CVE-2008-3289

EMC Dantz Retrospect Backup Client 7.5.116 sends the password hash in cleartext at an unspecified point, which allows remote attackers to obtain sensitive information via a crafted packet.
Configurations

Configuration 1 (hide)

cpe:2.3:a:storcentric:retrospect_backup_client:7.5.116:*:*:*:*:-:*:*

History

25 Jan 2024, 20:43

Type Values Removed Values Added
First Time Storcentric retrospect Backup Client
Storcentric
CPE cpe:2.3:a:emc_dantz:retrospect_backup_client:7.5.116:*:*:*:*:*:*:* cpe:2.3:a:storcentric:retrospect_backup_client:7.5.116:*:*:*:*:-:*:*
References () http://kb.dantz.com/display/2/articleDirect/index.asp?aid=9692&r=0.5160639 - () http://kb.dantz.com/display/2/articleDirect/index.asp?aid=9692&r=0.5160639 - Broken Link
References () http://secunia.com/advisories/31186 - Patch, Vendor Advisory () http://secunia.com/advisories/31186 - Broken Link, Patch, Vendor Advisory
References () http://securityreason.com/securityalert/4025 - () http://securityreason.com/securityalert/4025 - Third Party Advisory
References () http://www.fortiguardcenter.com/advisory/FGA-2008-16.html - Patch () http://www.fortiguardcenter.com/advisory/FGA-2008-16.html - Broken Link, Patch
References () http://www.securityfocus.com/archive/1/494560/100/0/threaded - () http://www.securityfocus.com/archive/1/494560/100/0/threaded - Broken Link, Third Party Advisory, VDB Entry
References () http://www.securityfocus.com/bid/30308 - Patch () http://www.securityfocus.com/bid/30308 - Broken Link, Patch, Third Party Advisory, VDB Entry
References () http://www.vupen.com/english/advisories/2008/2150/references - () http://www.vupen.com/english/advisories/2008/2150/references - Broken Link
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/43930 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/43930 - Third Party Advisory, VDB Entry
CWE CWE-200 CWE-319
CVSS v2 : 4.3
v3 : unknown
v2 : 4.3
v3 : 7.5

Information

Published : 2008-07-24 17:41

Updated : 2024-01-25 20:43


NVD link : CVE-2008-3289

Mitre link : CVE-2008-3289

CVE.ORG link : CVE-2008-3289


JSON object : View

Products Affected

storcentric

  • retrospect_backup_client
CWE
CWE-319

Cleartext Transmission of Sensitive Information