HIGH · 10.0

CVE-1999-1049

ARCserve NT agents use weak encryption (XOR) for passwords, which allows remote attackers to sniff the authentication request to port 6050 and decrypt the password.

Vulnerability Description

ARCserve NT agents use weak encryption (XOR) for passwords, which allows remote attackers to sniff the authentication request to port 6050 and decrypt the password.

CVSS Score

10.0

HIGH

AV:N/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
BroadcomArcserve Backup<= 6.5

References

FAQ

What is CVE-1999-1049?

CVE-1999-1049 is a vulnerability with a CVSS score of 10.0 (HIGH). ARCserve NT agents use weak encryption (XOR) for passwords, which allows remote attackers to sniff the authentication request to port 6050 and decrypt the password.

How severe is CVE-1999-1049?

CVE-1999-1049 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-1999-1049?

Check the references section above for vendor advisories and patch information. Affected products include: Broadcom Arcserve Backup.