Respondus 1.1.2 for WebCT uses weak encryption to remember usernames and passwords, which allows local users who can read the WEBCT.SVR file to decrypt the passwords and gain additional privileges.
References
Link | Resource |
---|---|
http://marc.info/?l=bugtraq&m=99859557930285&w=2 |
Configurations
Information
Published : 2001-08-30 21:00
Updated : 2016-10-17 19:14
NVD link : CVE-2001-1003
Mitre link : CVE-2001-1003
JSON object : View
CWE
Products Affected
webct
- respondus