Vulnerabilities
Vulnerable Software
Western Digital SanDisk X600 devices in certain configurations, a vulnerability in the access control mechanism of the drive may allow data to be decrypted without knowledge of proper authentication credentials.
CVSS Score
7.5
EPSS Score
0.003
Published
2020-03-10
Western Digital SanDisk SanDisk X300, X300s, X400, and X600 devices: The firmware update authentication method relies on a symmetric HMAC digest. The key used to validate this digest is present in a protected area of the device, and if extracted could be used to install arbitrary firmware to other devices.
CVSS Score
6.3
EPSS Score
0.001
Published
2020-03-10
Western Digital SanDisk X300, X300s, X400, and X600 devices: A vulnerability in the wear-leveling algorithm of the drive may cause cryptographically sensitive parameters (such as data encryption keys) to remain on the drive media after their intended erasure.
CVSS Score
5.5
EPSS Score
0.001
Published
2020-03-10


Contact Us

Shodan ® - All rights reserved