CVE-2000-1158: High severity Network Associates Sniffer Agent vulnerability
Published Dec 19, 2000
·Updated
NAI Sniffer Agent uses base64 encoding for authentication, which allows attackers to sniff the network and easily decrypt usernames and passwords.
Affected Software
1 affected component
Network Associates Sniffer Agent=3.0.10
Event History
Dec 19, 2000
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-1158?
CVE-2000-1158 is considered a high severity vulnerability due to the ease of decrypting sensitive credentials.
2
How do I fix CVE-2000-1158?
To fix CVE-2000-1158, it is recommended to upgrade to a more secure version of the NAI Sniffer Agent that uses stronger authentication methods.
3
What software is affected by CVE-2000-1158?
CVE-2000-1158 specifically affects Network Associates Sniffer Agent version 3.0.10.
4
What impact does CVE-2000-1158 have on security?
CVE-2000-1158 allows attackers to easily sniff the network traffic and obtain plain text usernames and passwords, compromising security.
5
Is there a workaround for CVE-2000-1158?
A workaround for CVE-2000-1158 includes implementing network encryption to obscure authentication data during transmission.