CVE-2015-1878 Information
Feb 14, 2021
cve
Description
Thales nShield Connect hardware models 500 1500 6000 500+ 1500+ and 6000+ before 11.72 allows physically proximate attackers to sign arbitrary data with previously loaded signing keys extract the device identification key [KNETI] and impersonate the nShield Connect device on a network affect the integrity and confidentiality of newly created keys and potentially cause other unspecified impacts using previously loaded keys by connecting to the USB port on the front panel.
CVSS Vector
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Reference
http://www.securitytracker.com/id/1032152
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
6.8
Share on: