dflabs kayıtları
dflabs üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-20 Improper Input Validation1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-352 Cross-Site Request Forgery (CSRF)1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2009-0918İstismar yok | Multiple unspecified vulnerabilities in DFLabs PTK 1.0.0 through 1.0.4 allow remote attackers to execute arbitrary commands in processes laudflabs · ptk | Yüksek7,5 | — | %2,7 | 16 Mar 2009 |
29İzleyin | CVE-2008-6793Kavram kanıtı | The get_file_type function in lib/file_content.php in DFLabs PTK 0.1, 0.2, and 1.0 allows remote attackers to execute arbitrary commands viadflabs · ptk · CWE-20 | Orta6,8 | — | %6,9 | 7 May 2009 |
27İzleyin | CVE-2012-1415Kavram kanıtı | Cross-site request forgery (CSRF) vulnerability in lib/logout.php in DFLabs PTK 1.0.5 and earlier allows remote attackers to hijack the authdflabs · ptk · CWE-352 | Orta6,8 | — | %1,1 | 27 Ara 2014 |
20İzleyin | CVE-2012-5901İstismar yok | DFLabs PTK 1.0.5 stores data files with predictable names under the web document root with insufficient access control, which allows remote dflabs · ptk · CWE-264 | Orta5,0 | — | %1,4 | 17 Kas 2012 |
17İzleyin | CVE-2009-0917İstismar yok | Cross-site scripting (XSS) vulnerability in DFLabs PTK 1.0.0 through 1.0.4 allows remote attackers to inject arbitrary web script or HTML bydflabs · ptk · CWE-79 | Orta4,3 | — | %1,5 | 16 Mar 2009 |
17İzleyin | CVE-2012-5902İstismar yok | Cross-site scripting (XSS) vulnerability in ptk/lib/modal_bookmark.php in DFLabs PTK 1.0.5 allows remote attackers to inject arbitrary web sdflabs · ptk · CWE-79 | Orta4,3 | — | %1,2 | 17 Kas 2012 |
- CVE-2009-091831İzleyin
Multiple unspecified vulnerabilities in DFLabs PTK 1.0.0 through 1.0.4 allow remote attackers to execute arbitrary commands in processes lau
YüksekCVSS 7,5İstismar yokEPSS %3dflabs · ptk16 Mar 2009
- CVE-2008-679329İzleyin
The get_file_type function in lib/file_content.php in DFLabs PTK 0.1, 0.2, and 1.0 allows remote attackers to execute arbitrary commands via
OrtaCVSS 6,8Kavram kanıtıEPSS %7dflabs · ptk7 May 2009
- CVE-2012-141527İzleyin
Cross-site request forgery (CSRF) vulnerability in lib/logout.php in DFLabs PTK 1.0.5 and earlier allows remote attackers to hijack the auth
OrtaCVSS 6,8Kavram kanıtıEPSS %1dflabs · ptk27 Ara 2014
- CVE-2012-590120İzleyin
DFLabs PTK 1.0.5 stores data files with predictable names under the web document root with insufficient access control, which allows remote
OrtaCVSS 5,0İstismar yokEPSS %1dflabs · ptk17 Kas 2012
- CVE-2009-091717İzleyin
Cross-site scripting (XSS) vulnerability in DFLabs PTK 1.0.0 through 1.0.4 allows remote attackers to inject arbitrary web script or HTML by
OrtaCVSS 4,3İstismar yokEPSS %2dflabs · ptk16 Mar 2009
- CVE-2012-590217İzleyin
Cross-site scripting (XSS) vulnerability in ptk/lib/modal_bookmark.php in DFLabs PTK 1.0.5 allows remote attackers to inject arbitrary web s
OrtaCVSS 4,3İstismar yokEPSS %1dflabs · ptk17 Kas 2012