Unencrypted Communication Vulnerability in Datakey Rainbow iKey2032 USB Token

Unencrypted Communication Vulnerability in Datakey Rainbow iKey2032 USB Token

CVE-2004-1709 · LOW Severity

AV:L/AC:L/AU:N/C:P/I:N/A:N

Datakey Rainbow iKey2032 USB token, when using the CIP client package, does not encrypt communications between the token and the driver, which could allow local users to obtain the PINs of other users.

Learn more about our User Device Pen Test.