Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2j5q-9jw8-9qj5

Опубликовано: 01 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

A vulnerability was discovered on Stormshield Network Security 4.3.0  to 4.3.41 (included), 4.4.0 to 4.8.15 (included) , 5.0.2 EA to 5.0.5 (included)

A revoked client certificate can still be used to authenticate to the captive‑admin portal, allowing an attacker who possesses the revoked certificate to gain administrative access.

A vulnerability was discovered on Stormshield Network Security 4.3.0  to 4.3.41 (included), 4.4.0 to 4.8.15 (included) , 5.0.2 EA to 5.0.5 (included)

A revoked client certificate can still be used to authenticate to the captive‑admin portal, allowing an attacker who possesses the revoked certificate to gain administrative access.

EPSS

Процентиль: 0%
0.00087
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 4.3
nvd
около 1 месяца назад

A vulnerability was discovered on Stormshield Network Security 4.3.0  to 4.3.41 (included), 4.4.0 to 4.8.15 (included) , 5.0.2 EA to 5.0.5 (included) A revoked client certificate can still be used to authenticate to the captive‑admin portal, allowing an attacker who possesses the revoked certificate to gain administrative access.

EPSS

Процентиль: 0%
0.00087
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-295