Frank Karau's vulnerability profile centers on a niche set of PHP-based forum and discussion-board applications, including phpfk and variants of the GL-SH Deaf Forum platform. The limited disclosures observed reflect application-layer exposure typical of community-focused software; current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Frank Karau over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-2112HIGH Directory traversal vulnerability in include/page_bottom.php in phpFK 7.03 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in | Jun 18, 2009 | 7.5 | 30 | NO | YES |
CVE-2007-3535MEDIUM Multiple directory traversal vulnerabilities in GL-SH Deaf Forum 6.4.4 and earlier allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) | Jul 3, 2007 | 6.4 | 26 | NO | YES |
CVE-2017-18364MEDIUM phpFK lite has XSS via the faq.php, members.php, or search.php query string or the user.php user parameter. | Mar 27, 2019 | 6.1 | 23 | NO | NO |
CVE-2009-4677MEDIUM Cross-site scripting (XSS) vulnerability in search.php in phpFK PHP Forum ohne 7.0.4 allows remote attackers to inject arbitrary web script or HTML via the search parameter. NOTE: | Mar 8, 2010 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Frank Karau.
Media articles that mention a CVE ID that affects a product developed by Frank Karau — matched by CVE ID, not by vendor name.