Vulnerabilities > Walrus Digit > Walrack > 2.0.4

DATE CVE VULNERABILITY TITLE RISK
2011-05-31 CVE-2011-2215 Security vulnerability in WalRack
Unspecified vulnerability in WalRack 1.x before 1.1.8 and 2.x before 2.0.6 has unknown impact and attack vectors, possibly related to file deletion and an encoded URL, a different vulnerability than CVE-2011-1329.
network
low complexity
walrus-digit
7.5
2011-05-31 CVE-2011-1329 Permissions, Privileges, and Access Controls vulnerability in Walrus Digit Walrack
WalRack 1.x before 1.1.9 and 2.x before 2.0.7 does not properly restrict file uploads, which allows remote attackers to execute arbitrary PHP code via vectors involving a double extension, as demonstrated by a .php.zzz file.
6.8