← Back

Sandisk

sandisk

7 CVEs • 5 products

Products (5)

Click to collapse
Toggle

CVEs (7)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Sandisk
Zendesk
3Enc Datavault
Enc VaultapiSecureaccess
Jun 17, 2026
Dec 22, 2021
N/A· v4
8.1 HIGH· v3
5.5 MEDIUM· v2
ENC DataVault before 7.2 and VaultAPI v67 mishandle key derivation, making it easier for attackers to determine the passwords of all DataVault users (across USB drives sold under multiple brand names).
2Sandisk
Westerndigital
2Ssd Dashboard
Ssd Dashboard
Jun 17, 2026
Sep 30, 2019
N/A· v4
5.9 MEDIUM· v3
4.3 MEDIUM· v2
Description: Western Digital SSD Dashboard before 2.5.1.0 and SanDisk SSD Dashboard before 2.5.1.0 applications are potentially vulnerable to man-in-the-middle attacks when the applications download resources from the Da...Show more
Description: Western Digital SSD Dashboard before 2.5.1.0 and SanDisk SSD Dashboard before 2.5.1.0 applications are potentially vulnerable to man-in-the-middle attacks when the applications download resources from the Dashboard web service. This vulnerability may allow an attacker to substitute downloaded resources with arbitrary files.Show less
2Sandisk
Westerndigital
2Ssd Dashboard
Ssd Dashboard
Jun 17, 2026
Sep 30, 2019
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Western Digital SSD Dashboard before 2.5.1.0 and SanDisk SSD Dashboard before 2.5.1.0 have Incorrect Access Control. The “generate reports” archive is protected with a hard-coded password. An application update that addr...Show more
Western Digital SSD Dashboard before 2.5.1.0 and SanDisk SSD Dashboard before 2.5.1.0 have Incorrect Access Control. The “generate reports” archive is protected with a hard-coded password. An application update that addresses the protection of archive encryption is available.Show less
1Sandisk
1Secureaccess
May 13, 2026
Nov 16, 2017
N/A· v4
4.3 MEDIUM· v3
2.1 LOW· v2
SanDisk Secure Access 3.01 vault decrypts and copies encrypted files to a temporary folder, where they can remain indefinitely in certain situations, such as if the file is being edited when the user exits the applicatio...Show more
SanDisk Secure Access 3.01 vault decrypts and copies encrypted files to a temporary folder, where they can remain indefinitely in certain situations, such as if the file is being edited when the user exits the application or if the application crashes.Show less
1Sandisk
1Cruzer Enterprise Usb
Apr 23, 2026
Jan 7, 2010
N/A· v4
N/A· v3
4.6 MEDIUM· v2
SanDisk Cruzer Enterprise USB flash drives do not prevent password replay attacks, which allows physically proximate attackers to access the cleartext drive contents by providing a key that was captured in a USB data str...Show more
SanDisk Cruzer Enterprise USB flash drives do not prevent password replay attacks, which allows physically proximate attackers to access the cleartext drive contents by providing a key that was captured in a USB data stream at an earlier time.Show less
1Sandisk
1Cruzer Enterprise Firmware
Apr 23, 2026
Jan 7, 2010
N/A· v4
N/A· v3
4.6 MEDIUM· v2
SanDisk Cruzer Enterprise USB flash drives use a fixed 256-bit key for obtaining access to the cleartext drive contents, which makes it easier for physically proximate attackers to read or modify data by determining and...Show more
SanDisk Cruzer Enterprise USB flash drives use a fixed 256-bit key for obtaining access to the cleartext drive contents, which makes it easier for physically proximate attackers to read or modify data by determining and providing this key.Show less
1Sandisk
1Cruzer Enterprise Usb
Apr 23, 2026
Jan 7, 2010
N/A· v4
N/A· v3
4.6 MEDIUM· v2
SanDisk Cruzer Enterprise USB flash drives validate passwords with a program running on the host computer rather than the device hardware, which allows physically proximate attackers to access the cleartext drive content...Show more
SanDisk Cruzer Enterprise USB flash drives validate passwords with a program running on the host computer rather than the device hardware, which allows physically proximate attackers to access the cleartext drive contents via a modified program.Show less