HIGH · 10.0

CVE-2001-0960

Computer Associates ARCserve for NT 6.61 SP2a and ARCserve 2000 7.0 stores the backup agent user name and password in cleartext in the aremote.dmp file in the ARCSERVE$ hidden share, which allows loca...

Vulnerability Description

Computer Associates ARCserve for NT 6.61 SP2a and ARCserve 2000 7.0 stores the backup agent user name and password in cleartext in the aremote.dmp file in the ARCSERVE$ hidden share, which allows local and remote attackers to gain privileges.

CVSS Score

10.0

HIGH

AV:N/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
BroadcomArcserve Backup6.61
BroadcomArcserve Backup 2000All versions
CaArcserve Backup 2000All versions

References

FAQ

What is CVE-2001-0960?

CVE-2001-0960 is a vulnerability with a CVSS score of 10.0 (HIGH). Computer Associates ARCserve for NT 6.61 SP2a and ARCserve 2000 7.0 stores the backup agent user name and password in cleartext in the aremote.dmp file in the ARCSERVE$ hidden share, which allows loca...

How severe is CVE-2001-0960?

CVE-2001-0960 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2001-0960?

Check the references section above for vendor advisories and patch information. Affected products include: Broadcom Arcserve Backup, Broadcom Arcserve Backup 2000, Ca Arcserve Backup 2000.