MEDIUM · 4.6

CVE-2010-0226

SanDisk Cruzer Enterprise USB flash drives do not prevent password replay attacks, which allows physically proximate attackers to access the cleartext drive contents by providing a key that was captur...

Vulnerability Description

SanDisk Cruzer Enterprise USB flash drives do not prevent password replay attacks, which allows physically proximate attackers to access the cleartext drive contents by providing a key that was captured in a USB data stream at an earlier time.

CVSS Score

4.6

MEDIUM

AV:L/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
SandiskCruzer Enterprise UsbAll versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2010-0226?

CVE-2010-0226 is a vulnerability with a CVSS score of 4.6 (MEDIUM). SanDisk Cruzer Enterprise USB flash drives do not prevent password replay attacks, which allows physically proximate attackers to access the cleartext drive contents by providing a key that was captur...

How severe is CVE-2010-0226?

CVE-2010-0226 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2010-0226?

Check the references section above for vendor advisories and patch information. Affected products include: Sandisk Cruzer Enterprise Usb.