Vulnerabilities > Stormshield

DATE CVE VULNERABILITY TITLE RISK
2024-02-29 CVE-2023-41165 Cross-site Scripting vulnerability in Stormshield Network Security
An issue was discovered in Stormshield Network Security (SNS) 3.7.0 through 3.7.38 before 3.7.39, 3.10.0 through 3.11.26 before 3.11.27, 4.0 through 4.3.21 before 4.3.22, and 4.4.0 through 4.6.8 before 4.6.9.
network
low complexity
stormshield CWE-79
4.8
2024-02-29 CVE-2023-34198 Unspecified vulnerability in Stormshield Network Security
In Stormshield Network Security (SNS) 1.0.0 through 3.7.36 before 3.7.37, 3.8.0 through 3.11.24 before 3.11.25, 4.0.0 through 4.3.18 before 4.3.19, 4.4.0 through 4.6.5 before 4.6.6, and 4.7.0 before 4.7.1, the usage of a Network object created from an inactive DHCP interface in the filtering slot results in the usage of an object of the :any" type, which may have unexpected results for access control.
network
low complexity
stormshield
7.3
2023-12-26 CVE-2023-28616 Cleartext Transmission of Sensitive Information vulnerability in Stormshield Network Security
An issue was discovered in Stormshield Network Security (SNS) before 4.3.17, 4.4.x through 4.6.x before 4.6.4, and 4.7.x before 4.7.1.
network
low complexity
stormshield CWE-319
7.5
2023-12-25 CVE-2023-47091 Classic Buffer Overflow vulnerability in Stormshield Network Security
An issue was discovered in Stormshield Network Security (SNS) SNS 4.3.13 through 4.3.22 before 4.3.23, SNS 4.6.0 through 4.6.9 before 4.6.10, and SNS 4.7.0 through 4.7.1 before 4.7.2.
network
low complexity
stormshield CWE-120
7.5
2023-12-21 CVE-2023-41166 Unspecified vulnerability in Stormshield Network Security
An issue was discovered in Stormshield Network Security (SNS) 3.7.0 through 3.7.39, 3.11.0 through 3.11.27, 4.3.0 through 4.3.22, 4.6.0 through 4.6.9, and 4.7.0 through 4.7.1.
network
low complexity
stormshield
5.3
2023-12-21 CVE-2023-47093 Unspecified vulnerability in Stormshield Network Security
An issue was discovered in Stormshield Network Security (SNS) 4.0.0 through 4.3.21, 4.4.0 through 4.6.8, and 4.7.0.
low complexity
stormshield
6.5
2023-08-28 CVE-2022-46783 Inadequate Encryption Strength vulnerability in Stormshield SSL VPN Client
An issue was discovered in Stormshield SSL VPN Client before 3.2.0.
network
low complexity
stormshield CWE-326
5.3
2023-08-28 CVE-2023-26095 Unspecified vulnerability in Stormshield Network Security
ASQ in Stormshield Network Security (SNS) 4.3.15 before 4.3.16 and 4.6.x before 4.6.3 allows a crash when analysing a crafted SIP packet.
network
low complexity
stormshield
7.5
2023-08-25 CVE-2021-27932 Unspecified vulnerability in Stormshield SSL VPN Client 2.1.0/3.0.0
Stormshield Network Security (SNS) VPN SSL Client 2.1.0 through 2.8.0 has Insecure Permissions.
local
low complexity
stormshield
7.8
2023-08-25 CVE-2020-11711 Cross-site Scripting vulnerability in Stormshield Network Security
An issue was discovered in Stormshield SNS 3.8.0.
network
low complexity
stormshield CWE-79
4.8