FlashAirTM SDHC Memory Card (SD-WE Series <W-03>) V3.00.02 and earlier and FlashAirTM SDHC Memory Card (SD-WD/WC Series <W-02>) V2.00.04 and earlier allows authenticated attackers to bypass access restrictions to obtain unauthorized image data via unspecified vectors.
References
Link | Resource |
---|---|
http://jvndb.jvn.jp/en/contents/2017/JVNDB-2017-000090.html | Third Party Advisory VDB Entry |
http://www.toshiba-personalstorage.net/news/20170516a.htm | Vendor Advisory |
https://jvn.jp/en/jp/JVN46372675/index.html | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2017-05-22 16:29
Updated : 2019-10-03 00:03
NVD link : CVE-2017-2161
Mitre link : CVE-2017-2161
CVE.ORG link : CVE-2017-2161
JSON object : View
Products Affected
toshiba
- flashair
CWE
CWE-425
Direct Request ('Forced Browsing')