CVE-2025-27829
- EPSS 0.05%
- Published 01.04.2025 17:15:46
- Last modified 14.04.2025 18:15:28
An issue was discovered in Stormshield Network Security (SNS) 4.3.x before 4.3.35. If multicast streams are enabled on different interfaces, it may be possible to interrupt multicast traffic on some of these interfaces. That could result in a denial ...
CVE-2024-31946
- EPSS 0.04%
- Published 15.07.2024 19:15:02
- Last modified 21.11.2024 09:14:10
An issue was discovered in Stormshield Network Security (SNS) 3.7.0 through 3.7.41, 3.10.0 through 3.11.29, 4.0 through 4.3.24, and 4.4.0 through 4.7.4. A user who has access to the SNS with write access on the email alerts page has the ability to cr...
CVE-2022-22703
- EPSS 0.06%
- Published 17.01.2022 21:15:07
- Last modified 21.11.2024 06:47:17
In Stormshield SSO Agent 2.x before 2.1.1 and 3.x before 3.0.2, the cleartext user password and PSK are contained in the log file of the .exe installer.
CVE-2021-45885
- EPSS 0.24%
- Published 29.12.2021 17:15:07
- Last modified 21.11.2024 06:33:11
An issue was discovered in Stormshield Network Security (SNS) 4.2.2 through 4.2.7 (fixed in 4.2.8). Under a specific update-migration scenario, the first SSH password change does not properly clear the old password.
CVE-2021-28665
- EPSS 0.47%
- Published 06.05.2021 20:15:09
- Last modified 21.11.2024 06:00:03
Stormshield SNS with versions before 3.7.18, 3.11.6 and 4.1.6 has a memory-management defect in the SNMP plugin that can lead to excessive consumption of memory and CPU resources, and possibly a denial of service.