CVE-2025-59697EPSS p21.4%

CVE-2025-59697CVE-2025-59697

entrust / nshield_5c_firmware

Description

Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7 (patched in 13.6.12 (LTS) and 13.9.0 (STS)), allow a physically proximate attacker to escalate privileges by editing the Legacy GRUB bootloader configuration to start a root shell upon boot of the host OS. This is called F06.

Scoring

CVSS 7.2 ()
VectorCVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
EPSS0.31% probability of exploitation · percentile 21.4% · 2026-10-05T12:00:23Z
Last modified2026-08-26
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.