CVE-2004-1852
DameWare Mini Remote Control 3.0-3.73 and 4.0-4.1 - Cleartext Transmission of Blowfish Encryption Key
Title source: llmDescription
DameWare Mini Remote Control 3.x before 3.74 and 4.x before 4.2 transmits the Blowfish encryption key in plaintext, which allows remote attackers to gain sensitive information.
References (7)
Core 7
Core References
Product, Vendor Advisory x_refsource_confirm
http://www.dameware.com/support/security/bulletin.asp?ID=SB3
Mailing List, Third Party Advisory mailing-list
x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=108016344224973&w=2
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/15586
Broken Link, Third Party Advisory, VDB Entry, Vendor Advisory vdb-entry
x_refsource_sectrack
http://securitytracker.com/id?1009557
Broken Link, Vendor Advisory vdb-entry
x_refsource_osvdb
http://www.osvdb.org/4547
Broken Link, Patch, Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/11205
Broken Link, Patch, Third Party Advisory, VDB Entry, Vendor Advisory vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/9959
Scores
EPSS
0.0026
EPSS Percentile
49.3%
Details
CWE
CWE-319
Status
published
Products (1)
solarwinds/dameware_mini_remote_control
3.0 - 3.74
Published
Mar 23, 2004
Tracked Since
Feb 18, 2026