Vulnerability Details CVE-2015-7267
Samsung 850 Pro and PM851 solid-state drives and Seagate ST500LT015 and ST500LT025 hard disk drives, when in sleep mode and operating in Opal or eDrive mode on Lenovo ThinkPad T440s laptops with BIOS 2.32; ThinkPad W541 laptops with BIOS 2.21; Dell Latitude E6410 laptops with BIOS A16; or Latitude E6430 laptops with BIOS A16, allow physically proximate attackers to bypass self-encrypting drive (SED) protection by leveraging failure to detect when SATA drives are unplugged in Sleep Mode, aka a "Hot Plug attack."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 18.5%
CVSS Severity
CVSS v3 Score 4.2
CVSS v2 Score 1.9
Products affected by CVE-2015-7267
-
cpe:2.3:h:samsung:850_pro:-
-
cpe:2.3:h:samsung:pm851:-
-
cpe:2.3:h:seagate:st500lt015:-
-
cpe:2.3:h:seagate:st500lt025:-
-
cpe:2.3:o:samsung:850_pro_firmware:-
-
cpe:2.3:o:samsung:pm851_firmware:-
-
cpe:2.3:o:seagate:st500lt015_firmware:-
-
cpe:2.3:o:seagate:st500lt025_firmware:-