5.5
CVE-2019-11686
- EPSS 0.07%
- Veröffentlicht 10.03.2020 13:15:12
- Zuletzt bearbeitet 21.11.2024 04:21:35
- Quelle cve@mitre.org
- Teams Watchlist Login
- Unerledigt Login
Western Digital SanDisk X300, X300s, X400, and X600 devices: A vulnerability in the wear-leveling algorithm of the drive may cause cryptographically sensitive parameters (such as data encryption keys) to remain on the drive media after their intended erasure.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Westerndigital ≫ Sandisk X600 Sd9tb8w-128g Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9tb8w-256g Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9tb8w-512g Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9tb8w-1t00 Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9tb8w-2t00 Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9tn8w-128g Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9tn8w-256g Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9tn8w-512g Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9tn8w-1t00 Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9tn8w-2t00 Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9sb8w-128g Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9sb8w-256g Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9sb8w-512g Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9sb8w-1t00 Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9sb8w-2t00 Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9sn8w-128g Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9sn8w-256g Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9sn8w-512g Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9sn8w-1t00 Firmware Version < x6112100
Westerndigital ≫ Sandisk X600 Sd9sn8w-2t00 Firmware Version < x6112100
Westerndigital ≫ Sandisk X400 Sd8sb8u-128g Firmware Version-
Westerndigital ≫ Sandisk X400 Sd8sb8u-1t00 Firmware Version-
Westerndigital ≫ Sandisk X400 Sd8sb8u-256g Firmware Version-
Westerndigital ≫ Sandisk X400 Sd8sb8u-512g Firmware Version-
Westerndigital ≫ Sandisk X400 Sd8sn8u-128g Firmware Version-
Westerndigital ≫ Sandisk X400 Sd8sn8u-1t00 Firmware Version-
Westerndigital ≫ Sandisk X400 Sd8sn8u-256g Firmware Version-
Westerndigital ≫ Sandisk X400 Sd8sn8u-512g Firmware Version-
Westerndigital ≫ Sandisk X300 Sd7sb6s-128g Firmware Version-
Westerndigital ≫ Sandisk X300 Sd7sb6s-256g Firmware Version-
Westerndigital ≫ Sandisk X300 Sd7sb7s-010t Firmware Version-
Westerndigital ≫ Sandisk X300 Sd7sb7s-512g Firmware Version-
Westerndigital ≫ Sandisk X300 Sd7sf6s-128g Firmware Version-
Westerndigital ≫ Sandisk X300 Sd7sf6s-256g Firmware Version-
Westerndigital ≫ Sandisk X300 Sd7sf6s-512g Firmware Version-
Westerndigital ≫ Sandisk X300 Sd7sn6s-128g Firmware Version-
Westerndigital ≫ Sandisk X300 Sd7sn6s-256g Firmware Version-
Westerndigital ≫ Sandisk X300 Sd7sn6s-512g Firmware Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.07% | 0.225 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
|
nvd@nist.gov | 2.1 | 3.9 | 2.9 |
AV:L/AC:L/Au:N/C:P/I:N/A:N
|
CWE-522 Insufficiently Protected Credentials
The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.