Nodezilla 0.4.13-corno-fulgure does not properly protect the evl_data directory, which could allow them to be shared when they are not protected by PRIVATEDATADIR in nodezilla.ini, which allows remote attackers to obtain sensitive information.
CVSS 2.0
Severity: MEDIUM
Problem Type: NVD-CWE-Other,
Products Affected
| Vendor | Product | Version |
|---|---|---|
| ali_bousahid | nodezilla | 0.4.13_corno_fulgure |
| ali_bousahid | nodezilla | 0.4.9_corno_fulgure |
| ali_bousahid | nodezilla | 0.4.5_corno_fulgure |
| ali_bousahid | nodezilla | 0.4.10_corno_fulgure |
| ali_bousahid | nodezilla | 0.4.1_corno_fulgure |
| ali_bousahid | nodezilla | 0.4.2_corno_fulgure |
| ali_bousahid | nodezilla | 0.4.0_corno_fulgure |
| ali_bousahid | nodezilla | 0.4.4_corno_fulgure |
| ali_bousahid | nodezilla | 0.4.11_corno_fulgure |
| ali_bousahid | nodezilla | 0.4.3_corno_fulgure |
| ali_bousahid | nodezilla | 0.4.7_corno_fulgure |
| ali_bousahid | nodezilla | 0.4.8_corno_fulgure |
| ali_bousahid | nodezilla | 0.4.12_corno_fulgure |
| ali_bousahid | nodezilla | 0.4.6_corno_fulgure |