Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2009-0918

Overview

Vulnerability Score 7.5 7.5
CVE Id CVE-2009-0918
Last Modified 25 Mar 2009 01:51:10
Published 16 Mar 2009 03:30:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2009-0918

Summary

Multiple unspecified vulnerabilities in DFLabs PTK 1.0.0 through 1.0.4 allow remote attackers to execute arbitrary commands in processes launched by PTK's Apache HTTP Server via (1) "external tools" or (2) a crafted forensic image.

Vulnerable Systems

Application

  • Dflabs Ptk 1.0.0

  • Dflabs Ptk 1.0.1

  • Dflabs Ptk 1.0.2

  • Dflabs Ptk 1.0.3

  • Dflabs Ptk 1.0.4


References

CONFIRM - http://www.kb.cert.org/vuls/id/RGII-7Q4GBJ

CERT-VN - VU#845747

CONFIRM - http://ptk.dflabs.com/security.html

CONFIRM - http://ptk.dflabs.com/faq.html

XF - ptk-unspecified-command-execution(49235)

BID - 34111


Last Updated: 27 May 2016 10:50:24