Required CVE Record Information
Description
UltraEdit uses weak encryption to record FTP passwords in the uedit32.ini file, which allows local users who can read the file to decrypt the passwords and gain privileges.
References 2 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- http://www.eve-software.com/security/ueditpw.html x_transferred
- marc.info: 20010823 Re: Respondus v1.1.2 stores passwords using weak encryption mailing-listx_transferred