PT-2024-27512 · Stormshield · Stormshield Network Security

Published

2024-07-15

·

Updated

2024-08-01

·

CVE-2024-37386

CVSS v3.1

4.2

Medium

VectorAV:P/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Stormshield Network Security (SNS) versions 4.0.0 through 4.3.25 Stormshield Network Security (SNS) versions 4.4.0 through 4.7.5 Stormshield Network Security (SNS) version 4.8.0
Description An issue was discovered in Stormshield Network Security (SNS) that allows certain manipulations to restart the system in single-user mode despite the activation of secure boot.
Recommendations For versions 4.0.0 through 4.3.25, update to version 4.3.27 to resolve the issue. For versions 4.4.0 through 4.7.5, update to version 4.7.6 to resolve the issue. For version 4.8.0, update to version 4.8.2 to resolve the issue.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2024-37386

Affected Products

Stormshield Network Security