PT-2004-1900 · Lexar · Lexar Safe Guard For Jumpdrive Secure
Published
2004-09-13
·
Updated
2017-07-11
·
CVE-2004-0838
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
Lexar Safe Guard for JumpDrive Secure version 1.0
Description:
The issue concerns the insecure storage of passwords in memory. Specifically, it uses XOR encryption, allowing local users to directly read the password from the device and access the password-protected part of the drive.
Recommendations:
For Lexar Safe Guard for JumpDrive Secure version 1.0, consider disabling the password protection feature until a secure method of password storage is implemented. Restrict access to the device to minimize the risk of exploitation. Avoid using the password protection feature in sensitive environments until the issue is resolved.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Lexar Safe Guard For Jumpdrive Secure