← Back

CVE-2025-59703

nvd nist
Published: Dec 2, 2025Modified: Jun 17, 2026

JSON object

Loading...
9.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Exploitability: 3.9 / Impact: 5.2
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a Physically Proximate Attacker to access the internal components of the appliance, without leaving tamper evidence. To exploit this, the attacker needs to remove the tamper label and all fixing screws from the device without damaging it. This is called an F14 attack.

Affected (10)

5 products
Nshield 5c Firmware
Nshield Hsmi Firmware
Nshield Connect Xc Base Firmware
Nshield Connect Xc Mid Firmware
Nshield Connect Xc High Firmware
Configuration A
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Entrust
Before 13.6.12
From 13.7 to 13.9.0
Running on/withPlatform Versions
Entrust
Nshield 5c
All versions
Configuration B
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Entrust
Before 13.6.12
From 13.7 to 13.9.0
Running on/withPlatform Versions
Entrust
Nshield Hsmi
All versions
Configuration C
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Entrust
Before 13.6.12
From 13.7 to 13.9.0
Running on/withPlatform Versions
Entrust
Nshield Connect Xc Base
All versions
Configuration D
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Entrust
Before 13.6.12
From 13.7 to 13.9.0
Running on/withPlatform Versions
Entrust
Nshield Connect Xc Mid
All versions
Configuration E
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Entrust
Before 13.6.12
From 13.7 to 13.9.0
Running on/withPlatform Versions
Entrust
Nshield Connect Xc High
All versions

References (2)

Timeline

No history available yet.