Vulnerabilities > CVE-2001-1003 - Local Security vulnerability in Webct Respondus 1.1.2

047910
CVSS 4.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
low complexity
webct
exploit available

Summary

Respondus 1.1.2 for WebCT uses weak encryption to remember usernames and passwords, which allows local users who can read the WEBCT.SVR file to decrypt the passwords and gain additional privileges.

Vulnerable Configurations

Part Description Count
Application
Webct
1

Exploit-Db

descriptionRespondus for WebCT 1.1.2 Weak Password Encryption Vulnerability. CVE-2001-1003. Local exploits for multiple platform
idEDB-ID:21078
last seen2016-02-02
modified2001-08-23
published2001-08-23
reporterDesmond Irvine
sourcehttps://www.exploit-db.com/download/21078/
titleRespondus for WebCT 1.1.2 Weak Password Encryption Vulnerability