CVE-2006-1164

Nodez 4.6.1.1 and earlier stores sensitive data in the list.gtdat file under the web document root with insufficient access control, which allows remote attackers to obtain usernames and password hashes by directly accessing list.gtdat.
Configurations

Configuration 1 (hide)

cpe:2.3:a:nodez:nodez:4.6.1.1:*:*:*:*:*:*:*

History

21 Nov 2024, 00:08

Type Values Removed Values Added
References () http://hamid.ir/security/nodez.txt - Exploit () http://hamid.ir/security/nodez.txt - Exploit
References () http://www.osvdb.org/23775 - () http://www.osvdb.org/23775 -
References () http://www.securityfocus.com/bid/17066 - () http://www.securityfocus.com/bid/17066 -

Information

Published : 2006-03-12 21:02

Updated : 2025-04-03 01:03


NVD link : CVE-2006-1164

Mitre link : CVE-2006-1164

CVE.ORG link : CVE-2006-1164


JSON object : View

Products Affected

nodez

  • nodez