CVE-2010-0223
Summary
| CVE | CVE-2010-0223 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2010-01-07 19:30:00 UTC |
| Updated | 2026-04-23 00:35:47 UTC |
| Description | Kingston DataTraveler BlackBox (DTBB), DataTraveler Secure Privacy Edition (DTSP), and DataTraveler Elite Privacy Edition (DTEP) USB flash drives do not prevent password replay attacks, which allows physically proximate attackers to access the cleartext drive contents by providing a key that was captured in a USB data stream at an earlier time. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
LocalAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
NoneAvailability
NoneAV:L/AC:L/Au:N/C:P/I:N/A:N
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Kingston | Datatraveler Blackbox | All | All | All | All |
| Hardware | Kingston | Datatraveler Elite | All | All | privacy | All |
| Hardware | Kingston | Datatraveler Secure | All | All | privacy | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Fehler 404 | af854a3a-2127-422b-91ae-364da2661108 | www.syss.de | |
| USB Vulnerabilities Exploited | IronKey | af854a3a-2127-422b-91ae-364da2661108 | www.ironkey.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| Fehler 404 - Seite nicht gefunden | af854a3a-2127-422b-91ae-364da2661108 | www.syss.de | |
| 404 Not Found | af854a3a-2127-422b-91ae-364da2661108 | www.kingston.com | Vendor Advisory |
| Fehler 404 | MITRE | www.syss.de | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.