Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2004-0838

EPSS 0.04% · P12
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2004-0838

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Lexar Safe Guard for JumpDrive Secure 1.0 stores the password insecurely in memory using XOR encryption, which allows local users to read the password directly from the device and access the password protected part of the drive.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Lexar JumpDrive密码泄露漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Lexar Safe Guard是一款允许在Lexar Jump驱动设备上对文件进行密码保护的应用程序。 Lexar Safe Guard对加密密码处理不正确,本地攻击者可以利用这个漏洞恢复密码信息访问受保护资源。 JumpDrive设备中的密码信息,可以无需验证直接从设备中读取。其存储时加密方式为简单的XOR加密。另外存在问题可使用调试器对Safe Guard软件进行调试从内存中读取密码信息。软件在对比存储密码和提供密码时以明文方式存放在内存中。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2004-0838

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2004-0838

登录查看更多情报信息。

Same Patch Batch · n/a · 2005-02-25 · 7 CVEs total

CVE-2005-0107bsmtpd远程命令注入漏洞
CVE-2005-0256Wu-ftpd文件扩展远程拒绝服务漏洞
CVE-2005-0527Mozilla Firefox XPCOM 任意代码执行漏洞
CVE-2005-0545Microsoft Windows 2000 组策略绕过漏洞
CVE-2005-0546Cyrus IMAP Server多个缓冲区溢出漏洞
CVE-2005-0547HP-UX FTP Server未指定的限制文件访问漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2004-0838

No comments yet


Leave a comment