LOW · 2.1

CVE-2010-0223

Kingston DataTraveler BlackBox (DTBB), DataTraveler Secure Privacy Edition (DTSP), and DataTraveler Elite Privacy Edition (DTEP) USB flash drives do not prevent password replay attacks, which allows p...

Vulnerability Description

Kingston DataTraveler BlackBox (DTBB), DataTraveler Secure Privacy Edition (DTSP), and DataTraveler Elite Privacy Edition (DTEP) USB flash drives do not prevent password replay attacks, which allows physically proximate attackers to access the cleartext drive contents by providing a key that was captured in a USB data stream at an earlier time.

CVSS Score

2.1

LOW

AV:L/AC:L/Au:N/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
KingstonDatatraveler BlackboxAll versions
KingstonDatatraveler EliteAll versions
KingstonDatatraveler SecureAll versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2010-0223?

CVE-2010-0223 is a vulnerability with a CVSS score of 2.1 (LOW). Kingston DataTraveler BlackBox (DTBB), DataTraveler Secure Privacy Edition (DTSP), and DataTraveler Elite Privacy Edition (DTEP) USB flash drives do not prevent password replay attacks, which allows p...

How severe is CVE-2010-0223?

CVE-2010-0223 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2010-0223?

Check the references section above for vendor advisories and patch information. Affected products include: Kingston Datatraveler Blackbox, Kingston Datatraveler Elite, Kingston Datatraveler Secure.