Arq Backup 7.19.5.0 and below stores backup encryption passwords using reversible encryption. This issue allows attackers with administrative privileges to recover cleartext passwords.
References
Link Resource
https://startrekdude.github.io/arqbackup.html Mailing List Third Party Advisory
https://www.arqbackup.com/download/arqbackup/arq7windows_release_notes.html Release Notes Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-09-09T15:33:18

Updated: 2022-09-09T15:33:18

Reserved: 2022-07-25T00:00:00


Link: CVE-2022-36617

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-09-09T16:15:08.993

Modified: 2022-09-14T20:29:53.803


Link: CVE-2022-36617

JSON object: View

cve-icon Redhat Information

No data.

CWE