CVE-2008-1883

The server in Blackboard Academic Suite 7.x stores MD5 password hashes that are provided directly by clients, which makes it easier for remote attackers to access accounts via a modified client that skips the javascript/md5.js hash calculation, and instead sends an arbitrary MD5 string.
Configurations

Configuration 1 (hide)

cpe:2.3:a:blackboard:blackboard_academic_suite:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-04-18 15:05

Updated : 2023-12-10 10:51


NVD link : CVE-2008-1883

Mitre link : CVE-2008-1883

CVE.ORG link : CVE-2008-1883


JSON object : View

Products Affected

blackboard

  • blackboard_academic_suite
CWE
CWE-287

Improper Authentication