{"api_version":"1","generated_at":"2026-07-23T22:21:46+00:00","cve":"CVE-2005-1166","urls":{"html":"https://cve.report/CVE-2005-1166","api":"https://cve.report/api/cve/CVE-2005-1166.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2005-1166","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2005-1166"},"summary":{"title":"CVE-2005-1166","description":"The DNTUS26 process in Dameware NT Utilities and the DWRCS process in MiniRemote Control 4.9 and earlier stores the username and password in cleartext in memory, which could allow attackers to obtain sensitive information.","state":"PUBLISHED","assigner":"mitre","published_at":"2005-05-02 04:00:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"2.1","severity":"","vector":"AV:L/AC:L/Au:N/C:P/I:N/A:N","data":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"}}],"references":[{"url":"http://marc.info/?l=bugtraq&m=111358825101305&w=2","name":"http://marc.info/?l=bugtraq&m=111358825101305&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"'Dameware NT Utilities and MiniRemote Control <= 4.9 vulnerability' - MARC","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.shellsec.net/leer_advisory.php?id=7","name":"http://www.shellsec.net/leer_advisory.php?id=7","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Certificados SSL y soluciones para empresas y pymes | Redalia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.osvdb.org/15275","name":"http://www.osvdb.org/15275","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://securitytracker.com/id?1013725","name":"http://securitytracker.com/id?1013725","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"DameWare Discloses Passwords to Local Users - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://www.cve.org/CVERecord?id=CVE-2005-1166","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2005-1166","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2005","cve_id":"1166","vulnerable":"1","versionEndIncluding":"4.9","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"dameware_development","cpe5":"dameware_nt_utilities","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"1166","vulnerable":"1","versionEndIncluding":"4.9","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"dameware_development","cpe5":"miniremote_control","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T21:44:05.177Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"1013725","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1013725"},{"name":"15275","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/15275"},{"name":"20050415 Dameware NT Utilities and MiniRemote Control <= 4.9 vulnerability","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=111358825101305&w=2"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.shellsec.net/leer_advisory.php?id=7"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2005-04-15T00:00:00.000Z","descriptions":[{"lang":"en","value":"The DNTUS26 process in Dameware NT Utilities and the DWRCS process in MiniRemote Control 4.9 and earlier stores the username and password in cleartext in memory, which could allow attackers to obtain sensitive information."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2016-10-17T13:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"1013725","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1013725"},{"name":"15275","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/15275"},{"name":"20050415 Dameware NT Utilities and MiniRemote Control <= 4.9 vulnerability","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://marc.info/?l=bugtraq&m=111358825101305&w=2"},{"tags":["x_refsource_MISC"],"url":"http://www.shellsec.net/leer_advisory.php?id=7"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2005-1166","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The DNTUS26 process in Dameware NT Utilities and the DWRCS process in MiniRemote Control 4.9 and earlier stores the username and password in cleartext in memory, which could allow attackers to obtain sensitive information."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"1013725","refsource":"SECTRACK","url":"http://securitytracker.com/id?1013725"},{"name":"15275","refsource":"OSVDB","url":"http://www.osvdb.org/15275"},{"name":"20050415 Dameware NT Utilities and MiniRemote Control <= 4.9 vulnerability","refsource":"BUGTRAQ","url":"http://marc.info/?l=bugtraq&m=111358825101305&w=2"},{"name":"http://www.shellsec.net/leer_advisory.php?id=7","refsource":"MISC","url":"http://www.shellsec.net/leer_advisory.php?id=7"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2005-1166","datePublished":"2005-04-18T04:00:00.000Z","dateReserved":"2005-04-18T00:00:00.000Z","dateUpdated":"2024-08-07T21:44:05.177Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2005-05-02 04:00:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:dameware_development:dameware_nt_utilities:*:*:*:*:*:*:*:*","versionEndIncluding":"4.9","matchCriteriaId":"4276059F-F29F-4898-8436-748EE8AEEFF8"},{"vulnerable":true,"criteria":"cpe:2.3:a:dameware_development:miniremote_control:*:*:*:*:*:*:*:*","versionEndIncluding":"4.9","matchCriteriaId":"D23CE158-8E62-414A-83E0-1CC8AFA91AE6"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2005","CveId":"1166","Ordinal":"1","Title":"CVE-2005-1166","CVE":"CVE-2005-1166","Year":"2005"},"notes":[{"CveYear":"2005","CveId":"1166","Ordinal":"1","NoteData":"The DNTUS26 process in Dameware NT Utilities and the DWRCS process in MiniRemote Control 4.9 and earlier stores the username and password in cleartext in memory, which could allow attackers to obtain sensitive information.","Type":"Description","Title":"CVE-2005-1166"},{"CveYear":"2005","CveId":"1166","Ordinal":"2","NoteData":"2005-04-18","Type":"Other","Title":"Published"},{"CveYear":"2005","CveId":"1166","Ordinal":"3","NoteData":"2016-10-17","Type":"Other","Title":"Modified"}]}}}