CVE-2004-1852: Medium severity SolarWinds DameWare Mini Remote Control vulnerability
DameWare Mini Remote Control 3.x before 3.74 and 4.x before 4.2 transmits the Blowfish encryption key in plaintext, which allows remote attackers to gain sensitive information.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2004-1852?
CVE-2004-1852 is classified as a high severity vulnerability due to the exposure of sensitive information through plaintext transmission.
How do I fix CVE-2004-1852?
To fix CVE-2004-1852, upgrade DameWare Mini Remote Control to version 3.74 or later for 3.x, or 4.2 or later for 4.x.
What versions are affected by CVE-2004-1852?
CVE-2004-1852 affects DameWare Mini Remote Control versions 3.70 through 3.73 and 4.0 through 4.1.
What kind of attacks can exploit CVE-2004-1852?
CVE-2004-1852 can be exploited by remote attackers to intercept and gain access to sensitive information due to the plaintext transmission of encryption keys.
Is there a workaround for CVE-2004-1852?
There are no known effective workarounds for CVE-2004-1852; updating to a secure version is the recommended mitigation.