Unrated severityNVD Advisory· Published Feb 3, 2026· Updated Feb 4, 2026
GUnet OpenEclass 1.7.3 E-learning platform - Plaintext Password Storage
CVE-2020-37115
Description
GUnet OpenEclass 1.7.3 stores user credentials in plaintext, allowing administrators to view all registered users' usernames and passwords without encryption. This vulnerability exposes sensitive information and increases the risk of credential theft and unauthorized access.
Affected products
2- Range: = 1.7.3
- Openeclass/GUnet OpenEclassv5Range: 1.7.3 (2007)
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- download.openeclass.org/files/docs/1.7/CHANGES.txtmitrepatch
- www.exploit-db.com/exploits/48163mitreexploit
- www.vulncheck.com/advisories/gunet-openeclass-e-learning-platform-plaintext-password-storagemitrethird-party-advisory
- www.openeclass.orgmitreproduct
News mentions
0No linked articles in our index yet.