CVE-2025-59703

CRITICAL

Entrust nShield HSM <13.6.12 - Physical Tampering via F14 Attack

Title source: llm
STIX 2.1

Description

Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a Physically Proximate Attacker to access the internal components of the appliance, without leaving tamper evidence. To exploit this, the attacker needs to remove the tamper label and all fixing screws from the device without damaging it. This is called an F14 attack.

Scores

CVSS v3 9.1
EPSS 0.0037
EPSS Percentile 28.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact total

Details

CWE
CWE-284
Status published
Products (5)
entrust/nshield_5c_firmware < 13.6.12
entrust/nshield_connect_xc_base_firmware < 13.6.12
entrust/nshield_connect_xc_high_firmware < 13.6.12
entrust/nshield_connect_xc_mid_firmware < 13.6.12
entrust/nshield_hsmi_firmware < 13.6.12
Published Dec 02, 2025
Tracked Since Feb 18, 2026