Lucene search

K
cveMitreCVE-2010-0225
HistoryJan 07, 2010 - 7:30 p.m.

CVE-2010-0225

2010-01-0719:30:00
CWE-312
mitre
web.nvd.nist.gov
28
sandisk
cruzer
enterprise
usb
flash drives
security
vulnerability
cve-2010-0225

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.6

Confidence

Low

EPSS

0.001

Percentile

26.7%

SanDisk Cruzer Enterprise USB flash drives use a fixed 256-bit key for obtaining access to the cleartext drive contents, which makes it easier for physically proximate attackers to read or modify data by determining and providing this key.

Affected configurations

Nvd
Node
sandiskcruzer_enterprise_firmwareMatch-
AND
sandiskcruzer_enterpriseMatch-
VendorProductVersionCPE
sandiskcruzer_enterprise_firmware-cpe:2.3:o:sandisk:cruzer_enterprise_firmware:-:*:*:*:*:*:*:*
sandiskcruzer_enterprise-cpe:2.3:h:sandisk:cruzer_enterprise:-:*:*:*:*:*:*:*

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.6

Confidence

Low

EPSS

0.001

Percentile

26.7%

Related for CVE-2010-0225