MEDIUM · 4.6

CVE-2010-0225

SanDisk Cruzer Enterprise USB flash drives use a fixed 256-bit key for obtaining access to the cleartext drive contents, which makes it easier for physically proximate attackers to read or modify data...

Vulnerability Description

SanDisk Cruzer Enterprise USB flash drives use a fixed 256-bit key for obtaining access to the cleartext drive contents, which makes it easier for physically proximate attackers to read or modify data by determining and providing this key.

CVSS Score

4.6

MEDIUM

AV:L/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
SandiskCruzer Enterprise Firmware-
SandiskCruzer Enterprise-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2010-0225?

CVE-2010-0225 is a vulnerability with a CVSS score of 4.6 (MEDIUM). SanDisk Cruzer Enterprise USB flash drives use a fixed 256-bit key for obtaining access to the cleartext drive contents, which makes it easier for physically proximate attackers to read or modify data...

How severe is CVE-2010-0225?

CVE-2010-0225 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2010-0225?

Check the references section above for vendor advisories and patch information. Affected products include: Sandisk Cruzer Enterprise Firmware, Sandisk Cruzer Enterprise.