|
Datakey's Rainbow iKey USB Token and Smart Card contain a flaw that may lead to an unauthorized password exposure. The issue is due to the communication channel between the token and the driver being plaintext. By sniffing communication channel between smartcard/token and smartcard driver, a remote attacker can retrive the user password, resulting in a loss of confidentiality.
|