CVE-2008-3289

EMC Dantz Retrospect Backup Client 7.5.116 sends the password hash in cleartext at an unspecified point, which allows remote attackers to obtain sensitive information via a crafted packet.
Configurations

Configuration 1 (hide)

cpe:2.3:a:storcentric:retrospect_backup_client:7.5.116:*:*:*:*:-:*:*

History

25 Jan 2024, 20:43

Type Values Removed Values Added
First Time Storcentric
Storcentric retrospect Backup Client
CWE CWE-200 CWE-319
References (BUGTRAQ) http://www.securityfocus.com/archive/1/494560/100/0/threaded - (BUGTRAQ) http://www.securityfocus.com/archive/1/494560/100/0/threaded - Broken Link, Third Party Advisory, VDB Entry
References (BID) http://www.securityfocus.com/bid/30308 - Patch (BID) http://www.securityfocus.com/bid/30308 - Broken Link, Patch, Third Party Advisory, VDB Entry
References (SREASON) http://securityreason.com/securityalert/4025 - (SREASON) http://securityreason.com/securityalert/4025 - Third Party Advisory
References (CONFIRM) http://kb.dantz.com/display/2/articleDirect/index.asp?aid=9692&r=0.5160639 - (CONFIRM) http://kb.dantz.com/display/2/articleDirect/index.asp?aid=9692&r=0.5160639 - Broken Link
References (SECUNIA) http://secunia.com/advisories/31186 - Patch, Vendor Advisory (SECUNIA) http://secunia.com/advisories/31186 - Broken Link, Patch, Vendor Advisory
References (MISC) http://www.fortiguardcenter.com/advisory/FGA-2008-16.html - Patch (MISC) http://www.fortiguardcenter.com/advisory/FGA-2008-16.html - Broken Link, Patch
References (VUPEN) http://www.vupen.com/english/advisories/2008/2150/references - (VUPEN) http://www.vupen.com/english/advisories/2008/2150/references - Broken Link
References (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/43930 - (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/43930 - Third Party Advisory, VDB Entry
CPE cpe:2.3:a:emc_dantz:retrospect_backup_client:7.5.116:*:*:*:*:*:*:* cpe:2.3:a:storcentric:retrospect_backup_client:7.5.116:*:*:*:*:-:*:*
CVSS v2 : 4.3
v3 : unknown
v2 : 4.3
v3 : 7.5

Information

Published : 2008-07-24 17:41

Updated : 2024-02-28 11:21


NVD link : CVE-2008-3289

Mitre link : CVE-2008-3289

CVE.ORG link : CVE-2008-3289


JSON object : View

Products Affected

storcentric

  • retrospect_backup_client
CWE
CWE-319

Cleartext Transmission of Sensitive Information