Vulnerabilities (CVE)

Filtered by vendor Stormshield Subscribe
Filtered by product Network Security
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-28665 1 Stormshield 2 Network Security, Stormshield Network Security 2024-11-21 5.0 MEDIUM 7.5 HIGH
Stormshield SNS with versions before 3.7.18, 3.11.6 and 4.1.6 has a memory-management defect in the SNMP plugin that can lead to excessive consumption of memory and CPU resources, and possibly a denial of service.
CVE-2022-22703 2 Microsoft, Stormshield 2 Windows, Network Security 2024-02-28 2.1 LOW 5.5 MEDIUM
In Stormshield SSO Agent 2.x before 2.1.1 and 3.x before 3.0.2, the cleartext user password and PSK are contained in the log file of the .exe installer.
CVE-2021-45885 1 Stormshield 1 Network Security 2024-02-28 4.3 MEDIUM 7.5 HIGH
An issue was discovered in Stormshield Network Security (SNS) 4.2.2 through 4.2.7 (fixed in 4.2.8). Under a specific update-migration scenario, the first SSH password change does not properly clear the old password.