CVE-2025-59698: Medium severity Entrust nShield Connect XC vulnerability
Published Dec 2, 2025
·Updated
Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, might allow a physically proximate attacker to gain access to the EOL legacy bootloader.
Affected Software
18 affected components
Entrust nShield Connect XC
Entrust nShield 5c
Entrust nShield HSMi<=13.6.11
All of the following
Any of the following
Entrust Nshield 5c Firmware<13.6.12
Entrust Nshield 5c Firmware>=13.7<13.9.0
Entrust nShield 5c
All of the following
Any of the following
Entrust Nshield Hsmi Firmware<13.6.12
Entrust Nshield Hsmi Firmware>=13.7<13.9.0
Entrust nShield HSMi
All of the following
Any of the following
Entrust Nshield Connect Xc Base Firmware<13.6.12
Entrust Nshield Connect Xc Base Firmware>=13.7<13.9.0
Entrust Nshield Connect Xc Base
All of the following
Any of the following
Entrust Nshield Connect Xc Mid Firmware<13.6.12
Entrust Nshield Connect Xc Mid Firmware>=13.7<13.9.0
Entrust Nshield Connect Xc Mid
All of the following
Any of the following
Entrust Nshield Connect Xc High Firmware<13.6.12
Entrust Nshield Connect Xc High Firmware>=13.7<13.9.0
Entrust Nshield Connect Xc High
Event History
Dec 2, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-59698?
CVE-2025-59698 is considered to have a high severity due to the potential for physical access exploitation.
2
How do I fix CVE-2025-59698?
To mitigate CVE-2025-59698, ensure your systems are updated to the latest firmware version available from Entrust.
3
Who is affected by CVE-2025-59698?
CVE-2025-59698 affects Entrust nShield Connect XC, nShield 5c, and nShield HSMi devices up to versions 13.6.11 and 13.7.
4
What kind of attack does CVE-2025-59698 facilitate?
CVE-2025-59698 allows a physically proximate attacker to gain unauthorized access to the legacy bootloader.
5
What is the recommendation for my Entrust nShield device regarding CVE-2025-59698?
It is recommended to immediately check for available firmware updates to remediate CVE-2025-59698.