CVE-1999-1049

ARCserve Backup < 6.5 - Weak Password Encryption via XOR

Title source: llm
STIX 2.1

Description

ARCserve NT agents use weak encryption (XOR) for passwords, which allows remote attackers to sniff the authentication request to port 6050 and decrypt the password.

References (1)

Core 1
Core References
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=91972006211238&w=2

Scores

EPSS 0.0046
EPSS Percentile 64.1%

Details

Status published
Products (1)
broadcom/arcserve_backup < 6.5
Published Feb 21, 1999
Tracked Since Feb 18, 2026