CVE-2024-37386: Stormshield Network Security

Medium severity, CVSS 4.2. EPSS: 0.2% chance of exploitation in the next 30 days.

An issue was discovered in Stormshield Network Security (SNS) 4.0.0 through 4.3.25, 4.4.0 through 4.7.5, and 4.8.0. Certain manipulations allow restarting in single-user mode despite the activation of secure boot. The following versions fix this: 4.3.27, 4.7.6, and 4.8.2.

Affected products

  • Stormshield Stormshield Network Security: from 4.0.0, up to and including 4.3.25; from 4.4.0, up to and including 4.7.5; version 4.8.0 only

Published 2024-07-15. Last modified 2026-06-17.