CNNVD-202509-3930 Information

CNNVD ID

CNNVD-202509-3930

CVE-2025-48707

  • CNNVD Published: 2025-09-25

Description (Chinese)

Stormshield Network Security(SNS)是法国Stormshield公司的一款下一代UTM(统一威胁管理)防火墙。 Stormshield Network Security 5.0.1之前版本存在安全漏洞,该漏洞源于TPM身份验证信息可能在HA用例中共享,可能导致秘密共享。

Description (English)

Stormshield Network Security (SNS) is a generation of UTM (Uniform Threat Management) firewalls of the French firm Stormshield. There was a security loophole in the previous version of Stormshield Network Security 5.1, which originated from the fact that TPM authentication information could be shared in the HA case and could lead to secret sharing.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

struktur

Published

2025-09-25

Last Modified

2026-02-24

References

https://advisories.stormshield.eu/2025-003/ https://access.redhat.com/security/cve/cve-2025-48707 https://vigilance.fr/vulnerability/Stormshield-Network-Security-information-disclosure-via-TPM-48277

Patch

https://www.stormshield.com/products-services/products/network-security/product-range-sns/

Share on: