CVE-2026-8480
EUVD-2026-4104301.07.2026, 16:16
A vulnerability was discovered on Stormshield Network Security 4.3.0 to 4.3.41 (included), 4.4.0 to 4.8.15 (included) , 5.0.2 EA to 5.0.5 (included) A revoked client certificate can still be used to authenticate to the captive‑admin portal, allowing an attacker who possesses the revoked certificate to gain administrative access.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| stormshield | network_security | 4.3.0 ≤ 𝑥 ≤ 4.3.41 | CNA |
| stormshield | network_security | 4.4.0 ≤ 𝑥 ≤ 4.8.15 | CNA |
| stormshield | network_security | 𝑥 ≤ 5.0.5 | CNA |
Common Weakness Enumeration