CVE Feed

    Dashboard / CVE / CVE-2022-28384

    CVE-2022-28384

    An issue was discovered in certain Verbatim drives through 2022-03-31. Due to an insecure design, they allow an offline brute-force attack for determining the correct passcode, and thus gaining unauthorized access to the stored encrypted data. This affects Keypad Secure USB 3.2 Gen 1 Drive Part Number #49428 and Store 'n' Go Secure Portable HDD GD25LK01-3637-C VER4.0.

    Published:Jun 8, 2022
    Last Modified:Nov 21, 2024
    EPS:Jun 8, 2022
    EPSS Score:0.00045
    CVSS Score:5.5

    Affected Products

    Vendor
    Verbatim
    Product
    Keypad Secure Usb 3.2 Gen 1
    Vendor
    Verbatim
    Product
    Keypad Secure Usb 3.2 Gen 1 Firmware
    Vendor
    Verbatim
    Product
    Store \'n\' Go Secure Portable Hdd
    Vendor
    Verbatim
    Product
    Store \'n\' Go Secure Portable Hdd Firmware

    References

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High