CVE-2015-1878
18.08.2017, 16:29
Thales nShield Connect hardware models 500, 1500, 6000, 500+, 1500+, and 6000+ before 11.72 allows physically proximate attackers to sign arbitrary data with previously loaded signing keys, extract the device identification key [KNETI] and impersonate the nShield Connect device on a network, affect the integrity and confidentiality of newly created keys, and potentially cause other unspecified impacts using previously loaded keys by connecting to the USB port on the front panel.Enginsight
Vendor | Product | Version |
---|---|---|
thalesesecurity | nshield_connect_firmware | 𝑥 ≤ 11.30 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration