Known Vulnerabilities for products from Gemalto

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Gemalto".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Additional devices specifications by Gemalto can be found at device.report : Gemalto

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2019-18232 json SafeNet Sentinel LDK License Manager, all versions prior to 7.101(only Microsoft Windows versions are affected) is vulnerable... 7.8 - HIGH 2019-12-11 2019-12-19
CVE-2019-9158 json Gemalto DS3 Authentication Server 2.6.1-SP01 has Broken Access Control. 5.7 - MEDIUM 2019-06-05 2020-08-24
CVE-2019-9157 json Gemalto DS3 Authentication Server 2.6.1-SP01 allows Local File Disclosure. 5.7 - MEDIUM 2019-06-05 2021-07-21
CVE-2019-9156 json Gemalto DS3 Authentication Server 2.6.1-SP01 allows OS Command Injection. 8 - HIGH 2019-06-05 2019-06-06
CVE-2019-8283 json Hasplm cookie in Gemalto Admin Control Center, all versions prior to 7.92, does not have 'HttpOnly' flag. This allows malicio... 6.5 - MEDIUM 2019-06-07 2021-09-14
CVE-2019-8282 json Gemalto Admin Control Center, all versions prior to 7.92, uses cleartext HTTP to communicate with www3.safenet-inc.com to obt... 5.3 - MEDIUM 2019-06-07 2020-10-22
CVE-2019-6534 json The uncontrolled search path element vulnerability in Gemalto Sentinel UltraPro Client Library ux32w.dll Versions 1.3.0, 1.3.... 7.8 - HIGH 2019-04-11 2023-01-31
CVE-2018-15492 json A vulnerability in the lservnt.exe component of Sentinel License Manager version 8.5.3.35 (fixed in 8.5.3.2403) causes UDP am... 7.5 - HIGH 2018-08-18 2018-10-23
CVE-2018-8900 json The License Manager service of HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE 7.80 allows remote... 6.1 - MEDIUM 2018-05-02 2018-06-14
CVE-2018-6305 json Denial of service in Gemalto's Sentinel LDK RTE version before 7.65 7.5 - HIGH 2018-03-13 2018-06-14
CVE-2018-6304 json Stack overflow in custom XML-parser in Gemalto's Sentinel LDK RTE version before 7.65 leads to remote denial of service 7.5 - HIGH 2018-03-13 2020-08-24
CVE-2017-11498 json Buffer overflow in hasplms in Gemalto ACC (Admin Control Center), all versions ranging from HASP SRM 2.10 to Sentinel LDK 7.5... 7.5 - HIGH 2017-10-03 2018-05-11
CVE-2017-11497 json Stack buffer overflow in hasplms in Gemalto ACC (Admin Control Center), all versions ranging from HASP SRM 2.10 to Sentinel L... 9.8 - CRITICAL 2017-10-03 2018-05-11
CVE-2017-11496 json Stack buffer overflow in hasplms in Gemalto ACC (Admin Control Center), all versions ranging from HASP SRM 2.10 to Sentinel L... 9.8 - CRITICAL 2017-10-03 2018-05-11
CVE-2017-6953 json Gemalto SmartDiag Diagnosis Tool v2.5 has a stack-based Buffer Overflow with SEH Overwrite via long "Register a new card" inp... Not Provided 2017-05-08 2025-04-20
CVE-2015-7967 json SafeNet Authentication Service for Citrix Web Interface Agent uses a weak ACL for unspecified installation directories and ex... 7.8 - HIGH 2018-03-02 2018-03-17
CVE-2015-7966 json SafeNet Authentication Service Windows Logon Agent uses a weak ACL for unspecified installation directories and executable mo... 7.8 - HIGH 2018-03-02 2018-03-17
CVE-2015-7965 json SafeNet Authentication Service Windows Logon Agent uses a weak ACL for unspecified installation directories and executable mo... 7.8 - HIGH 2018-03-02 2018-03-17
CVE-2015-7964 json SafeNet Authentication Service for NPS Agent uses a weak ACL for unspecified installation directories and executable modules,... 7.8 - HIGH 2018-03-02 2018-03-17
CVE-2015-7963 json SafeNet Authentication Service for AD FS Agent uses a weak ACL for unspecified installation directories and executable module... 7.8 - HIGH 2018-03-02 2018-03-17

Known software with vulnerabilities from Gemalto

Type Vendor Product Version
ApplicationGemaltoEzio Ds3 Server2.6.1
ApplicationGemaltoGemezdiag1.0.0
ApplicationGemaltoGempc4301.0.0
ApplicationGemaltoIntegrator1.0.0
ApplicationGemaltoPc-ccid2.0.0
ApplicationGemaltoSafenet Authentication Service Windows Logon Agent-
HardwareGemaltoSafenet Luna G5-
HardwareGemaltoSafenet Luna Pcie-
HardwareGemaltoSafenet Luna Sa-
ApplicationGemaltoSentinel Ldk6.22
ApplicationGemaltoSentinel Ldk License Manager-
ApplicationGemaltoSentinel Ldk Rte3.0
ApplicationGemaltoSentinel License Manager-
ApplicationGemaltoSentinel Ultrapro Client Library1.3.0
ApplicationGemaltoSmartdiag2.0.67.0

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report