GHSA-w5fv-rcj5-pmj9CriticalCVSS 9.8
Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a user...
🔗 CVE IDs covered (1)
📋 Description
Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a user with OS root access to alter firmware on the Chassis Management Board (without Authentication). This is called F04.
🔗 References (5)
- https://github.com/google/security-research/security/advisories/GHSA-6q4x-m86j-gfwj
- https://nvd.nist.gov/vuln/detail/CVE-2025-59695
- https://www.entrust.com/use-case/why-use-an-hsm
- https://github.com/advisories/GHSA-w5fv-rcj5-pmj9
- https://www.entrust.com/knowledgebase/hardware/understanding-nshield-security-advisory-september-2025