26.492Z",
        "dateUpdated": "2026-06-01T13:05:45.399Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2025-48707 (GCVE-0-2025-48707)

    Vulnerability from nvd – Published: 2025-09-25 00:00 – Updated: 2025-09-26 20:05
    VLAI
    Summary
    An issue was discovered in Stormshield Network Security (SNS) before 5.0.1. TPM authentication information could, in some HA use cases, be shared among administrators, which can cause secret sharing.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-09-26 20:04 UTC
    CWE
    • n/a
    • CWE-284 - Improper Access Control
    References
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "LOW",
                  "attackVector": "NETWORK",
                  "availabilityImpact": "NONE",
                  "baseScore": 7.5,
                  "baseSeverity": "HIGH",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "NONE",
                  "privilegesRequired": "NONE",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2025-48707",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-09-26T20:04:34.034705Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "cweId": "CWE-284",
                    "description": "CWE-284 Improper Access Control",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-09-26T20:05:50.435Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "An issue was discovered in Stormshield Network Security (SNS) before 5.0.1. TPM authentication information could, in some HA use cases, be shared among administrators, which can cause secret sharing."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-09-25T17:49:42.268Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "url": "https://advisories.stormshield.eu/2025-003/"
            }
          ]
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2025-48707",
        "datePublished": "2025-09-25T00:00:00.000Z",
        "dateReserved": "2025-05-23T00:00:00.000Z",
        "dateUpdated": "2025-09-26T20:05:50.435Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2024-37386 (GCVE-0-2024-37386)

    Vulnerability from nvd – Published: 2024-07-15 00:00 – Updated: 2024-08-02 03:50
    VLAI
    Summary
    An issue was discovered in Stormshield Network Security (SNS) 4.0.0 through 4.3.25, 4.4.0 through 4.7.5, and 4.8.0. Certain manipulations allow restarting in single-user mode despite the activation of secure boot. The following versions fix this: 4.3.27, 4.7.6, and 4.8.2.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-07-23 18:58 UTC
    CWE
    • n/a
    • CWE-284 - Improper Access Control
    References
    Impacted products
    Vendor Product Version
    stormshield stormshield_network_security Affected: 4.0.0 , ≤ 4.3.25 (custom)
    Affected: 4.4.0 , ≤ 4.7.5 (custom)
    Affected: 4.8.0
        cpe:2.3:a:stormshield:stormshield_network_security:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:a:stormshield:stormshield_network_security:*:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "stormshield_network_security",
                "vendor": "stormshield",
                "versions": [
                  {
                    "lessThanOrEqual": "4.3.25",
                    "status": "affected",
                    "version": "4.0.0",
                    "versionType": "custom"
                  },
                  {
                    "lessThanOrEqual": "4.7.5",
                    "status": "affected",
                    "version": "4.4.0",
                    "versionType": "custom"
                  },
                  {
                    "status": "affected",
                    "version": "4.8.0"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "HIGH",
                  "attackVector": "PHYSICAL",
                  "availabilityImpact": "NONE",
                  "baseScore": 4.2,
                  "baseSeverity": "MEDIUM",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "NONE",
                  "privilegesRequired": "NONE",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2024-37386",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-07-23T18:58:20.851489Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "cweId": "CWE-284",
                    "description": "CWE-284 Improper Access Control",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-07-23T19:05:15.410Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          },
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-02T03:50:56.059Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://advisories.stormshield.eu/2024-017"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "An issue was discovered in Stormshield Network Security (SNS) 4.0.0 through 4.3.25, 4.4.0 through 4.7.5, and 4.8.0. Certain manipulations allow restarting in single-user mode despite the activation of secure boot. The following versions fix this: 4.3.27, 4.7.6, and 4.8.2."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2024-07-24T16:03:06.345Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "url": "https://advisories.stormshield.eu/2024-017"
            }
          ]
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2024-37386",
        "datePublished": "2024-07-15T00:00:00.000Z",
        "dateReserved": "2024-06-07T00:00:00.000Z",
        "dateUpdated": "2024-08-02T03:50:56.059Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2026-14466 (GCVE-0-2026-14466)

    Vulnerability from cvelistv5 – Published: 2026-09-04 14:27 – Updated: 2026-09-04 14:41
    VLAI
    Title
    Possible XSS in the SNS web administration panel
    Summary
    It’s possible to run a stored XSS in Stormshield’s web administration panel. To exploit this vulnerability, a SNS administrator with appropriate permissions must inject  some malicious script in a group’s comments in the webservices administration interface.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-04 14:40 UTC
    CWE
    • CWE-79 - Improper neutralization of input during web page generation ('cross-site scripting')
    References
    Impacted products
    Vendor Product Version
    Stormshield Stormshield Network Security Affected: 4.8.0 , ≤ 4.8.16 (semver)
    Affected: 5.0.0 , ≤ 5.0.6 (semver)
    Unaffected: 4.8.17 (semver)
    Unaffected: 5.0.7 (semver)
    Unaffected: 5.1.0 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-14466",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-04T14:40:47.477086Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-04T14:41:07.268Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unknown",
              "product": "Stormshield Network Security",
              "vendor": "Stormshield",
              "versions": [
                {
                  "lessThanOrEqual": "4.8.16",
                  "status": "affected",
                  "version": "4.8.0",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "5.0.6",
                  "status": "affected",
                  "version": "5.0.0",
                  "versionType": "semver"
                },
                {
                  "status": "unaffected",
                  "version": "4.8.17",
                  "versionType": "semver"
                },
                {
                  "status": "unaffected",
                  "version": "5.0.7",
                  "versionType": "semver"
                },
                {
                  "status": "unaffected",
                  "version": "5.1.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "We acknowledge the researcher Supr4s for discovering this vulnerability."
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eIt\u2019s possible to run a stored XSS in Stormshield\u2019s web administration panel.\u003c/p\u003e\u003cp\u003eTo exploit this vulnerability, a SNS administrator with appropriate permissions must inject\u0026nbsp; some malicious script in a group\u2019s comments in the webservices administration interface.\u003c/p\u003e"
                }
              ],
              "value": "It\u2019s possible to run a stored XSS in Stormshield\u2019s web administration panel.\n\n\n\nTo exploit this vulnerability, a SNS administrator with appropriate permissions must inject\u00a0 some malicious script in a group\u2019s comments in the webservices administration interface."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "ADJACENT_NETWORK",
                "availabilityImpact": "NONE",
                "baseScore": 4.3,
                "baseSeverity": "MEDIUM",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "NONE",
                "privilegesRequired": "HIGH",
                "scope": "UNCHANGED",
                "userInteraction": "REQUIRED",
                "vectorString": "CVSS:3.1/AV:A/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-79",
                  "description": "CWE-79 Improper neutralization of input during web page generation (\u0027cross-site scripting\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-04T14:32:28.756Z",
            "orgId": "24a3c815-5f22-4d74-967a-30958d6466f4",
            "shortName": "airbus"
          },
          "references": [
            {
              "url": "https://advisories.stormshield.eu/2026-006"
            }
          ],
          "solutions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eThe following updates will fix this vulnerability:\u003c/p\u003e\u003cul\u003e\u003cli\u003eSNS 5.1.0\u003c/li\u003e\u003cli\u003eSNS 5.0.7\u003c/li\u003e\u003cli\u003eSNS 4.8.17\u003c/li\u003e\u003c/ul\u003e"
                }
              ],
              "value": "The following updates will fix this vulnerability:\n\n  *  SNS 5.1.0\n  *  SNS 5.0.7\n  *  SNS 4.8.17"
            }
          ],
          "source": {
            "discovery": "UNKNOWN"
          },
          "title": "Possible XSS in the SNS web administration panel",
          "x_generator": {
            "engine": "Vulnogram 1.0.5"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "24a3c815-5f22-4d74-967a-30958d6466f4",
        "assignerShortName": "airbus",
        "cveId": "CVE-2026-14466",
        "datePublished": "2026-09-04T14:27:58.190Z",
        "dateReserved": "2026-07-02T12:42:10.025Z",
        "dateUpdated": "2026-09-04T14:41:07.268Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-8482 (GCVE-0-2026-8482)

    Vulnerability from cvelistv5 – Published: 2026-07-02 08:42 – Updated: 2026-07-02 12:20
    VLAI
    Title
    Information leak in NSRPC client history
    Summary
    A vulnerability was discovered on StormShield Network Security 4.3.0 to 4.3.41 (included), 4.8.0 to 4.8.15 (included) , 5.0.0 to 5.0.5 (included) There is a possible leak of secret information if administration commands have been passed with the CLI command line tool. Someone with SSH access to the firewall (if SSH multiuser mode is enabled) could possibly get the proxy CA passphrase or TPM password.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-07-02 12:20 UTC
    CWE
    • CWE-532 - Insertion of sensitive information into log file
    References
    Impacted products
    Vendor Product Version
    Stormshield Stormshield Network Security Affected: 4.3.0 , ≤ 4.3.41 (semver)
    Affected: 4.8.0 , ≤ 4.8.15 (semver)
    Affected: 5.0.0 , ≤ 5.0.5 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-8482",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-07-02T12:20:06.574781Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-07-02T12:20:17.839Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unknown",
              "product": "Stormshield Network Security",
              "vendor": "Stormshield",
              "versions": [
                {
                  "lessThanOrEqual": "4.3.41",
                  "status": "affected",
                  "version": "4.3.0",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "4.8.15",
                  "status": "affected",
                  "version": "4.8.0",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "5.0.5",
                  "status": "affected",
                  "version": "5.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "A vulnerability was discovered on StormShield Network Security 4.3.0 to 4.3.41 (included), 4.8.0 to 4.8.15 (included) , 5.0.0 to 5.0.5 (included)\n\u003cbr\u003eThere is a possible leak of secret information if administration commands have been passed with the CLI command line tool.\n\u003cbr\u003eSomeone with SSH access to the firewall (if SSH multiuser mode is enabled) could possibly get the proxy CA passphrase or TPM password.\u0026nbsp;\u003cbr\u003e"
                }
              ],
              "value": "A vulnerability was discovered on StormShield Network Security 4.3.0 to 4.3.41 (included), 4.8.0 to 4.8.15 (included) , 5.0.0 to 5.0.5 (included)\n\nThere is a possible leak of secret information if administration commands have been passed with the CLI command line tool.\n\nSomeone with SSH access to the firewall (if SSH multiuser mode is enabled) could possibly get the proxy CA passphrase or TPM password."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "ADJACENT_NETWORK",
                "availabilityImpact": "NONE",
                "baseScore": 4.3,
                "baseSeverity": "MEDIUM",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "NONE",
                "privilegesRequired": "HIGH",
                "scope": "UNCHANGED",
                "userInteraction": "REQUIRED",
                "vectorString": "CVSS:3.1/AV:A/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-532",
                  "description": "CWE-532 Insertion of sensitive information into log file",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-07-02T08:42:56.777Z",
            "orgId": "24a3c815-5f22-4d74-967a-30958d6466f4",
            "shortName": "airbus"
          },
          "references": [
            {
              "url": "https://advisories.stormshield.eu/2025-007/"
            }
          ],
          "solutions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "The following updates fix this vulnerability:\u003cbr\u003e\u003cul\u003e\u003cli\u003eSNS 5.0.6\n\u003c/li\u003e\u003cli\u003eSNS 4.8.16\n\u003c/li\u003e\u003cli\u003eSNS 4.3.42\u003c/li\u003e\u003c/ul\u003e"
                }
              ],
              "value": "The following updates fix this vulnerability:\n  *  SNS 5.0.6\n\n  *  SNS 4.8.16\n\n  *  SNS 4.3.42"
            }
          ],
          "source": {
            "discovery": "UNKNOWN"
          },
          "title": "Information leak in NSRPC client history",
          "x_generator": {
            "engine": "Vulnogram 1.0.2"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "24a3c815-5f22-4d74-967a-30958d6466f4",
        "assignerShortName": "airbus",
        "cveId": "CVE-2026-8482",
        "datePublished": "2026-07-02T08:42:56.777Z",
        "dateReserved": "2026-05-13T14:04:22.661Z",
        "dateUpdated": "2026-07-02T12:20:17.839Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-8480 (GCVE-0-2026-8480)

    Vulnerability from cvelistv5 – Published: 2026-07-01 14:52 – Updated: 2026-07-01 15:45
    VLAI
    Title
    Connection possible to the Administration portal with a revoked certificate
    Summary
    A vulnerability was discovered on Stormshield Network Security 4.3.0  to 4.3.41 (included), 4.4.0 to 4.8.15 (included) , 5.0.2 EA to 5.0.5 (included) A revoked client certificate can still be used to authenticate to the captive‑admin portal, allowing an attacker who possesses the revoked certificate to gain administrative access.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-07-01 15:44 UTC
    CWE
    • CWE-295 - Improper certificate validation
    References
    Impacted products
    Vendor Product Version
    Stormshield Stormshield Network Security Affected: 4.3.0 , ≤ 4.3.41 (semver)
    Affected: 4.4.0 , ≤ 4.8.15 (semver)
    Affected: 5.0.2 EA , ≤ 5.0.5 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-8480",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-07-01T15:44:58.262034Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-07-01T15:45:32.124Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unknown",
              "product": "Stormshield Network Security",
              "vendor": "Stormshield",
              "versions": [
                {
                  "lessThanOrEqual": "4.3.41",
                  "status": "affected",
                  "version": "4.3.0",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "4.8.15",
                  "status": "affected",
                  "version": "4.4.0",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "5.0.5",
                  "status": "affected",
                  "version": "5.0.2 EA",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA vulnerability was discovered on Stormshield Network Security 4.3.0\u0026nbsp; to 4.3.41 (included), 4.4.0 to 4.8.15 (included) , 5.0.2 EA to 5.0.5 (included)\u003c/p\u003e\u003cp\u003eA revoked client certificate can still be used to authenticate to the captive\u2011admin portal, allowing an attacker who possesses the revoked certificate to gain administrative access.\u003c/p\u003e\u003cbr\u003e"
                }
              ],
              "value": "A vulnerability was discovered on Stormshield Network Security 4.3.0\u00a0 to 4.3.41 (included), 4.4.0 to 4.8.15 (included) , 5.0.2 EA to 5.0.5 (included)\n\n\n\nA revoked client certificate can still be used to authenticate to the captive\u2011admin portal, allowing an attacker who possesses the revoked certificate to gain administrative access."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "ADJACENT_NETWORK",
                "availabilityImpact": "NONE",
                "baseScore": 4.3,
                "baseSeverity": "MEDIUM",
                "confidentialityImpact": "LOW",
                "integrityImpact": "NONE",
                "privilegesRequired": "NONE",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-295",
                  "description": "CWE-295 Improper certificate validation",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-07-01T14:52:12.815Z",
            "orgId": "24a3c815-5f22-4d74-967a-30958d6466f4",
            "shortName": "airbus"
          },
          "references": [
            {
              "url": "https://advisories.stormshield.eu/2026-002/"
            }
          ],
          "solutions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "The following updates fix this vulnerability:\u003cbr\u003e\u003cul\u003e\u003cli\u003eSNS 5.0.6\n\u003c/li\u003e\u003cli\u003eSNS 4.8.16\n\u003c/li\u003e\u003cli\u003eSNS 4.3.42\u003c/li\u003e\u003c/ul\u003e"
                }
              ],
              "value": "The following updates fix this vulnerability:\n  *  SNS 5.0.6\n\n  *  SNS 4.8.16\n\n  *  SNS 4.3.42"
            }
          ],
          "source": {
            "discovery": "UNKNOWN"
          },
          "title": "Connection possible to the Administration portal with a revoked certificate",
          "x_generator": {
            "engine": "Vulnogram 1.0.2"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "24a3c815-5f22-4d74-967a-30958d6466f4",
        "assignerShortName": "airbus",
        "cveId": "CVE-2026-8480",
        "datePublished": "2026-07-01T14:52:12.815Z",
        "dateReserved": "2026-05-13T13:48:21.232Z",
        "dateUpdated": "2026-07-01T15:45:32.124Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-8474 (GCVE-0-2026-8474)

    Vulnerability from cvelistv5 – Published: 2026-06-01 07:47 – Updated: 2026-06-01 13:05
    VLAI
    Title
    Possible to run a Cross Site Scripting request on the login API available on Stormshield SNS appliances.
    Summary
    A vulnerability was discovered on Stormshield Network Security  * 4.3.0 to 4.3.41,  * 4.8.0 to 4.8.15,  * 5.0.0 to 5.0.5 It is possible to execute a reflected XSS attack on the login API available on Stormshield SNS appliance by executing a script on the victim's machine. The risks include the theft of cookies or other sensitive data, as well as the modification of page behavior, for example, by redirecting the victim to malicious websites.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-06-01 13:05 UTC
    CWE
    • CWE-79 - Improper neutralization of input during web page generation ('cross-site scripting')
    References
    Impacted products
    Vendor Product Version
    StormShield StormShield Network Security Affected: 4.3.0 , ≤ 4.3.41 (semver)
    Affected: 4.8.0 , ≤ 4.8.15 (semver)
    Affected: 5.0.0 , ≤ 5.0.5 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-8474",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-06-01T13:05:31.957702Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-06-01T13:05:45.399Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "StormShield Network Security",
              "vendor": "StormShield",
              "versions": [
                {
                  "lessThanOrEqual": "4.3.41",
                  "status": "affected",
                  "version": "4.3.0",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "4.8.15",
                  "status": "affected",
                  "version": "4.8.0",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "5.0.5",
                  "status": "affected",
                  "version": "5.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA vulnerability was discovered on Stormshield Network Security\u0026nbsp;\u003c/p\u003e\u003cp\u003e\u003c/p\u003e\u003cul\u003e\u003cli\u003e4.3.0 to 4.3.41,\u0026nbsp;\u003c/li\u003e\u003cli\u003e4.8.0 to 4.8.15,\u0026nbsp;\u003c/li\u003e\u003cli\u003e5.0.0 to 5.0.5\u003c/li\u003e\u003c/ul\u003e\u003cp\u003e\u003c/p\u003e\u003cp\u003eIt is possible to execute a reflected XSS attack on the login API available on Stormshield SNS appliance by executing a script on the victim\u0027s machine. The risks include the theft of cookies or other sensitive data, as well as the modification of page behavior, for example, by redirecting the victim to malicious websites.\u003c/p\u003e"
                }
              ],
              "value": "A vulnerability was discovered on Stormshield Network Security\u00a0\n\n\n\n\n\n  *  4.3.0 to 4.3.41,\u00a0\n  *  4.8.0 to 4.8.15,\u00a0\n  *  5.0.0 to 5.0.5\n\n\n\n\n\n\n\n\nIt is possible to execute a reflected XSS attack on the login API available on Stormshield SNS appliance by executing a script on the victim\u0027s machine. The risks include the theft of cookies or other sensitive data, as well as the modification of page behavior, for example, by redirecting the victim to malicious websites."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "NONE",
                "baseScore": 5.3,
                "baseSeverity": "MEDIUM",
                "confidentialityImpact": "NONE",
                "integrityImpact": "LOW",
                "privilegesRequired": "NONE",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-79",
                  "description": "CWE-79 Improper neutralization of input during web page generation (\u0027cross-site scripting\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-06-01T07:50:04.199Z",
            "orgId": "24a3c815-5f22-4d74-967a-30958d6466f4",
            "shortName": "airbus"
          },
          "references": [
            {
              "url": "https://advisories.stormshield.eu/2026-003/"
            }
          ],
          "solutions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eThe following updates fix this vulnerability:\u003c/p\u003e\u003cul\u003e\u003cli\u003eSNS 5.0.6\u003c/li\u003e\u003cli\u003eSNS 4.8.16\u003c/li\u003e\u003cli\u003eSNS 4.3.42\u003c/li\u003e\u003c/ul\u003e"
                }
              ],
              "value": "The following updates fix this vulnerability:\n\n  *  SNS 5.0.6\n  *  SNS 4.8.16\n  *  SNS 4.3.42"
            }
          ],
          "source": {
            "discovery": "UNKNOWN"
          },
          "title": "Possible to run a Cross Site Scripting request on the login API available on Stormshield SNS appliances.",
          "x_generator": {
            "engine": "Vulnogram 1.0.2"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "24a3c815-5f22-4d74-967a-30958d6466f4",
        "assignerShortName": "airbus",
        "cveId": "CVE-2026-8474",
        "datePublished": "2026-06-01T07:47:54.875Z",
        "dateReserved": "2026-05-13T13:10:26.492Z",
        "dateUpdated": "2026-06-01T13:05:45.399Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2025-48707 (GCVE-0-2025-48707)

    Vulnerability from cvelistv5 – Published: 2025-09-25 00:00 – Updated: 2025-09-26 20:05
    VLAI
    Summary
    An issue was discovered in Stormshield Network Security (SNS) before 5.0.1. TPM authentication information could, in some HA use cases, be shared among administrators, which can cause secret sharing.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-09-26 20:04 UTC
    CWE
    • n/a
    • CWE-284 - Improper Access Control
    References
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "LOW",
                  "attackVector": "NETWORK",
                  "availabilityImpact": "NONE",
                  "baseScore": 7.5,
                  "baseSeverity": "HIGH",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "NONE",
                  "privilegesRequired": "NONE",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2025-48707",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-09-26T20:04:34.034705Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "cweId": "CWE-284",
                    "description": "CWE-284 Improper Access Control",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-09-26T20:05:50.435Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "An issue was discovered in Stormshield Network Security (SNS) before 5.0.1. TPM authentication information could, in some HA use cases, be shared among administrators, which can cause secret sharing."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-09-25T17:49:42.268Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "url": "https://advisories.stormshield.eu/2025-003/"
            }
          ]
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2025-48707",
        "datePublished": "2025-09-25T00:00:00.000Z",
        "dateReserved": "2025-05-23T00:00:00.000Z",
        "dateUpdated": "2025-09-26T20:05:50.435Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CERTFR-2026-AVI-1021

    Vulnerability from certfr_avis - Published: 2026-08-14 - Updated: 2026-08-14

    De multiples vulnérabilités ont été découvertes dans Stormshield Network Security. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un déni de service à distance et une atteinte à la confidentialité des données.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Network Security SNS versions 4.8.x antérieures à 4.8.18
    Stormshield Stormshield Network Security SNS versions 5.1.x antérieures à 5.1.2
    Stormshield Stormshield Network Security SNS versions 5.0.x antérieures à 5.0.8
    Stormshield Stormshield Network Security SNS versions 3.11.x à 4.3.x antérieures à 4.3.44
    Stormshield Stormshield Network Security SNS versions antérieures à 3.7.45
    References

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "SNS versions 4.8.x ant\u00e9rieures \u00e0 4.8.18",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "SNS versions 5.1.x ant\u00e9rieures \u00e0 5.1.2",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "SNS versions 5.0.x ant\u00e9rieures \u00e0 5.0.8",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "SNS versions 3.11.x \u00e0 4.3.x ant\u00e9rieures \u00e0 4.3.44",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "SNS versions ant\u00e9rieures \u00e0 3.7.45",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2026-35330",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-35330"
        },
        {
          "name": "CVE-2026-34180",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-34180"
        },
        {
          "name": "CVE-2026-35332",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-35332"
        },
        {
          "name": "CVE-2026-7383",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-7383"
        },
        {
          "name": "CVE-2026-25075",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-25075"
        },
        {
          "name": "CVE-2026-35328",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-35328"
        },
        {
          "name": "CVE-2026-35058",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-35058"
        },
        {
          "name": "CVE-2026-47895",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-47895"
        },
        {
          "name": "CVE-2026-40215",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-40215"
        }
      ],
      "initial_release_date": "2026-08-14T00:00:00",
      "last_revision_date": "2026-08-14T00:00:00",
      "links": [],
      "reference": "CERTFR-2026-AVI-1021",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2026-08-14T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "D\u00e9ni de service \u00e0 distance"
        },
        {
          "description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
        },
        {
          "description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Stormshield Network Security. Certaines d\u0027entre elles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance, un d\u00e9ni de service \u00e0 distance et une atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans Stormshield Network Security",
      "vendor_advisories": [
        {
          "published_at": "2026-08-13",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2026-015",
          "url": "https://advisories.stormshield.eu/2026-015"
        },
        {
          "published_at": "2026-07-30",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2026-013",
          "url": "https://advisories.stormshield.eu/2026-013"
        },
        {
          "published_at": "2026-07-30",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2026-014",
          "url": "https://advisories.stormshield.eu/2026-014"
        }
      ]
    }

    CERTFR-2026-AVI-0816

    Vulnerability from certfr_avis - Published: 2026-06-29 - Updated: 2026-06-29

    De multiples vulnérabilités ont été découvertes dans Stormshield Management Center. Elles permettent à un attaquant de provoquer une exécution de code arbitraire, une atteinte à la confidentialité des données et une atteinte à l'intégrité des données.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Management Center Stormshield Management Center versions antérieures à 3.9.2
    References
    Bulletin de sécurité StormShield 2026-012 2026-06-29 vendor-advisory

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Stormshield Management Center versions ant\u00e9rieures \u00e0 3.9.2",
          "product": {
            "name": "Stormshield Management Center",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2026-6637",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-6637"
        },
        {
          "name": "CVE-2026-6473",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-6473"
        },
        {
          "name": "CVE-2026-6638",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-6638"
        },
        {
          "name": "CVE-2026-6475",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-6475"
        },
        {
          "name": "CVE-2026-6477",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-6477"
        }
      ],
      "initial_release_date": "2026-06-29T00:00:00",
      "last_revision_date": "2026-06-29T00:00:00",
      "links": [],
      "reference": "CERTFR-2026-AVI-0816",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2026-06-29T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "Atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es"
        },
        {
          "description": "Ex\u00e9cution de code arbitraire"
        },
        {
          "description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Stormshield Management Center. Elles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire, une atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es et une atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans Stormshield Management Center",
      "vendor_advisories": [
        {
          "published_at": "2026-06-29",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2026-012",
          "url": "https://advisories.stormshield.eu/2026-012"
        }
      ]
    }

    CERTFR-2026-AVI-0723

    Vulnerability from certfr_avis - Published: 2026-06-10 - Updated: 2026-06-10

    Une vulnérabilité a été découverte dans Stormshield Network Security. Elle permet à un attaquant de provoquer une atteinte à la confidentialité des données.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Network Security SNS versions 5.x antérieures à 5.0.6
    References
    Bulletin de sécurité StormShield 2026-011 2026-06-09 vendor-advisory

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "SNS versions 5.x ant\u00e9rieures \u00e0 5.0.6",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2026-31790",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-31790"
        }
      ],
      "initial_release_date": "2026-06-10T00:00:00",
      "last_revision_date": "2026-06-10T00:00:00",
      "links": [],
      "reference": "CERTFR-2026-AVI-0723",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2026-06-10T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
        }
      ],
      "summary": "Une vuln\u00e9rabilit\u00e9 a \u00e9t\u00e9 d\u00e9couverte dans Stormshield Network Security. Elle permet \u00e0 un attaquant de provoquer une atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es.\n",
      "title": "Vuln\u00e9rabilit\u00e9 dans Stormshield Network Security",
      "vendor_advisories": [
        {
          "published_at": "2026-06-09",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2026-011",
          "url": "https://advisories.stormshield.eu/2026-011"
        }
      ]
    }

    CERTFR-2026-AVI-0631

    Vulnerability from certfr_avis - Published: 2026-05-22 - Updated: 2026-05-22

    Une vulnérabilité a été découverte dans Stormshield Network Security (SNS). Elle permet à un attaquant de provoquer un déni de service à distance.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Network Security SNS versions 5.x antérieures à 5.0.6
    Stormshield Stormshield Network Security SNS versions 4.4.x à 4.8.x antérieures à 4.8.16
    Stormshield Stormshield Network Security SNS versions 4.3.x antérieures à 4.3.43
    References
    Bulletin de sécurité StormShield 2026-010 2026-05-21 vendor-advisory

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "SNS versions 5.x ant\u00e9rieures \u00e0 5.0.6",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "SNS versions 4.4.x \u00e0 4.8.x ant\u00e9rieures \u00e0 4.8.16",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "SNS versions 4.3.x ant\u00e9rieures \u00e0 4.3.43",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2025-9086",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-9086"
        }
      ],
      "initial_release_date": "2026-05-22T00:00:00",
      "last_revision_date": "2026-05-22T00:00:00",
      "links": [],
      "reference": "CERTFR-2026-AVI-0631",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2026-05-22T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "D\u00e9ni de service \u00e0 distance"
        }
      ],
      "summary": "Une vuln\u00e9rabilit\u00e9 a \u00e9t\u00e9 d\u00e9couverte dans Stormshield Network Security (SNS). Elle permet \u00e0 un attaquant de provoquer un d\u00e9ni de service \u00e0 distance.",
      "title": "Vuln\u00e9rabilit\u00e9 dans Stormshield Network Security",
      "vendor_advisories": [
        {
          "published_at": "2026-05-21",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2026-010",
          "url": "https://advisories.stormshield.eu/2026-010"
        }
      ]
    }

    CERTFR-2026-AVI-0483

    Vulnerability from certfr_avis - Published: 2026-04-23 - Updated: 2026-04-23

    De multiples vulnérabilités ont été découvertes dans Stormshield Management Center. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un déni de service à distance et une atteinte à la confidentialité des données.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Management Center ShieldStormshield Management Center versions antérieures à 3.9.1
    References

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "ShieldStormshield Management Center versions ant\u00e9rieures \u00e0 3.9.1",
          "product": {
            "name": "Stormshield Management Center",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2026-2006",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-2006"
        },
        {
          "name": "CVE-2026-2005",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-2005"
        },
        {
          "name": "CVE-2026-22795",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-22795"
        },
        {
          "name": "CVE-2026-21717",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-21717"
        },
        {
          "name": "CVE-2025-69421",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-69421"
        },
        {
          "name": "CVE-2026-22796",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-22796"
        },
        {
          "name": "CVE-2025-68160",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-68160"
        },
        {
          "name": "CVE-2026-21713",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-21713"
        },
        {
          "name": "CVE-2025-11187",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-11187"
        },
        {
          "name": "CVE-2026-2003",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-2003"
        }
      ],
      "initial_release_date": "2026-04-23T00:00:00",
      "last_revision_date": "2026-04-23T00:00:00",
      "links": [],
      "reference": "CERTFR-2026-AVI-0483",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2026-04-23T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "D\u00e9ni de service \u00e0 distance"
        },
        {
          "description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
        },
        {
          "description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Stormshield Management Center. Certaines d\u0027entre elles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance, un d\u00e9ni de service \u00e0 distance et une atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans Stormshield Management Center",
      "vendor_advisories": [
        {
          "published_at": "2026-04-22",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2026-008",
          "url": "https://advisories.stormshield.eu/2026-008"
        },
        {
          "published_at": "2026-04-22",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2026-005",
          "url": "https://advisories.stormshield.eu/2026-005"
        },
        {
          "published_at": "2026-04-22",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2026-004",
          "url": "https://advisories.stormshield.eu/2026-004"
        },
        {
          "published_at": "2026-04-22",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2026-009",
          "url": "https://advisories.stormshield.eu/2026-009"
        }
      ]
    }

    CERTFR-2026-AVI-0259

    Vulnerability from certfr_avis - Published: 2026-03-11 - Updated: 2026-03-11

    De multiples vulnérabilités ont été découvertes dans Stormshield Network Security. Elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance et un déni de service à distance.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Network Security SNS versions 4.4.x à 4.8.x antérieures à 4.8.15
    Stormshield Stormshield Network Security SNS versions 4.3.x antérieures à 4.3.42
    Stormshield Stormshield Network Security SNS versions 5.0.x antérieures à 5.0.5
    References
    Bulletin de sécurité StormShield 2026-001 2026-02-26 vendor-advisory

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "SNS versions 4.4.x \u00e0 4.8.x ant\u00e9rieures \u00e0 4.8.15",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "SNS versions 4.3.x ant\u00e9rieures \u00e0 4.3.42",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "SNS versions 5.0.x ant\u00e9rieures \u00e0 5.0.5",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2024-13176",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-13176"
        },
        {
          "name": "CVE-2025-68160",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-68160"
        },
        {
          "name": "CVE-2025-69418",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-69418"
        }
      ],
      "initial_release_date": "2026-03-11T00:00:00",
      "last_revision_date": "2026-03-11T00:00:00",
      "links": [],
      "reference": "CERTFR-2026-AVI-0259",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2026-03-11T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "D\u00e9ni de service \u00e0 distance"
        },
        {
          "description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Stormshield Network Security. Elles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance et un d\u00e9ni de service \u00e0 distance.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans Stormshield Network Security",
      "vendor_advisories": [
        {
          "published_at": "2026-02-26",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2026-001",
          "url": "https://advisories.stormshield.eu/2026-001"
        }
      ]
    }

    CERTFR-2026-AVI-0219

    Vulnerability from certfr_avis - Published: 2026-02-27 - Updated: 2026-02-27

    Une vulnérabilité a été découverte dans Stormshield Network Security. Elle permet à un attaquant de provoquer un contournement de la politique de sécurité.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Network Security Stormshield Network Security versions antérieures à 5.0.5
    References
    Bulletin de sécurité StormShield 2025-011 2026-02-26 vendor-advisory

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": " Stormshield Network Security versions ant\u00e9rieures \u00e0 5.0.5",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [],
      "initial_release_date": "2026-02-27T00:00:00",
      "last_revision_date": "2026-02-27T00:00:00",
      "links": [],
      "reference": "CERTFR-2026-AVI-0219",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2026-02-27T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "Contournement de la politique de s\u00e9curit\u00e9"
        }
      ],
      "summary": "Une vuln\u00e9rabilit\u00e9 a \u00e9t\u00e9 d\u00e9couverte dans Stormshield Network Security. Elle permet \u00e0 un attaquant de provoquer un contournement de la politique de s\u00e9curit\u00e9.",
      "title": "Vuln\u00e9rabilit\u00e9 dans Stormshield Network Security",
      "vendor_advisories": [
        {
          "published_at": "2026-02-26",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2025-011",
          "url": "https://advisories.stormshield.eu/2025-011/"
        }
      ]
    }

    CERTFR-2026-AVI-0007

    Vulnerability from certfr_avis - Published: 2026-01-06 - Updated: 2026-01-06

    Une vulnérabilité a été découverte dans Stormshield Network Security. Elle permet à un attaquant de provoquer une exécution de code arbitraire à distance et un déni de service à distance.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Network Security Stormshield Network Security (SNS) versions 5.0.x antérieures à 5.0.4
    References
    Bulletin de sécurité StormShield 2025-010 2026-01-06 vendor-advisory

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Stormshield Network Security (SNS) versions 5.0.x ant\u00e9rieures \u00e0 5.0.4",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2025-31115",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-31115"
        }
      ],
      "initial_release_date": "2026-01-06T00:00:00",
      "last_revision_date": "2026-01-06T00:00:00",
      "links": [],
      "reference": "CERTFR-2026-AVI-0007",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2026-01-06T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "D\u00e9ni de service \u00e0 distance"
        },
        {
          "description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
        }
      ],
      "summary": "Une vuln\u00e9rabilit\u00e9 a \u00e9t\u00e9 d\u00e9couverte dans Stormshield Network Security. Elle permet \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance et un d\u00e9ni de service \u00e0 distance.",
      "title": "Vuln\u00e9rabilit\u00e9 dans Stormshield Network Security",
      "vendor_advisories": [
        {
          "published_at": "2026-01-06",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2025-010",
          "url": "https://advisories.stormshield.eu/2025-010"
        }
      ]
    }

    CERTFR-2025-AVI-1053

    Vulnerability from certfr_avis - Published: 2025-12-01 - Updated: 2025-12-01

    Une vulnérabilité a été découverte dans Stormshield Network VPN Client. Elle permet à un attaquant de provoquer un contournement de la politique de sécurité.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Network VPN Client Stormshield Network VPN Client version 7.5.109
    References
    Bulletin de sécurité StormShield 2025-006 2025-11-27 vendor-advisory

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Stormshield Network VPN Client version 7.5.109",
          "product": {
            "name": "Stormshield Network VPN Client",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2025-11955",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-11955"
        }
      ],
      "initial_release_date": "2025-12-01T00:00:00",
      "last_revision_date": "2025-12-01T00:00:00",
      "links": [],
      "reference": "CERTFR-2025-AVI-1053",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2025-12-01T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "Contournement de la politique de s\u00e9curit\u00e9"
        }
      ],
      "summary": "Une vuln\u00e9rabilit\u00e9 a \u00e9t\u00e9 d\u00e9couverte dans Stormshield Network VPN Client. Elle permet \u00e0 un attaquant de provoquer un contournement de la politique de s\u00e9curit\u00e9.",
      "title": "Vuln\u00e9rabilit\u00e9 dans Stormshield Network VPN Client",
      "vendor_advisories": [
        {
          "published_at": "2025-11-27",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2025-006",
          "url": "https://advisories.stormshield.eu/2025-006"
        }
      ]
    }

    CERTFR-2025-AVI-0816

    Vulnerability from certfr_avis - Published: 2025-09-25 - Updated: 2025-09-25

    Une vulnérabilité a été découverte dans StormShield Network Security. Elle permet à un attaquant de provoquer une atteinte à la confidentialité des données.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Network Security StormShield Network Security versions 4.7.x et 4.8.x antérieures à 4.8.12
    Stormshield Stormshield Network Security StormShield Network Security versions 5.0.x antérieures à 5.0.1
    Stormshield Stormshield Network Security StormShield Network Security versions 4.3.x antérieures à 4.3.40
    References
    Bulletin de sécurité StormShield 2025-003 2025-09-24 vendor-advisory

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "StormShield Network Security versions 4.7.x et 4.8.x ant\u00e9rieures \u00e0 4.8.12",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "StormShield Network Security versions 5.0.x ant\u00e9rieures \u00e0 5.0.1",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "StormShield Network Security versions 4.3.x ant\u00e9rieures \u00e0 4.3.40",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2025-48707",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-48707"
        }
      ],
      "initial_release_date": "2025-09-25T00:00:00",
      "last_revision_date": "2025-09-25T00:00:00",
      "links": [],
      "reference": "CERTFR-2025-AVI-0816",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2025-09-25T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
        }
      ],
      "summary": "Une vuln\u00e9rabilit\u00e9 a \u00e9t\u00e9 d\u00e9couverte dans StormShield Network Security. Elle permet \u00e0 un attaquant de provoquer une atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es.",
      "title": "Vuln\u00e9rabilit\u00e9 dans StormShield Network Security",
      "vendor_advisories": [
        {
          "published_at": "2025-09-24",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2025-003",
          "url": "https://advisories.stormshield.eu/2025-003/"
        }
      ]
    }

    CERTFR-2025-AVI-0488

    Vulnerability from certfr_avis - Published: 2025-06-11 - Updated: 2025-06-11

    Une vulnérabilité a été découverte dans Stormshield Network Security. Elle permet à un attaquant de provoquer un déni de service à distance.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Network Security Stormshield Network Security versions 4.3.x antérieures à 4.3.37
    Stormshield Stormshield Network Security Stormshield Network Security versions antérieures à 5.0.0
    Stormshield Stormshield Network Security Stormshield Network Security versions 4.7.x et 4.8.x antérieures à 4.8.9
    References
    Bulletin de sécurité StormShield 2024-029 2025-06-10 vendor-advisory

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Stormshield Network Security versions 4.3.x ant\u00e9rieures \u00e0 4.3.37",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "Stormshield Network Security versions ant\u00e9rieures \u00e0 5.0.0",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "Stormshield Network Security versions 4.7.x et 4.8.x ant\u00e9rieures \u00e0 4.8.9",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2024-44078",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-44078"
        }
      ],
      "initial_release_date": "2025-06-11T00:00:00",
      "last_revision_date": "2025-06-11T00:00:00",
      "links": [],
      "reference": "CERTFR-2025-AVI-0488",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2025-06-11T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "D\u00e9ni de service \u00e0 distance"
        }
      ],
      "summary": "Une vuln\u00e9rabilit\u00e9 a \u00e9t\u00e9 d\u00e9couverte dans Stormshield Network Security. Elle permet \u00e0 un attaquant de provoquer un d\u00e9ni de service \u00e0 distance.",
      "title": "Vuln\u00e9rabilit\u00e9 dans Stormshield Network Security",
      "vendor_advisories": [
        {
          "published_at": "2025-06-10",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2024-029",
          "url": "https://advisories.stormshield.eu/2024-029/"
        }
      ]
    }

    CERTFR-2025-AVI-0250

    Vulnerability from certfr_avis - Published: 2025-03-28 - Updated: 2025-03-28

    De multiples vulnérabilités ont été découvertes dans StormShield Network Security. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une atteinte à la confidentialité des données et une atteinte à l'intégrité des données.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Network Security IPMI SN6100 versions antérieures à 1.86
    References
    Bulletin de sécurité StormShield 2023-033 2025-03-27 vendor-advisory

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "IPMI SN6100 versions ant\u00e9rieures \u00e0 1.86",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2021-26733",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-26733"
        },
        {
          "name": "CVE-2021-26730",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-26730"
        },
        {
          "name": "CVE-2021-26731",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-26731"
        },
        {
          "name": "CVE-2021-26732",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-26732"
        },
        {
          "name": "CVE-2021-26729",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-26729"
        },
        {
          "name": "CVE-2021-44776",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-44776"
        },
        {
          "name": "CVE-2021-26728",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-26728"
        },
        {
          "name": "CVE-2021-44467",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-44467"
        },
        {
          "name": "CVE-2021-26727",
          "url": "https://www.cve.org/CVERecord?id=CVE-2021-26727"
        }
      ],
      "initial_release_date": "2025-03-28T00:00:00",
      "last_revision_date": "2025-03-28T00:00:00",
      "links": [],
      "reference": "CERTFR-2025-AVI-0250",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2025-03-28T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
        },
        {
          "description": "Atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es"
        },
        {
          "description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
        },
        {
          "description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans StormShield Network Security. Certaines d\u0027entre elles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance, une atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es et une atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans StormShield Network Security",
      "vendor_advisories": [
        {
          "published_at": "2025-03-27",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2023-033",
          "url": "https://advisories.stormshield.eu/2023-033"
        }
      ]
    }

    CERTFR-2025-AVI-0249

    Vulnerability from certfr_avis - Published: 2025-03-27 - Updated: 2025-03-27

    Une vulnérabilité a été découverte dans StormShield Network Security. Elle permet à un attaquant de provoquer un déni de service à distance.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Network Security StormShield Network Security versions 4.3.x antérieures à 4.3.35
    References
    Bulletin de sécurité StormShield 2025-002 2025-03-27 vendor-advisory

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "StormShield Network Security versions 4.3.x ant\u00e9rieures \u00e0 4.3.35",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2025-27829",
          "url": "https://www.cve.org/CVERecord?id=CVE-2025-27829"
        }
      ],
      "initial_release_date": "2025-03-27T00:00:00",
      "last_revision_date": "2025-03-27T00:00:00",
      "links": [],
      "reference": "CERTFR-2025-AVI-0249",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2025-03-27T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "D\u00e9ni de service \u00e0 distance"
        }
      ],
      "summary": "Une vuln\u00e9rabilit\u00e9 a \u00e9t\u00e9 d\u00e9couverte dans StormShield Network Security. Elle permet \u00e0 un attaquant de provoquer un d\u00e9ni de service \u00e0 distance.",
      "title": "Vuln\u00e9rabilit\u00e9 dans StormShield Network Security",
      "vendor_advisories": [
        {
          "published_at": "2025-03-27",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2025-002",
          "url": "https://advisories.stormshield.eu/2025-002/"
        }
      ]
    }

    CERTFR-2024-AVI-1089

    Vulnerability from certfr_avis - Published: 2024-12-17 - Updated: 2024-12-17

    Une vulnérabilité a été découverte dans Stormshield Stormshield Management Center. Elle permet à un attaquant de provoquer un déni de service à distance.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Management Center Stormshield Management Center (SMC) versions antérieures à 3.7.0
    References
    Bulletin de sécurité StormShield 2024-32 2024-12-17 vendor-advisory

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Stormshield Management Center (SMC) versions ant\u00e9rieures \u00e0 3.7.0",
          "product": {
            "name": "Stormshield Management Center",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2024-45590",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-45590"
        }
      ],
      "initial_release_date": "2024-12-17T00:00:00",
      "last_revision_date": "2024-12-17T00:00:00",
      "links": [],
      "reference": "CERTFR-2024-AVI-1089",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2024-12-17T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "D\u00e9ni de service \u00e0 distance"
        }
      ],
      "summary": "Une vuln\u00e9rabilit\u00e9 a \u00e9t\u00e9 d\u00e9couverte dans Stormshield Stormshield Management Center. Elle permet \u00e0 un attaquant de provoquer un d\u00e9ni de service \u00e0 distance.",
      "title": "Vuln\u00e9rabilit\u00e9 dans les produits StormShield Management Center",
      "vendor_advisories": [
        {
          "published_at": "2024-12-17",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2024-32",
          "url": "https://advisories.stormshield.eu/2024-32"
        }
      ]
    }

    CERTFR-2024-AVI-0985

    Vulnerability from certfr_avis - Published: 2024-11-14 - Updated: 2024-11-14

    De multiples vulnérabilités ont été découvertes dans Stormshield Network Security. Elles permettent à un attaquant de provoquer un déni de service à distance et un contournement de la politique de sécurité.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Network Security Stormshield Network Security versions 4.8.x antérieures à 4.8.4
    Stormshield Stormshield Network Security Stormshield Network Security versions antérieures à 4.3.32
    References

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Stormshield Network Security versions 4.8.x ant\u00e9rieures \u00e0 4.8.4",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "Stormshield Network Security versions ant\u00e9rieures \u00e0 4.3.32",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2024-44077",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-44077"
        },
        {
          "name": "CVE-2024-20505",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-20505"
        }
      ],
      "initial_release_date": "2024-11-14T00:00:00",
      "last_revision_date": "2024-11-14T00:00:00",
      "links": [],
      "reference": "CERTFR-2024-AVI-0985",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2024-11-14T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "D\u00e9ni de service \u00e0 distance"
        },
        {
          "description": "Contournement de la politique de s\u00e9curit\u00e9"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Stormshield Network Security. Elles permettent \u00e0 un attaquant de provoquer un d\u00e9ni de service \u00e0 distance et un contournement de la politique de s\u00e9curit\u00e9.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans Stormshield Network Security",
      "vendor_advisories": [
        {
          "published_at": "2024-11-13",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield STORM-2024-028",
          "url": "https://advisories.stormshield.eu/2024-028/"
        },
        {
          "published_at": "2024-11-13",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield STORM-2024-034",
          "url": "https://advisories.stormshield.eu/2024-034"
        }
      ]
    }

    CERTFR-2024-AVI-0804

    Vulnerability from certfr_avis - Published: 2024-09-25 - Updated: 2024-09-25

    De multiples vulnérabilités ont été découvertes dans les produits Stormshield. Elles permettent à un attaquant de provoquer une atteinte à l'intégrité des données et un contournement de la politique de sécurité.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Network Security Stormshield Network Security versions 4.4.x à 4.7.x antérieures à 4.7.9
    Stormshield Stormshield Network Security Stormshield Network Security versions antérieures à 4.3.30
    Stormshield Stormshield Network Security Stormshield Network Security versions 4.8.x antérieures à 4.8.3
    Stormshield Stormshield Network VPN Client Stormshield VPN Client Exclusive sans le correctif de sécurité EC VULN IS 1986
    Stormshield Stormshield Network VPN Client Stormshield VPN Client Standard sans le correctif de sécurité VULN EC IS 1992
    References

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Stormshield Network Security versions 4.4.x \u00e0 4.7.x ant\u00e9rieures \u00e0 4.7.9",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "Stormshield Network Security versions ant\u00e9rieures \u00e0 4.3.30",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "Stormshield Network Security versions 4.8.x ant\u00e9rieures \u00e0 4.8.3",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "Stormshield VPN Client Exclusive  sans le correctif de s\u00e9curit\u00e9 EC VULN IS 1986",
          "product": {
            "name": "Stormshield Network VPN Client",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "Stormshield VPN Client Standard sans le correctif de s\u00e9curit\u00e9 VULN EC IS 1992",
          "product": {
            "name": "Stormshield Network VPN Client",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2024-39706",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-39706"
        },
        {
          "name": "CVE-2024-45750",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-45750"
        },
        {
          "name": "CVE-2024-3596",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-3596"
        }
      ],
      "initial_release_date": "2024-09-25T00:00:00",
      "last_revision_date": "2024-09-25T00:00:00",
      "links": [],
      "reference": "CERTFR-2024-AVI-0804",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2024-09-25T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "Atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es"
        },
        {
          "description": "Contournement de la politique de s\u00e9curit\u00e9"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans les produits Stormshield. Elles permettent \u00e0 un attaquant de provoquer une atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es et un contournement de la politique de s\u00e9curit\u00e9.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans Stormshield Network Security",
      "vendor_advisories": [
        {
          "published_at": "2024-09-24",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2024-030",
          "url": "https://advisories.stormshield.eu/2024-030/"
        },
        {
          "published_at": "2024-09-25",
          "title": "Bulletin de s\u00e9curit\u00e9 Stormshield 2024-031",
          "url": "https://advisories.stormshield.eu/2024-031/"
        },
        {
          "published_at": "2024-09-24",
          "title": "Bulletin de s\u00e9curit\u00e9 Stormshield 2024-024",
          "url": "https://advisories.stormshield.eu/2024-024/"
        }
      ]
    }

    CERTFR-2024-AVI-0650

    Vulnerability from certfr_avis - Published: 2024-08-05 - Updated: 2024-08-05

    De multiples vulnérabilités ont été découvertes dans Stormshield Management Center. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une atteinte à la confidentialité des données et une atteinte à l'intégrité des données.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Management Center Stormshield Management Center (SMC) versions antérieures à 3.6.0
    References
    Bulletin de sécurité StormShield 2024-01 2024-01-22 vendor-advisory
    Bulletin de sécurité StormShield 2024-027 2024-07-05 vendor-advisory

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Stormshield Management Center (SMC) versions ant\u00e9rieures \u00e0 3.6.0",
          "product": {
            "name": "Stormshield Management Center",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2023-48795",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-48795"
        },
        {
          "name": "CVE-2024-6387",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-6387"
        }
      ],
      "initial_release_date": "2024-08-05T00:00:00",
      "last_revision_date": "2024-08-05T00:00:00",
      "links": [],
      "reference": "CERTFR-2024-AVI-0650",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2024-08-05T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
        },
        {
          "description": "Atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es"
        },
        {
          "description": "Contournement de la politique de s\u00e9curit\u00e9"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Stormshield Management Center. Certaines d\u0027entre elles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance, une atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es et une atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans Stormshield Management Center ",
      "vendor_advisories": [
        {
          "published_at": "2024-01-22",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2024-01",
          "url": "https://advisories.stormshield.eu/2024-01"
        },
        {
          "published_at": "2024-07-05",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2024-027",
          "url": "https://advisories.stormshield.eu/2024-027"
        }
      ]
    }

    CERTFR-2024-AVI-0635

    Vulnerability from certfr_avis - Published: 2024-07-30 - Updated: 2024-07-30

    De multiples vulnérabilités ont été découvertes dans StormShield Management Center. Elles permettent à un attaquant de provoquer un déni de service à distance.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Management Center Management Center versions antérieures à 3.6.0
    References

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Management Center versions ant\u00e9rieures \u00e0 3.6.0",
          "product": {
            "name": "Stormshield Management Center",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2023-6237",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-6237"
        },
        {
          "name": "CVE-2024-4603",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-4603"
        },
        {
          "name": "CVE-2023-5678",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-5678"
        }
      ],
      "initial_release_date": "2024-07-30T00:00:00",
      "last_revision_date": "2024-07-30T00:00:00",
      "links": [],
      "reference": "CERTFR-2024-AVI-0635",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2024-07-30T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "D\u00e9ni de service \u00e0 distance"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans StormShield Management Center. Elles permettent \u00e0 un attaquant de provoquer un d\u00e9ni de service \u00e0 distance.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans StormShield Management Center",
      "vendor_advisories": [
        {
          "published_at": "2024-07-30",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2024-022",
          "url": "https://advisories.stormshield.eu/2024-022"
        },
        {
          "published_at": "2024-07-30",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2024-23",
          "url": "https://advisories.stormshield.eu/2024-23"
        },
        {
          "published_at": "2024-07-30",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2023-036",
          "url": "https://advisories.stormshield.eu/2023-036"
        }
      ]
    }

    CERTFR-2024-AVI-0586

    Vulnerability from certfr_avis - Published: 2024-07-16 - Updated: 2024-08-21

    De multiples vulnérabilités ont été découvertes dans les produits Stormshield. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire, une injection de code indirecte à distance (XSS) et un contournement de la politique de sécurité.

    Solutions

    Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

    Impacted products
    Vendor Product Description
    Stormshield Stormshield Network Security Stormshield Network Security versions 3.7.x antérieures à 3.7.42
    Stormshield Stormshield Network Security Stormshield Network Security versions 4.x antérieures à 4.3.27
    Stormshield Stormshield Network Security Stormshield Network Security versions ultérieures à 4.4.0 et antérieures à 4.7.6
    Stormshield Stormshield Network Security Stormshield Network Security versions 3.1x.x antérieures à 3.11.30
    Stormshield Stormshield Network Security Stormshield Network Security versions 4.8.x antérieures à 4.8.1
    References

    Show details on source website

    {
      "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
      "affected_systems": [
        {
          "description": "Stormshield Network Security versions 3.7.x ant\u00e9rieures \u00e0 3.7.42",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "Stormshield Network Security versions 4.x ant\u00e9rieures \u00e0 4.3.27",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "Stormshield Network Security versions ult\u00e9rieures \u00e0 4.4.0 et ant\u00e9rieures \u00e0 4.7.6",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "Stormshield Network Security versions 3.1x.x ant\u00e9rieures \u00e0 3.11.30",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        },
        {
          "description": "Stormshield Network Security versions 4.8.x ant\u00e9rieures \u00e0 4.8.1",
          "product": {
            "name": "Stormshield Network Security",
            "vendor": {
              "name": "Stormshield",
              "scada": false
            }
          }
        }
      ],
      "affected_systems_content": "",
      "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
      "cves": [
        {
          "name": "CVE-2024-31946",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-31946"
        },
        {
          "name": "CVE-2024-37386",
          "url": "https://www.cve.org/CVERecord?id=CVE-2024-37386"
        },
        {
          "name": "CVE-2022-47522",
          "url": "https://www.cve.org/CVERecord?id=CVE-2022-47522"
        }
      ],
      "initial_release_date": "2024-07-16T00:00:00",
      "last_revision_date": "2024-08-21T00:00:00",
      "links": [],
      "reference": "CERTFR-2024-AVI-0586",
      "revisions": [
        {
          "description": "Version initiale",
          "revision_date": "2024-07-16T00:00:00.000000"
        },
        {
          "description": "Suppression de la CVE-2024-3094 non applicable",
          "revision_date": "2024-08-21T00:00:00.000000"
        }
      ],
      "risks": [
        {
          "description": "Injection de code indirecte \u00e0 distance (XSS)"
        },
        {
          "description": "Ex\u00e9cution de code arbitraire"
        },
        {
          "description": "Contournement de la politique de s\u00e9curit\u00e9"
        }
      ],
      "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans les produits Stormshield. Certaines d\u0027entre elles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire, une injection de code indirecte \u00e0 distance (XSS) et un contournement de la politique de s\u00e9curit\u00e9.",
      "title": "Multiples vuln\u00e9rabilit\u00e9s dans les produits Stormshield",
      "vendor_advisories": [
        {
          "published_at": "2024-05-28",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2024-017",
          "url": "https://advisories.stormshield.eu/2024-017/"
        },
        {
          "published_at": "2024-04-10",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2024-007",
          "url": "https://advisories.stormshield.eu/2024-007"
        },
        {
          "published_at": "2024-05-28",
          "title": "Bulletin de s\u00e9curit\u00e9 StormShield 2024-018",
          "url": "https://advisories.stormshield.eu/2024-018/"
        }
      ]
    }