Vulnerability Description
ARCserve NT agents use weak encryption (XOR) for passwords, which allows remote attackers to sniff the authentication request to port 6050 and decrypt the password.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Broadcom | Arcserve Backup | <= 6.5 |
References
FAQ
What is CVE-1999-1049?
CVE-1999-1049 is a vulnerability with a CVSS score of 10.0 (HIGH). ARCserve NT agents use weak encryption (XOR) for passwords, which allows remote attackers to sniff the authentication request to port 6050 and decrypt the password.
How severe is CVE-1999-1049?
CVE-1999-1049 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-1049?
Check the references section above for vendor advisories and patch information. Affected products include: Broadcom Arcserve Backup.