QID 376264

Date Published: 2022-01-24

QID 376264: ENC DataVault Mishandle Key Derivation Vulnerability

The ENC software is designed to encrypt, secure and protect data, including any confidential files, passwords, personal information and on any data device, so you can keep your data secure at all times.

Affected Version:
EncDataVault prior to 7.2.1

This vulnerability causes attackers to determine the passwords of all DataVault users .

  • CVSS V3 rated as Critical - 8.1 severity.
  • CVSS V2 rated as Medium - 5.5 severity.
  • Solution
    Vendor has released a fix for this. For more information refer ENCDataVault.

    CVEs related to QID 376264

    Software Advisories
    Advisory ID Software Component Link
    EncDataVault URL Logo encsecurity.zendesk.com/hc/en-us/articles/4413283717265-Update-for-ENC-Software