Skip to content
Noroxi

dflabs records

6 published records for vendor dflabs.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

6 records
  • CVE-2009-0918
    31Monitor

    Multiple unspecified vulnerabilities in DFLabs PTK 1.0.0 through 1.0.4 allow remote attackers to execute arbitrary commands in processes lau

    HighCVSS 7.5No exploitEPSS 3%

    dflabs · ptkMar 16, 2009

  • CVE-2008-6793
    29Monitor

    The get_file_type function in lib/file_content.php in DFLabs PTK 0.1, 0.2, and 1.0 allows remote attackers to execute arbitrary commands via

    MediumCVSS 6.8Proof of conceptEPSS 7%

    dflabs · ptkMay 7, 2009

  • CVE-2012-1415
    27Monitor

    Cross-site request forgery (CSRF) vulnerability in lib/logout.php in DFLabs PTK 1.0.5 and earlier allows remote attackers to hijack the auth

    MediumCVSS 6.8Proof of conceptEPSS 1%

    dflabs · ptkDec 27, 2014

  • CVE-2012-5901
    20Monitor

    DFLabs PTK 1.0.5 stores data files with predictable names under the web document root with insufficient access control, which allows remote

    MediumCVSS 5.0No exploitEPSS 1%

    dflabs · ptkNov 17, 2012

  • CVE-2009-0917
    17Monitor

    Cross-site scripting (XSS) vulnerability in DFLabs PTK 1.0.0 through 1.0.4 allows remote attackers to inject arbitrary web script or HTML by

    MediumCVSS 4.3No exploitEPSS 2%

    dflabs · ptkMar 16, 2009

  • CVE-2012-5902
    17Monitor

    Cross-site scripting (XSS) vulnerability in ptk/lib/modal_bookmark.php in DFLabs PTK 1.0.5 allows remote attackers to inject arbitrary web s

    MediumCVSS 4.3No exploitEPSS 1%

    dflabs · ptkNov 17, 2012