Web Server 4D (WS4D) 3.6 stores passwords in plaintext in the Ws4d.4DD file, which allows attackers to gain privileges.
http://www.securityfocus.com/bid/5803
http://www.iss.net/security_center/static/10198.php
http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0128.html