Nodez is a narrowly scoped platform with a minimal vulnerability footprint concentrated in its core product. The limited disclosures center on miscellaneous weakness classes reflective of the product's functional scope. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Nodez over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-1164HIGH Nodez 4.6.1.1 and earlier stores sensitive data in the list.gtdat file under the web document root with insufficient access control, which allows remote attackers to obtain usernam | Mar 12, 2006 | 7.5 | 29 | NO | YES |
CVE-2006-1162MEDIUM Directory traversal vulnerability in Nodez 4.6.1.1 and earlier allows remote attackers to read or include arbitrary PHP files via a .. (dot dot) in the op parameter, as demonstrat | Mar 12, 2006 | 5.1 | 23 | NO | YES |
CVE-2006-1163MEDIUM Cross-site scripting (XSS) vulnerability in Nodez 4.6.1.1 allows remote attackers to inject arbitrary web script or HTML via the op parameter. NOTE: it is possible that this issue | Mar 12, 2006 | 6.8 | 18 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Nodez.
Media articles that mention a CVE ID that affects a product developed by Nodez — matched by CVE ID, not by vendor name.