SanDisk kayıtları
sandisk üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-255 Credentials Management Errors2
- CWE-307 Improper Restriction of Excessive Authentication Attempts1
- CWE-312 Cleartext Storage of Sensitive Information1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-798 Use of Hard-coded Credentials1
- CWE-922 Insecure Storage of Sensitive Information1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
36İzleyin | CVE-2021-36750Kavram kanıtı | ENC DataVault before 7.2 and VaultAPI v67 mishandle key derivation, making it easier for attackers to determine the passwords of all DataVauzendesk · enc datavault · CWE-307 | Yüksek8,1 | — | %13,5 | 22 Ara 2021 |
30İzleyin | CVE-2019-13466İstismar yok | Western Digital SSD Dashboard before 2.5.1.0 and SanDisk SSD Dashboard before 2.5.1.0 have Incorrect Access Control.sandisk · ssd dashboard · CWE-798 | Yüksek7,5 | — | %0,7 | 30 Eyl 2019 |
23İzleyin | CVE-2019-13467İstismar yok | Description: Western Digital SSD Dashboard before 2.5.1.0 and SanDisk SSD Dashboard before 2.5.1.0 applications are potentially vulnerable tsandisk · ssd dashboard | Orta5,9 | — | %1,5 | 30 Eyl 2019 |
23İzleyin | CVE-2024-22168İstismar yok | Cross-Site Scripting (XSS) vulnerability on Western Digital My Cloud and SanDisk ibi Web Appswestern digital · my cloud home web app · CWE-79 | Orta5,9 | — | %0,3 | 24 Haz 2024 |
18İzleyin | CVE-2010-0224İstismar yok | SanDisk Cruzer Enterprise USB flash drives validate passwords with a program running on the host computer rather than the device hardware, wsandisk · cruzer enterprise usb · CWE-255 | Orta4,6 | — | %0,4 | 7 Oca 2010 |
18İzleyin | CVE-2010-0226İstismar yok | SanDisk Cruzer Enterprise USB flash drives do not prevent password replay attacks, which allows physically proximate attackers to access thesandisk · cruzer enterprise usb · CWE-255 | Orta4,6 | — | %0,3 | 7 Oca 2010 |
18İzleyin | CVE-2010-0225İstismar yok | SanDisk Cruzer Enterprise USB flash drives use a fixed 256-bit key for obtaining access to the cleartext drive contents, which makes it easisandisk · cruzer enterprise firmware · CWE-312 | Orta4,6 | — | %0,3 | 7 Oca 2010 |
17İzleyin | CVE-2017-16560İstismar yok | SanDisk Secure Access 3.01 vault decrypts and copies encrypted files to a temporary folder, where they can remain indefinitely in certain sisandisk · secureaccess · CWE-922 | Orta4,3 | — | %0,4 | 16 Kas 2017 |
- CVE-2021-3675036İzleyin
ENC DataVault before 7.2 and VaultAPI v67 mishandle key derivation, making it easier for attackers to determine the passwords of all DataVau
YüksekCVSS 8,1Kavram kanıtıEPSS %14zendesk · enc datavault22 Ara 2021
- CVE-2019-1346630İzleyin
Western Digital SSD Dashboard before 2.5.1.0 and SanDisk SSD Dashboard before 2.5.1.0 have Incorrect Access Control.
YüksekCVSS 7,5İstismar yokEPSS %1sandisk · ssd dashboard30 Eyl 2019
- CVE-2019-1346723İzleyin
Description: Western Digital SSD Dashboard before 2.5.1.0 and SanDisk SSD Dashboard before 2.5.1.0 applications are potentially vulnerable t
OrtaCVSS 5,9İstismar yokEPSS %2sandisk · ssd dashboard30 Eyl 2019
- CVE-2024-2216823İzleyin
Cross-Site Scripting (XSS) vulnerability on Western Digital My Cloud and SanDisk ibi Web Apps
OrtaCVSS 5,9İstismar yokEPSS %0western digital · my cloud home web app24 Haz 2024
- CVE-2010-022418İzleyin
SanDisk Cruzer Enterprise USB flash drives validate passwords with a program running on the host computer rather than the device hardware, w
OrtaCVSS 4,6İstismar yokEPSS %0sandisk · cruzer enterprise usb7 Oca 2010
- CVE-2010-022618İzleyin
SanDisk Cruzer Enterprise USB flash drives do not prevent password replay attacks, which allows physically proximate attackers to access the
OrtaCVSS 4,6İstismar yokEPSS %0sandisk · cruzer enterprise usb7 Oca 2010
- CVE-2010-022518İzleyin
SanDisk Cruzer Enterprise USB flash drives use a fixed 256-bit key for obtaining access to the cleartext drive contents, which makes it easi
OrtaCVSS 4,6İstismar yokEPSS %0sandisk · cruzer enterprise firmware7 Oca 2010
- CVE-2017-1656017İzleyin
SanDisk Secure Access 3.01 vault decrypts and copies encrypted files to a temporary folder, where they can remain indefinitely in certain si
OrtaCVSS 4,3İstismar yokEPSS %0sandisk · secureaccess16 Kas 2017