High severity8.1NVD Advisory· Published Dec 22, 2021· Updated Jun 17, 2026
CVE-2021-36750
CVE-2021-36750
Description
ENC DataVault before 7.2 and VaultAPI v67 mishandle key derivation, making it easier for attackers to determine the passwords of all DataVault users (across USB drives sold under multiple brand names).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- ENC/DataVaultdescription
Patches
Vulnerability mechanics
References
4- encsecurity.zendesk.com/hc/en-us/articles/4413283717265-Update-for-ENC-SoftwarenvdVendor Advisory
- pretalx.c3voc.de/rc3-2021-r3s/talk/QMYGR3/nvdThird Party Advisory
- www.westerndigital.com/en-ap/support/product-security/wdc-21014-sandisk-secureaccess-software-updatenvdThird Party Advisory
- www.encsecurity.com/solutions.phpnvdProduct
News mentions
0No linked articles in our index yet.