Description
On Windows systems, the Arc configuration files resulted to be world-readable.
This can lead to information disclosure by local attackers, via exfiltration of sensitive data from configuration files.
This can lead to information disclosure by local attackers, via exfiltration of sensitive data from configuration files.
No analysis available yet.
Remediation
Vendor Solution
Upgrade to v1.6.0 or later.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-58209 | On Windows systems, the Arc configuration files resulted to be world-readable. This can lead to information disclosure by local attackers, via exfiltration of sensitive data from configuration files. |
References
| Link | Providers |
|---|---|
| https://security.nozominetworks.com/NN-2023:15-01 |
|
History
Fri, 20 Sep 2024 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | ||
| Vendors & Products |
Nozominetworks
Nozominetworks arc |
Fri, 20 Sep 2024 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nozominetworks
Nozominetworks arc |
|
| Weaknesses | CWE-732 | |
| CPEs | cpe:2.3:a:nozominetworks:arc:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Nozominetworks
Nozominetworks arc |
|
| Metrics |
ssvc
|
Fri, 20 Sep 2024 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-538 |
Subscriptions
No data.
Status: PUBLISHED
Assigner: Nozomi
Published:
Updated: 2024-09-20T18:23:17.824Z
Reserved: 2023-11-02T15:59:51.613Z
Link: CVE-2023-5937
Updated: 2024-08-02T08:14:25.130Z
Status : Deferred
Published: 2024-05-15T16:15:09.577
Modified: 2026-04-15T00:35:42.020
Link: CVE-2023-5937
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD