Known Vulnerabilities for products from Gemalto
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Gemalto".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Additional devices specifications by Gemalto can be found at device.report : Gemalto
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2019-18232 json | SafeNet Sentinel LDK License Manager, all versions prior to 7.101(only Microsoft Windows versions are affected) is vulnerable... | 7.8 - HIGH | 2019-12-11 | 2019-12-19 |
| CVE-2019-9158 json | Gemalto DS3 Authentication Server 2.6.1-SP01 has Broken Access Control. | 5.7 - MEDIUM | 2019-06-05 | 2020-08-24 |
| CVE-2019-9157 json | Gemalto DS3 Authentication Server 2.6.1-SP01 allows Local File Disclosure. | 5.7 - MEDIUM | 2019-06-05 | 2021-07-21 |
| CVE-2019-9156 json | Gemalto DS3 Authentication Server 2.6.1-SP01 allows OS Command Injection. | 8 - HIGH | 2019-06-05 | 2019-06-06 |
| CVE-2019-8283 json | Hasplm cookie in Gemalto Admin Control Center, all versions prior to 7.92, does not have 'HttpOnly' flag. This allows malicio... | 6.5 - MEDIUM | 2019-06-07 | 2021-09-14 |
| CVE-2019-8282 json | Gemalto Admin Control Center, all versions prior to 7.92, uses cleartext HTTP to communicate with www3.safenet-inc.com to obt... | 5.3 - MEDIUM | 2019-06-07 | 2020-10-22 |
| CVE-2019-6534 json | The uncontrolled search path element vulnerability in Gemalto Sentinel UltraPro Client Library ux32w.dll Versions 1.3.0, 1.3.... | 7.8 - HIGH | 2019-04-11 | 2023-01-31 |
| CVE-2018-15492 json | A vulnerability in the lservnt.exe component of Sentinel License Manager version 8.5.3.35 (fixed in 8.5.3.2403) causes UDP am... | 7.5 - HIGH | 2018-08-18 | 2018-10-23 |
| CVE-2018-8900 json | The License Manager service of HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE 7.80 allows remote... | 6.1 - MEDIUM | 2018-05-02 | 2018-06-14 |
| CVE-2018-6305 json | Denial of service in Gemalto's Sentinel LDK RTE version before 7.65 | 7.5 - HIGH | 2018-03-13 | 2018-06-14 |
| CVE-2018-6304 json | Stack overflow in custom XML-parser in Gemalto's Sentinel LDK RTE version before 7.65 leads to remote denial of service | 7.5 - HIGH | 2018-03-13 | 2020-08-24 |
| CVE-2017-11498 json | Buffer overflow in hasplms in Gemalto ACC (Admin Control Center), all versions ranging from HASP SRM 2.10 to Sentinel LDK 7.5... | 7.5 - HIGH | 2017-10-03 | 2018-05-11 |
| CVE-2017-11497 json | Stack buffer overflow in hasplms in Gemalto ACC (Admin Control Center), all versions ranging from HASP SRM 2.10 to Sentinel L... | 9.8 - CRITICAL | 2017-10-03 | 2018-05-11 |
| CVE-2017-11496 json | Stack buffer overflow in hasplms in Gemalto ACC (Admin Control Center), all versions ranging from HASP SRM 2.10 to Sentinel L... | 9.8 - CRITICAL | 2017-10-03 | 2018-05-11 |
| CVE-2017-6953 json | Gemalto SmartDiag Diagnosis Tool v2.5 has a stack-based Buffer Overflow with SEH Overwrite via long "Register a new card" inp... | Not Provided | 2017-05-08 | 2025-04-20 |
| CVE-2015-7967 json | SafeNet Authentication Service for Citrix Web Interface Agent uses a weak ACL for unspecified installation directories and ex... | 7.8 - HIGH | 2018-03-02 | 2018-03-17 |
| CVE-2015-7966 json | SafeNet Authentication Service Windows Logon Agent uses a weak ACL for unspecified installation directories and executable mo... | 7.8 - HIGH | 2018-03-02 | 2018-03-17 |
| CVE-2015-7965 json | SafeNet Authentication Service Windows Logon Agent uses a weak ACL for unspecified installation directories and executable mo... | 7.8 - HIGH | 2018-03-02 | 2018-03-17 |
| CVE-2015-7964 json | SafeNet Authentication Service for NPS Agent uses a weak ACL for unspecified installation directories and executable modules,... | 7.8 - HIGH | 2018-03-02 | 2018-03-17 |
| CVE-2015-7963 json | SafeNet Authentication Service for AD FS Agent uses a weak ACL for unspecified installation directories and executable module... | 7.8 - HIGH | 2018-03-02 | 2018-03-17 |
Known software with vulnerabilities from Gemalto
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Gemalto | Ezio Ds3 Server | 2.6.1 |
| Application | Gemalto | Gemezdiag | 1.0.0 |
| Application | Gemalto | Gempc430 | 1.0.0 |
| Application | Gemalto | Integrator | 1.0.0 |
| Application | Gemalto | Pc-ccid | 2.0.0 |
| Application | Gemalto | Safenet Authentication Service Windows Logon Agent | - |
| Hardware | Gemalto | Safenet Luna G5 | - |
| Hardware | Gemalto | Safenet Luna Pcie | - |
| Hardware | Gemalto | Safenet Luna Sa | - |
| Application | Gemalto | Sentinel Ldk | 6.22 |
| Application | Gemalto | Sentinel Ldk License Manager | - |
| Application | Gemalto | Sentinel Ldk Rte | 3.0 |
| Application | Gemalto | Sentinel License Manager | - |
| Application | Gemalto | Sentinel Ultrapro Client Library | 1.3.0 |
| Application | Gemalto | Smartdiag | 2.0.67.0 |