VYPR

CWE-434

Unrestricted Upload of File with Dangerous Type

BaseDraftLikelihood: Medium

Description

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-1

CVEs mapped to this weakness (4,316)

page 126 of 216
  • CVE-2023-39538HigDec 6, 2023
    risk 0.49cvss 7.5epss 0.00

    AMI AptioV contains a vulnerability in BIOS where a User may cause an unrestricted upload of a BMP Logo file with dangerous type by Local access. A successful exploit of this vulnerability may lead to a loss of Confidentiality, Integrity, and/or Availability. 

  • CVE-2023-5637HigDec 1, 2023
    risk 0.49cvss 7.5epss 0.01

    Unrestricted Upload of File with Dangerous Type vulnerability in ArslanSoft Education Portal allows Read Sensitive Strings Within an Executable. This issue affects Education Portal: before v1.1.

  • CVE-2023-41788HigNov 23, 2023
    risk 0.49cvss 7.6epss 0.01

    Unrestricted Upload of File with Dangerous Type vulnerability in Pandora FMS on all allows Accessing Functionality Not Properly Constrained by ACLs. This vulnerability allows attackers to execute code via PHP file uploads. This issue affects Pandora FMS: from 700 through 773.

  • CVE-2022-47186HigSep 28, 2023
    risk 0.49cvss 7.5epss 0.01

    There is an unrestricted upload of file vulnerability in Generex CS141 below 2.06 version. An attacker could upload and/or delete any type of file, without any format restriction and without any authentication, in the "upload" directory.

  • CVE-2022-46899HigJul 25, 2023
    risk 0.49cvss 7.5epss 0.00

    An issue was discovered in Vocera Report Server and Voice Server 5.x through 5.8. There is Arbitrary File Upload. The BaseController class, that each of the service controllers derives from, allows for the upload of arbitrary files. If the HTTP request is a multipart/form-data…

  • CVE-2020-19028HigJun 5, 2023
    risk 0.49cvss 7.5epss 0.01

    *File Upload vulnerability found in Emlog EmlogCMS v.6.0.0 allows a remote attacker to gain access to sensitive information via the /admin/plugin.php function.

  • CVE-2023-22890HigMar 8, 2023
    risk 0.49cvss 7.5epss 0.01

    SmartBear Zephyr Enterprise through 7.15.0 allows unauthenticated users to upload large files, which could exhaust the local drive space, causing a denial of service condition.

  • CVE-2023-25402HigMar 3, 2023
    risk 0.49cvss 7.5epss 0.01

    CleverStupidDog yf-exam 1.8.0 is vulnerable to File Upload. There is no restriction on the suffix of the uploaded file, resulting in any file upload.

  • CVE-2022-2883HigFeb 22, 2023
    risk 0.49cvss 7.5epss 0.01

    In affected versions of Octopus Deploy it is possible to upload a zipbomb file as a task which results in Denial of Service

  • CVE-2022-46660HigJan 18, 2023
    risk 0.49cvss 7.5epss 0.01

    An unauthorized user could alter or write files with full control over the path and content of the file.

  • CVE-2022-3912HigDec 12, 2022
    risk 0.49cvss 7.5epss 0.01

    The User Registration WordPress plugin before 2.2.4.1 does not properly restrict the files to be uploaded via an AJAX action available to both unauthenticated and authenticated users, which could allow unauthenticated users to upload PHP files for example.

  • CVE-2022-38140HigNov 28, 2022
    risk 0.49cvss 7.6epss 0.01

    Auth. (contributor+) Arbitrary File Upload in SEO Plugin by Squirrly SEO plugin <= 12.1.10 on WordPress.

  • CVE-2022-28372HigJul 14, 2022
    risk 0.49cvss 7.5epss 0.01

    On Verizon 5G Home LVSKIHP InDoorUnit (IDU) 3.4.66.162 and OutDoorUnit (ODU) 3.33.101.0 devices, the CRTC and ODU RPC endpoints provide a means of provisioning a firmware update for the device via crtc_fw_upgrade or crtcfwimage. The URL provided is not validated, and thus allows…

  • CVE-2022-0863HigJun 13, 2022
    risk 0.49cvss 7.2epss 0.24

    The WP SVG Icons WordPress plugin through 3.2.3 does not properly validate uploaded custom icon packs, allowing an high privileged user like an admin to upload a zip file containing malicious php code, leading to remote code execution.

  • CVE-2022-30860HigJun 6, 2022
    risk 0.49cvss 7.2epss 0.24

    FUDforum 3.1.2 is vulnerable to Remote Code Execution through Upload File feature of File Administration System in Admin Control Panel.

  • CVE-2022-24581HigJun 2, 2022
    risk 0.49cvss 7.5epss 0.01

    ACEweb Online Portal 3.5.065 allows unauthenticated SMB hash capture via UNC. By specifying the UNC file path of an external SMB share when uploading a file, an attacker can induce the victim server to disclose the username and password hash of the user executing the ACEweb…

  • CVE-2021-33615HigJun 2, 2022
    risk 0.49cvss 7.5epss 0.01

    RSA Archer 6.8.00500.1003 P5 allows Unrestricted Upload of a File with a Dangerous Type.

  • CVE-2021-33009HigMay 13, 2022
    risk 0.49cvss 7.5epss 0.01

    mySCADA myPRO versions prior to 8.20.0 allows an unauthenticated remote attacker to upload arbitrary files to the file system.

  • CVE-2022-27261HigApr 12, 2022
    risk 0.49cvss 7.5epss 0.01

    An arbitrary file write vulnerability in Express-FileUpload v1.3.1 allows attackers to upload multiple files with the same name, causing an overwrite of files in the web application server.

  • CVE-2021-46367HigApr 8, 2022
    risk 0.49cvss 7.2epss 0.30

    RiteCMS version 3.1.0 and below suffers from a remote code execution vulnerability in the admin panel. An authenticated attacker can upload a PHP file and bypass the .htacess configuration to deny execution of .php files in media and files directory by default.