CVE-2019-11686

Western Digital SanDisk X300, X300s, X400, and X600 devices: A vulnerability in the wear-leveling algorithm of the drive may cause cryptographically sensitive parameters (such as data encryption keys) to remain on the drive media after their intended erasure.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 22%
VendorProductVersion
westerndigitalsandisk_x300s_sd7sb3q-064g_firmware
-
westerndigitalsandisk_x300s_sd7sn3q-064g_firmware
-
westerndigitalsandisk_x300s_sd7ub2q-010t_firmware
-
westerndigitalsandisk_x300s_sd7ub2q-512g_firmware
-
westerndigitalsandisk_x300s_sd7ub3q-128g_firmware
-
westerndigitalsandisk_x300s_sd7ub3q-256g_firmware
-
westerndigitalsandisk_x300s_sd7un3q-128g_firmware
-
westerndigitalsandisk_x300s_sd7un3q-256g_firmware
-
westerndigitalsandisk_x300s_sd7un3q-512g_firmware
-
westerndigitalsandisk_x400_sd8sb8u-128g_firmware
-
westerndigitalsandisk_x400_sd8sb8u-128g-1122_firmware
-
westerndigitalsandisk_x400_sd8sb8u-1t00_firmware
-
westerndigitalsandisk_x400_sd8sb8u-1t00-1122_firmware
-
westerndigitalsandisk_x400_sd8sb8u-256g_firmware
-
westerndigitalsandisk_x400_sd8sb8u-256g-1122_firmware
-
westerndigitalsandisk_x400_sd8sb8u-512g_firmware
-
westerndigitalsandisk_x400_sd8sb8u-512g-1122_firmware
-
westerndigitalsandisk_x400_sd8sn8u-128g_firmware
-
westerndigitalsandisk_x400_sd8sn8u-128g-1122_firmware
-
westerndigitalsandisk_x400_sd8sn8u-1t00_firmware
-
westerndigitalsandisk_x400_sd8sn8u-1t00-1122_firmware
-
westerndigitalsandisk_x400_sd8sn8u-256g_firmware
-
westerndigitalsandisk_x400_sd8sn8u-256g-1122_firmware
-
westerndigitalsandisk_x400_sd8sn8u-512g_firmware
-
westerndigitalsandisk_x400_sd8sn8u-512g-1122_firmware
-
westerndigitalsandisk_x400_sd8tb8u-128g-1122_firmware
-
westerndigitalsandisk_x400_sd8tb8u-1t00-1122_firmware
-
westerndigitalsandisk_x400_sd8tb8u-256g-1122_firmware
-
westerndigitalsandisk_x400_sd8tb8u-512g-1122_firmware
-
westerndigitalsandisk_x300_sd7sb6s-128g_firmware
-
westerndigitalsandisk_x300_sd7sb6s-256g_firmware
-
westerndigitalsandisk_x300_sd7sb7s-010t_firmware
-
westerndigitalsandisk_x300_sd7sb7s-512g_firmware
-
westerndigitalsandisk_x300_sd7sf6s-128g_firmware
-
westerndigitalsandisk_x300_sd7sf6s-256g_firmware
-
westerndigitalsandisk_x300_sd7sf6s-512g_firmware
-
westerndigitalsandisk_x300_sd7sn6s-128g_firmware
-
westerndigitalsandisk_x300_sd7sn6s-256g_firmware
-
westerndigitalsandisk_x300_sd7sn6s-512g_firmware
-
𝑥
= Vulnerable software versions