We found vulnerabilities on Riverbed appliance, and specifically in the way the secure vault is protecting TLS private keys.
Such appliances are often found in sensitive environments, where they compress network traffic between end-points. When communications are protected with TLS, such appliance need to decrypt the traffic with the server's private key. Basically, they intercept the traffic in a Man-in-The-Middle position.
Thus, private key storage confidentiality and integrity is critical.