CVE Feed

    Dashboard / CVE / CVE-2025-59704

    CVE-2025-59704

    Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7 (patched in 13.6.12 (LTS) and 13.9.0 (STS)), allow an attacker to gain access the the BIOS menu because is has no password.

    Published:Dec 2, 2025
    Last Modified:Aug 26, 2026
    EPS:Dec 2, 2025
    EPSS Score:0.00227
    CVSS Score:7.8

    Affected Products

    Vendor
    Entrust
    Product
    Nshield 5c
    Vendor
    Entrust
    Product
    Nshield 5c Firmware
    Vendor
    Entrust
    Product
    Nshield Connect Xc
    Vendor
    Entrust
    Product
    Nshield Connect Xc Base
    Vendor
    Entrust
    Product
    Nshield Connect Xc Base Firmware
    Vendor
    Entrust
    Product
    Nshield Connect Xc High
    Vendor
    Entrust
    Product
    Nshield Connect Xc High Firmware
    Vendor
    Entrust
    Product
    Nshield Connect Xc Mid
    Vendor
    Entrust
    Product
    Nshield Connect Xc Mid Firmware
    Vendor
    Entrust
    Product
    Nshield Hsmi
    Vendor
    Entrust
    Product
    Nshield Hsmi Firmware

    Common Weakness Enumeration

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High