Computer Associates ARCserve for NT 6.61 SP2a and ARCserve 2000 7.0 stores the backup agent user name and password in cleartext in the aremote.dmp file in the ARCSERVE$ hidden share, which allows local and remote attackers to gain privileges.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2001-09/0137.html | Vendor Advisory |
http://support.ca.com/Download/patches/asitnt/QO00945.html | Patch |
http://www.securityfocus.com/bid/3343 | Patch Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/7122 | |
http://archives.neohapsis.com/archives/bugtraq/2001-09/0137.html | Vendor Advisory |
http://support.ca.com/Download/patches/asitnt/QO00945.html | Patch |
http://www.securityfocus.com/bid/3343 | Patch Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/7122 |
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:36
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/bugtraq/2001-09/0137.html - Vendor Advisory | |
References | () http://support.ca.com/Download/patches/asitnt/QO00945.html - Patch | |
References | () http://www.securityfocus.com/bid/3343 - Patch, Vendor Advisory | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/7122 - |
Information
Published : 2001-09-15 04:00
Updated : 2024-11-20 23:36
NVD link : CVE-2001-0960
Mitre link : CVE-2001-0960
CVE.ORG link : CVE-2001-0960
JSON object : View
Products Affected
broadcom
- arcserve_backup_2000
- arcserve_backup
ca
- arcserve_backup_2000
CWE