VYPR

CWE-434

Unrestricted Upload of File with Dangerous Type

BaseDraftLikelihood: Medium

Description

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-1

CVEs mapped to this weakness (4,316)

page 124 of 216
  • CVE-2022-45968HigDec 12, 2022
    risk 0.50cvss 8.8epss 0.01

    Alist v3.4.0 is vulnerable to File Upload. A user with only file upload permission can upload any file to any folder (even a password protected one).

  • CVE-2022-46157HigDec 9, 2022
    risk 0.50cvss 8.8epss 0.01

    Akeneo PIM is an open source Product Information Management (PIM). Akeneo PIM Community Edition versions before v5.0.119 and v6.0.53 allows remote authenticated users to execute arbitrary PHP code on the server by uploading a crafted image. Akeneo PIM Community Edition after the…

  • CVE-2022-2111HigJun 17, 2022
    risk 0.50cvss 8.8epss 0.01

    Unrestricted Upload of File with Dangerous Type in GitHub repository inventree/inventree prior to 0.7.2.

  • CVE-2021-40905HigMar 25, 2022
    risk 0.50cvss 8.8epss 0.03

    The web management console of CheckMK Enterprise Edition (versions 1.5.0 to 2.0.0p9) does not properly sanitise the uploading of ".mkp" files, which are Extension Packages, making remote code execution possible. Successful exploitation requires access to the web management…

  • CVE-2021-4080HigJan 12, 2022
    risk 0.50cvss 8.8epss 0.01

    crater is vulnerable to Unrestricted Upload of File with Dangerous Type

  • CVE-2021-3846HigOct 19, 2021
    risk 0.50cvss 8.8epss 0.01

    firefly-iii is vulnerable to Unrestricted Upload of File with Dangerous Type

  • CVE-2021-28976HigJun 23, 2021
    risk 0.50cvss 7.2epss 0.08

    Remote Code Execution vulnerability in GetSimpleCMS before 3.3.16 in admin/upload.php via phar filess.

  • CVE-2020-36388HigJun 17, 2021
    risk 0.50cvss 8.8epss 0.01

    In CiviCRM before 5.21.3 and 5.22.x through 5.24.x before 5.24.3, users may be able to upload and execute a crafted PHAR archive.

  • CVE-2021-24145HigMar 18, 2021
    risk 0.50cvss 7.2epss 0.88

    Arbitrary file upload in the Modern Events Calendar Lite WordPress plugin, versions before 5.16.5, did not properly check the imported file, allowing PHP ones to be uploaded by administrator by using the 'text/csv' content-type in the request.

  • CVE-2020-5509HigJan 14, 2020
    risk 0.50cvss 7.2epss 0.06

    PHPGurukul Car Rental Project v1.0 allows Remote Code Execution via an executable file in an upload of a new profile image.

  • CVE-2019-8093HigNov 5, 2019
    risk 0.50cvss 8.8epss 0.01

    An arbitrary file access vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An authenticated user can leverage file upload controller for downloadable products to read/delete an arbitary files.

  • CVE-2019-16318HigSep 14, 2019
    risk 0.50cvss 8.8epss 0.01

    In Pimcore before 5.7.1, an attacker with limited privileges can bypass file-extension restrictions via a 256-character filename, as demonstrated by the failure of automatic renaming of .php to .php.txt for long filenames, a different vulnerability than CVE-2019-10867 and…

  • CVE-2019-10652HigMar 30, 2019
    risk 0.50cvss 7.2epss 0.07

    An issue was discovered in flatCore 1.4.7. acp/acp.php allows remote authenticated administrators to upload arbitrary .php files, related to the addons feature.

  • CVE-2018-14857HigAug 6, 2018
    risk 0.50cvss 8.8epss 0.04

    Unrestricted file upload (with remote code execution) in require/mail/NotificationMail.php in Webconsole in OCS Inventory NG OCS Inventory Server through 2.5 allows a privileged user to gain access to the server via a template file containing PHP code, because file extensions…

  • CVE-2017-2617HigMay 22, 2018
    risk 0.50cvss 7.6epss 0.02

    hawtio before version 1.5.5 is vulnerable to remote code execution via file upload. An attacker could use this vulnerability to upload a crafted file which could be executed on a target machine where hawtio is deployed.

  • CVE-2014-9619HigSep 19, 2017
    risk 0.50cvss 7.2epss 0.07

    Unrestricted file upload vulnerability in webadmin/ajaxfilemanager/ajaxfilemanager.php in Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4.1.2 allows remote authenticated users with admin privileges on the Cloud Manager web console to execute arbitrary PHP code…

  • CVE-2026-41587HigMay 7, 2026
    risk 0.49cvss epss 0.01

    CI4MS is a CodeIgniter 4-based CMS skeleton that delivers a production-ready, modular architecture with RBAC authorization and theme support. From version 0.26.0.0 to before version 0.31.7.0, a theme upload feature allows any authenticated backend user with theme-upload…

  • CVE-2020-36882HigDec 5, 2025
    risk 0.49cvss 7.5epss 0.01

    Flexsense DiskBoss 7.7.14 allows unauthenticated attackers to upload arbitrary files via /Command/Search Files/Directory field, leading to a denial of service by crashing the application.

  • CVE-2025-13646HigDec 3, 2025
    risk 0.49cvss 7.5epss 0.01

    The Modula Image Gallery plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'ajax_unzip_file' function in versions 2.13.1 to 2.13.2. This makes it possible for authenticated attackers, with Author-level access and above, to…

  • CVE-2025-65844HigDec 2, 2025
    risk 0.49cvss 7.5epss 0.00

    EverShop 2.0.1 allows a remote unauthenticated attacker to upload arbitrary files and create directories via the /api/images endpoint. The endpoint is accessible without authentication by default, and server-side validation of uploaded files is insufficient. This can be abused…