Skip to main content

Vendor archive

thalesgroup CVEs

Beta · best-effort

17 CVEs tagged to vendor thalesgroup1 Critical, 5 High, 10 Medium, 1 Low, 0 Unrated.

CVE-2026-6805

Published May 7, 2026

Vulnerability on the external sharing feature in Cryptobox allows an attacker knowing a sharing link URL to retrieve information from the server allowing an offline brute-force at…

CVSS 6.9 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-5264

Published May 23, 2024

Network Transfer with AES KHT in Thales Luna EFT 2.1 and above allows a user with administrative console access to access backups taken via offline analysis

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-1293

Published Aug 2, 2022

The embedded neutralization of Script-Related HTML Tag, was by-passed in the case of some extra conditions.

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-42811

Published Jun 10, 2022

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in SafeNet KeySecure allows an authenticated user to read arbitrary files from the und…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-28979

Published Jun 16, 2021

SafeNet KeySecure Management Console 8.12.0 is vulnerable to HTTP response splitting attacks. A remote attacker could exploit this vulnerability using specially-crafted URL to cau…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-15858

Published Aug 21, 2020

Some devices of Thales DIS (formerly Gemalto, formerly Cinterion) allow Directory Traversal by physically proximate attackers. The directory path access check of the internal flas…

CVSS 6.2 · Medium
evidence mentions
1
Buzz score
11.9
Showing 1-17 of 17 CVEsPage 1 of 1