CVE-2004-1852

DameWare Mini Remote Control 3.0-3.73 and 4.0-4.1 - Cleartext Transmission of Blowfish Encryption Key

Title source: llm
STIX 2.1

Description

DameWare Mini Remote Control 3.x before 3.74 and 4.x before 4.2 transmits the Blowfish encryption key in plaintext, which allows remote attackers to gain sensitive information.

References (7)

Core 7
Core References
Product, Vendor Advisory x_refsource_confirm
http://www.dameware.com/support/security/bulletin.asp?ID=SB3
Mailing List, Third Party Advisory mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=108016344224973&w=2
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/15586
Broken Link, Third Party Advisory, VDB Entry, Vendor Advisory vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1009557
Broken Link, Vendor Advisory vdb-entry x_refsource_osvdb
http://www.osvdb.org/4547
Broken Link, Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/11205
Broken Link, Patch, Third Party Advisory, VDB Entry, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/9959

Scores

EPSS 0.0026
EPSS Percentile 49.3%

Details

CWE
CWE-319
Status published
Products (1)
solarwinds/dameware_mini_remote_control 3.0 - 3.74
Published Mar 23, 2004
Tracked Since Feb 18, 2026