GUnet OpenEclass 1.7.3 stores user credentials in plaintext, allowing administrators to view all registered users' usernames and passwords without encryption. This vulnerability exposes sensitive information and increases the risk of credential theft and unauthorized access.
References
Configurations
No configuration.
History
03 Feb 2026, 18:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-02-03 18:16
Updated : 2026-02-03 18:16
NVD link : CVE-2020-37115
Mitre link : CVE-2020-37115
CVE.ORG link : CVE-2020-37115
JSON object : View
Products Affected
No product.
CWE
CWE-256
Plaintext Storage of a Password
