Description
ENC DataVault before 7.2 and VaultAPI v67 mishandle key derivation, making it easier for attackers to determine the passwords of all DataVault users (across USB drives sold under multiple brand names).
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T01:01:59.308Z
Reserved: 2021-07-15T00:00:00.000Z
Link: CVE-2021-36750
No data.
Status : Modified
Published: 2021-12-22T14:15:07.573
Modified: 2024-11-21T06:14:01.040
Link: CVE-2021-36750
No data.
OpenCVE Enrichment
No data.
Weaknesses