CVE-2010-0227

Verbatim Corporate Secure and Corporate Secure FIPS Edition USB flash drives validate passwords with a program running on the host computer rather than the device hardware, which allows physically proximate attackers to access the cleartext drive contents via a modified program.
Configurations

Configuration 1 (hide)

OR cpe:2.3:h:verbatim:corporate_secure:*:*:*:*:*:*:*:*
cpe:2.3:h:verbatim:corporate_secure:*:*:*:*:fips:*:*:*

History

21 Nov 2024, 01:11

Type Values Removed Values Added
References () http://blogs.zdnet.com/hardware/?p=6655 - Not Applicable () http://blogs.zdnet.com/hardware/?p=6655 - Not Applicable
References () http://it.slashdot.org/story/10/01/05/1734242/ - Third Party Advisory () http://it.slashdot.org/story/10/01/05/1734242/ - Third Party Advisory
References () http://securitytracker.com/id?1023409 - Third Party Advisory, VDB Entry () http://securitytracker.com/id?1023409 - Third Party Advisory, VDB Entry
References () http://www.h-online.com/security/news/item/NIST-certified-USB-Flash-drives-with-hardware-encryption-cracked-895308.html - Third Party Advisory () http://www.h-online.com/security/news/item/NIST-certified-USB-Flash-drives-with-hardware-encryption-cracked-895308.html - Third Party Advisory
References () http://www.verbatim.com/security/security-update.cfm - Vendor Advisory () http://www.verbatim.com/security/security-update.cfm - Vendor Advisory
References () https://www.ironkey.com/usb-flash-drive-flaw-exposed - Broken Link () https://www.ironkey.com/usb-flash-drive-flaw-exposed - Broken Link

Information

Published : 2010-01-07 19:30

Updated : 2024-11-21 01:11


NVD link : CVE-2010-0227

Mitre link : CVE-2010-0227

CVE.ORG link : CVE-2010-0227


JSON object : View

Products Affected

verbatim

  • corporate_secure
CWE
CWE-255

Credentials Management Errors