CVE Vulnerabilities

CVE-2025-59696

Improper Physical Access Control

Published: Dec 02, 2025 | Modified: Dec 08, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a physically proximate attacker to modify or erase tamper events via the Chassis management board.

Weakness

The product is designed with access restricted to certain information, but it does not sufficiently protect against an unauthorized actor with physical access to these areas.

Affected Software

NameVendorStart VersionEnd Version
Nshield_5c_firmwareEntrust*13.6.12 (excluding)
Nshield_5c_firmwareEntrust13.7 (including)13.9.0 (excluding)

Potential Mitigations

References