Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2005-1166 | First vendor Publication | 2005-05-02 |
Vendor | Cve | Last vendor Modification | 2024-11-20 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:L/AC:L/Au:N/C:P/I:N/A:N) | |||
---|---|---|---|
Cvss Base Score | 2.1 | Attack Range | Local |
Cvss Impact Score | 2.9 | Attack Complexity | Low |
Cvss Expoit Score | 3.9 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
The DNTUS26 process in Dameware NT Utilities and the DWRCS process in MiniRemote Control 4.9 and earlier stores the username and password in cleartext in memory, which could allow attackers to obtain sensitive information. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1166 |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
15741 | DameWare Mini Remote Control DWRCC Process Information Disclosure DameWare Mini Remote Control contains a flaw that may lead to an unauthorized information disclosure. Â The issue is triggered when dumping the 'DWRCS' and 'DWRCC' process from memory into a file, which will disclose sensitive information resulting in a loss of confidentiality. |
15275 | DameWare NT Utilities DNTUS26 Process Password Disclosure DameWare NT Utilities contains a flaw that may lead to an unauthorized information disclosure. Â The issue is triggered when dumping the 'DNTUS26' process from memory into a file, which will disclose user name and password resulting in a loss of confidentiality. |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2005-04-22 | Name : The remote Windows host contains an application that is affected by an inform... File : dameware_mini_remote_control_credential_exposure.nasl - Type : ACT_GATHER_INFO |
2005-04-22 | Name : The remote Windows host contains an application that is affected by an inform... File : dameware_nt_utilities_credential_exposure.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Source | Url |
---|
Alert History
Date | Informations |
---|---|
2024-11-28 23:22:25 |
|
2024-11-28 12:06:57 |
|
2021-04-22 01:03:08 |
|
2020-05-23 01:36:36 |
|
2020-05-23 00:16:29 |
|
2016-10-18 12:01:39 |
|
2016-06-28 15:16:23 |
|
2014-02-17 10:31:00 |
|
2013-05-11 11:23:54 |
|