Description
A vulnerability was discovered on StormShield Network Security 4.3.0 to 4.3.41 (included), 4.8.0 to 4.8.15 (included) , 5.0.0 to 5.0.5 (included)

There is a possible leak of secret information if administration commands have been passed with the CLI command line tool.

Someone with SSH access to the firewall (if SSH multiuser mode is enabled) could possibly get the proxy CA passphrase or TPM password.
Published: 2026-07-02
Score: 4.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A flaw in Stormshield Network Security's command history handling can expose secret credentials when administrative CLI commands are executed from the SSH CLI. The vulnerability might reveal the proxy Certificate Authority passphrase or the TPM password, which matches the confidentiality issue defined by CWE-532. The impact is a loss of confidentiality for credentials that could be used to bypass authentication or gain elevated control of the device.

Affected Systems

Stormshield Network Security appliances running versions 4.3.0 through 4.3.41, 4.8.0 through 4.8.15, and 5.0.0 through 5.0.5 are affected; the issue is fixed in SNS 4.3.42, SNS 4.8.16 and SNS 5.0.6.

Risk and Exploitability

The CVSS score of 4.3 places the vulnerability in a low to medium severity range, and the EPSS score of less than 1 % indicates a very low likelihood of exploitation. The vulnerability is not listed in the CISA KEV catalog. Access requires SSH multi-user mode with administrative privileges to execute CLI commands that trigger the information leak, which is inferred from the description; if SSH is not enabled or the device is in single-user mode the risk is mitigated.

Generated by OpenCVE AI on July 22, 2026 at 13:50 UTC.

Remediation

Vendor Solution

The following updates fix this vulnerability: * SNS 5.0.6 * SNS 4.8.16 * SNS 4.3.42


OpenCVE Recommended Actions

  • Upgrade the device to SNS 5.0.6, SNS 4.8.16, or SNS 4.3.42 to apply the vendor’s fix.
  • If an immediate upgrade is not possible, disable SSH multi-user mode to prevent multiple administrators from sharing shell access that could expose credentials in history.
  • Configure the firewall to suppress or sanitize command-history entries for sensitive administrative commands, ensuring that passphrases are not stored in plaintext.
  • Monitor system logs for unusual activity and confirm that the vulnerability is no longer exploitable after remediation.

Generated by OpenCVE AI on July 22, 2026 at 13:50 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 04 Jul 2026 02:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 02 Jul 2026 10:45:00 +0000

Type Values Removed Values Added
First Time appeared Stormshield
Stormshield stormshield Network Security
Vendors & Products Stormshield
Stormshield stormshield Network Security

Thu, 02 Jul 2026 09:45:00 +0000

Type Values Removed Values Added
Description A vulnerability was discovered on StormShield Network Security 4.3.0 to 4.3.41 (included), 4.8.0 to 4.8.15 (included) , 5.0.0 to 5.0.5 (included) There is a possible leak of secret information if administration commands have been passed with the CLI command line tool. Someone with SSH access to the firewall (if SSH multiuser mode is enabled) could possibly get the proxy CA passphrase or TPM password.
Title Information leak in NSRPC client history
Weaknesses CWE-532
References
Metrics cvssV3_1

{'score': 4.3, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:N'}


Subscriptions

Stormshield Stormshield Network Security
cve-icon MITRE

Status: PUBLISHED

Assigner: airbus

Published:

Updated: 2026-07-02T12:20:17.839Z

Reserved: 2026-05-13T14:04:22.661Z

Link: CVE-2026-8482

cve-icon Vulnrichment

Updated: 2026-07-02T12:20:09.475Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-22T14:00:04Z

Weaknesses
  • CWE-532

    Insertion of Sensitive Information into Log File