Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a physically proximate attacker to escalate privileges by booting from a USB device with a valid root filesystem. This occurs because of insecure default settings in the Legacy GRUB Bootloader.
Metrics
Affected Vendors & Products
References
History
Mon, 08 Dec 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Entrust nshield 5c Firmware
Entrust nshield Connect Xc Base Entrust nshield Connect Xc Base Firmware Entrust nshield Connect Xc High Entrust nshield Connect Xc High Firmware Entrust nshield Connect Xc Mid Entrust nshield Connect Xc Mid Firmware Entrust nshield Hsmi Firmware |
|
| CPEs | cpe:2.3:h:entrust:nshield_5c:-:*:*:*:*:*:*:* cpe:2.3:h:entrust:nshield_connect_xc_base:-:*:*:*:*:*:*:* cpe:2.3:h:entrust:nshield_connect_xc_high:-:*:*:*:*:*:*:* cpe:2.3:h:entrust:nshield_connect_xc_mid:-:*:*:*:*:*:*:* cpe:2.3:h:entrust:nshield_hsmi:-:*:*:*:*:*:*:* cpe:2.3:o:entrust:nshield_5c_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:entrust:nshield_connect_xc_base_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:entrust:nshield_connect_xc_high_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:entrust:nshield_connect_xc_mid_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:entrust:nshield_hsmi_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Entrust nshield 5c Firmware
Entrust nshield Connect Xc Base Entrust nshield Connect Xc Base Firmware Entrust nshield Connect Xc High Entrust nshield Connect Xc High Firmware Entrust nshield Connect Xc Mid Entrust nshield Connect Xc Mid Firmware Entrust nshield Hsmi Firmware |
Thu, 04 Dec 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-290 | |
| Metrics |
cvssV3_1
|
Thu, 04 Dec 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Entrust
Entrust nshield 5c Entrust nshield Connect Xc Entrust nshield Hsmi |
|
| Vendors & Products |
Entrust
Entrust nshield 5c Entrust nshield Connect Xc Entrust nshield Hsmi |
Tue, 02 Dec 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a physically proximate attacker to escalate privileges by booting from a USB device with a valid root filesystem. This occurs because of insecure default settings in the Legacy GRUB Bootloader. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2025-12-02T00:00:00.000Z
Updated: 2025-12-04T16:28:32.832Z
Reserved: 2025-09-18T00:00:00.000Z
Link: CVE-2025-59699
Updated: 2025-12-04T16:27:24.787Z
Status : Analyzed
Published: 2025-12-02T15:15:55.537
Modified: 2025-12-08T19:41:55.027
Link: CVE-2025-59699
No data.