CVE-2026-8480 Details
Description
A vulnerability was discovered on Stormshield Network Security 4.3.0 to 4.3.41 (included), 4.4.0 to 4.8.15 (included) , 5.0.2 EA to 5.0.5 (included) A revoked client certificate can still be used to authenticate to the captive‑admin portal, allowing an attacker who possesses the revoked certificate to gain administrative access.
An authentication bypass vulnerability has been identified in Stormshield Network Security versions 4.3.0 to 4.3.41 (inclusive), 4.4.0 to 4.8.15 (inclusive), and 5.0.2 EA to 5.0.5 (inclusive). The vulnerability allows a revoked client certificate to still be used for authentication to the captive-admin portal. This issue enables an attacker in possession of the revoked certificate to gain administrative access.
To address this vulnerability, users can update to Stormshield Network Security versions 5.0.6, 4.8.16, or 4.3.42. Alternatively, the 'nrestart sld' command can be run after revoking a certificate, or certificate-based authentication can be disabled.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Jul 1, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://advisories.stormshield.eu/2026-002/ | [email protected] |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-295 | Improper Certificate Validation | [email protected] |
Affected Products
No affected product data is available for this CVE.
Change History
2 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jul 1, 2026 | CVE Modified | CISA-ADP |
| Jul 1, 2026 | New CVE Received | [email protected] |