Total vulnerabilities in the database
In Stormshield Network Security (SNS) 1.0.0 through 3.7.36 before 3.7.37, 3.8.0 through 3.11.24 before 3.11.25, 4.0.0 through 4.3.18 before 4.3.19, 4.4.0 through 4.6.5 before 4.6.6, and 4.7.0 before 4.7.1, the usage of a Network object created from an inactive DHCP interface in the filtering slot results in the usage of an object of the :any" type, which may have unexpected results for access control.
Software | From | Fixed in |
---|---|---|
stormshield / stormshield_network_security | 4.7.0 | 4.7.0.x |
stormshield / stormshield_network_security | 4.4.0 | 4.6.6 |
stormshield / stormshield_network_security | 4.0.0 | 4.3.19 |
stormshield / stormshield_network_security | 3.8.0 | 3.11.25 |
stormshield / stormshield_network_security | 1.0.0 | 3.7.37 |