RSS   Vulnerabilities for 'Walrack'   RSS

2011-05-31
 
CVE-2011-2215

 

 
Unspecified vulnerability in WalRack 1.x before 1.1.8 and 2.x before 2.0.6 has unknown impact and attack vectors, possibly related to file deletion and an encoded URL, a different vulnerability than CVE-2011-1329.

 
 
CVE-2011-1329

 

 
WalRack 1.x before 1.1.9 and 2.x before 2.0.7 does not properly restrict file uploads, which allows remote attackers to execute arbitrary PHP code via vectors involving a double extension, as demonstrated by a .php.zzz file.

 


Copyright 2024, cxsecurity.com

 

Back to Top