CVE-2025-59701: Medium severity Entrust nShield Connect XC vulnerability
Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a physically proximate attacker (with elevated privileges) to read and modify the Appliance SSD contents (because they are unencrypted).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-59701?
CVE-2025-59701 is considered a critical vulnerability as it allows elevated access to sensitive data on unencrypted SSD contents.
How do I fix CVE-2025-59701?
To mitigate CVE-2025-59701, ensure that physical access to the affected hardware is restricted and consider implementing encryption on the Appliance SSD.
What versions are affected by CVE-2025-59701?
The affected versions include Entrust nShield Connect XC and nShield 5c through 13.6.11, as well as nShield HSMi versions between 13.6.11 and 13.7.
What are the potential impacts of CVE-2025-59701?
The potential impacts include unauthorized reading and modification of the Appliance SSD contents by physically proximate attackers with elevated privileges.
Is CVE-2025-59701 exploitable remotely?
CVE-2025-59701 is not remotely exploitable as it requires physical proximity to the affected hardware.