← לוח פגיעויות

CVE-2026-8480

בינונית 4.3

תיאור (מקור, אנגלית)

A vulnerability was discovered on Stormshield Network Security 4.3.0  to 4.3.41 (included), 4.4.0 to 4.8.15 (included) , 5.0.2 EA to 5.0.5 (included) A revoked client certificate can still be used to authenticate to the captive‑admin portal, allowing an attacker who possesses the revoked certificate to gain administrative access.

מדדים

CVSS 3.1
4.3 (MEDIUM) מקור הציון: CNA CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
EPSS — סבירות ניצול
0% (אחוזון 000) נכון ל-15/8/2026
CWE
CWE-295

קישורים