CVE
- Id
- 59144
- CVE No.
- CVE-2012-5901
- Status
- Candidate
- Description
- DFLabs PTK 1.0.5 stores data files with predictable names under the web document root with insufficient access control, which allows remote attackers to read logs, images, or reports via a direct request to the file in the (1) log, (2) images, or (3) report directory.
- Phase
- Assigned (20121117)
- Votes
- None (candidate not yet proposed)
- Comments