6.8
CVSSv2

CVE-2008-6793

Published: 07/05/2009 Updated: 11/10/2018
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

The get_file_type function in lib/file_content.php in DFLabs PTK 0.1, 0.2, and 1.0 allows remote malicious users to execute arbitrary commands via shell metacharacters after an arg1= sequence in a filename within a forensic image.

Vulnerable Product Search on Vulmon Subscribe to Product

dflabs ptk 0.2

dflabs ptk 1.0

dflabs ptk 0.1

Exploits

==================================================== Security Research Advisory Vulnerability name: DFLabs PTK Local Command Execution Vulnerability Advisory number: LC-2008-07 Advisory URL: wwwikkisoftcom ==================================================== 1) Affected Software * DFLabs PTK 10 (final release) Previous versions are ...