4.6
CVSSv2

CVE-2001-0983

Published: 31/08/2001 Updated: 18/10/2016
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 465
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

UltraEdit uses weak encryption to record FTP passwords in the uedit32.ini file, which allows local users who can read the file to decrypt the passwords and gain privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

ultraedit ultraedit-32

Exploits

source: wwwsecurityfocuscom/bid/3234/info UltraEdit is a multi-featured commercial text editor with support for HTML, C/C++, VB, Java, Perl, XML, and C# It also includes a hex editor and a small FTP client UltraEdit's FTP client has a feature which will remember FTP passwords for later use When passwords are remembered they will be st ...