Respondus 1.1.2 for WebCT uses weak encryption to remember usernames and passwords, which allows local users who can read the WEBCT.SVR file to decrypt the passwords and gain additional privileges.
References
Configurations
History
20 Nov 2024, 23:36
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=99859557930285&w=2 - |
Information
Published : 2001-08-31 04:00
Updated : 2024-11-20 23:36
NVD link : CVE-2001-1003
Mitre link : CVE-2001-1003
CVE.ORG link : CVE-2001-1003
JSON object : View
Products Affected
webct
- respondus
CWE