PT-2004-1900 · Lexar · Lexar Safe Guard For Jumpdrive Secure

Published

2004-09-13

·

Updated

2017-07-11

·

CVE-2004-0838

CVSS v2.0

2.1

Low

VectorAV:L/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Lexar Safe Guard for JumpDrive Secure version 1.0
Description: The issue concerns the insecure storage of passwords in memory. Specifically, it uses XOR encryption, allowing local users to directly read the password from the device and access the password-protected part of the drive.
Recommendations: For Lexar Safe Guard for JumpDrive Secure version 1.0, consider disabling the password protection feature until a secure method of password storage is implemented. Restrict access to the device to minimize the risk of exploitation. Avoid using the password protection feature in sensitive environments until the issue is resolved.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-0838

Affected Products

Lexar Safe Guard For Jumpdrive Secure