VYPR

CWE-434

Unrestricted Upload of File with Dangerous Type

BaseDraftLikelihood: Medium

Description

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-1

CVEs mapped to this weakness (4,451)

page 137 of 223
  • CVE-2024-20272HigJan 17, 2024
    risk 0.48cvss 7.3epss 0.02

    A vulnerability in the web-based management interface of Cisco Unity Connection could allow an unauthenticated, remote attacker to upload arbitrary files to an affected system and execute commands on the underlying operating system. This vulnerability is due to a lack of…

  • CVE-2023-46474HigJan 11, 2024
    risk 0.48cvss 7.2epss 0.21

    File Upload vulnerability PMB v.7.4.8 allows a remote attacker to execute arbitrary code and escalate privileges via a crafted PHP file uploaded to the start_import.php file.

  • CVE-2022-45275HigDec 12, 2022
    risk 0.48cvss 7.2epss 0.15

    An arbitrary file upload vulnerability in /queuing/admin/ajax.php?action=save_settings of Dynamic Transaction Queuing System v1.0 allows attackers to execute arbitrary code via a crafted PHP file.

  • CVE-2022-4273HigDec 3, 2022
    risk 0.48cvss 7.3epss 0.01

    A vulnerability, which was classified as critical, has been found in SourceCodester Human Resource Management System 1.0. This issue affects some unknown processing of the file /hrm/controller/employee.php of the component Content-Type Handler. The manipulation of the argument…

  • CVE-2022-2647HigAug 4, 2022
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in jeecg-boot. It has been declared as critical. This vulnerability affects unknown code of the file /api/. The manipulation of the argument file leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the…

  • CVE-2022-34120HigJul 27, 2022
    risk 0.48cvss 7.2epss 0.19

    Barangay Management System v1.0 was discovered to contain a remote code execution (RCE) vulnerability via the module editing function at /pages/activity/activity.php.

  • CVE-2022-30945HigMay 17, 2022
    risk 0.48cvss 8.5epss 0.01

    Jenkins Pipeline: Groovy Plugin 2689.v434009a_31b_f1 and earlier allows loading any Groovy source files on the classpath of Jenkins and Jenkins plugins in sandboxed pipelines.

  • CVE-2021-42123HigNov 30, 2021
    risk 0.48cvss 7.3epss 0.01

    Unrestricted File Upload in Web Applications operating on Business-DNA Solutions GmbH’s TopEase® Platform Version <= 7.1.27 in the File Upload Functions allows an authenticated remote attacker with Upload privileges to upload files with any file type, enabling client-side…

  • CVE-2020-7847HigFeb 23, 2021
    risk 0.48cvss 7.4epss 0.01

    The ipTIME NAS product allows an arbitrary file upload vulnerability in the Manage Bulletins/Upload feature, which can be leveraged to gain remote code execution. This issue affects: pTIME NAS 1.4.36.

  • CVE-2020-25406HigNov 18, 2020
    risk 0.48cvss 7.3epss 0.01

    app\admin\controller\sys\Uploads.php in lemocms 1.8.x allows users to upload files to upload executable files.

  • CVE-2020-24948HigSep 3, 2020
    risk 0.48cvss 7.2epss 0.13

    The ao_ccss_import AJAX call in Autoptimize Wordpress Plugin 2.7.6 does not ensure that the file provided is a legitimate Zip file, allowing high privilege users to upload arbitrary files, such as PHP, leading to remote command execution.

  • CVE-2019-15843HigSep 18, 2019
    risk 0.48cvss 7.4epss 0.01

    A malicious file upload vulnerability was discovered in Xiaomi Millet mobile phones 1-6.3.9.3. A particular condition involving a man-in-the-middle attack may lead to partial data leakage or malicious file writing.

  • CVE-2017-18435HigAug 2, 2019
    risk 0.48cvss 7.3epss 0.01

    cPanel before 64.0.21 allows demo accounts to execute code via the BoxTrapper API (SEC-238).

  • CVE-2018-19422HigNov 21, 2018
    risk 0.48cvss 7.2epss 0.64

    /panel/uploads in Subrion CMS 4.2.1 allows remote attackers to execute arbitrary PHP code via a .pht or .phar file, because the .htaccess file omits these.

  • CVE-2018-14028HigAug 10, 2018
    risk 0.48cvss 7.2epss 0.15

    In WordPress 4.9.7, plugins uploaded via the admin area are not verified as being ZIP files. This allows for PHP files to be uploaded. Once a PHP file is uploaded, the plugin extraction fails, but the PHP file remains in a predictable wp-content/uploads location, allowing for an…

  • CVE-2016-10258MedApr 11, 2018
    risk 0.48cvss 6.8epss 0.05

    Unrestricted file upload vulnerability in the Symantec Advanced Secure Gateway (ASG) and ProxySG management consoles. A malicious appliance administrator can upload arbitrary malicious files to the management console and trick another administrator user into downloading and…

  • CVE-2026-81650HigSep 20, 2026
    risk 0.47cvss 7.2epss 0.01

    The Photo Gallery, Sliders, Proofing and WordPress plugin before 4.5.0 does not correctly validate the extensions of files extracted from an uploaded archive, due to a variable being reused as a loop counter so that the check always passes, allowing users granted its…

  • CVE-2026-82793HigSep 14, 2026
    risk 0.47cvss 7.2epss 0.01

    Unrestricted upload of file with dangerous type issue exists in Contec CAN 2.0B Communication Wireless LAN / USB Converter Unit. If a specially crafted file is uploaded by a remote authenticated attacker, arbitrary code may be executed on the product.

  • CVE-2026-81090HigSep 12, 2026
    risk 0.47cvss 7.2epss 0.00

    The Gpx2Graphics WordPress plugin through 0.3 does not perform a CSRF check when handling file uploads, nor validate the type of the uploaded file, allowing attackers to make a logged-in administrator upload arbitrary files such as PHP via a CSRF attack, leading to Remote Code…

  • CVE-2026-26212HigSep 9, 2026
    risk 0.47cvss 7.2epss 0.01

    Rara One Click Demo Import plugin for WordPress before 1.3.5 contains an arbitrary file upload vulnerability that allows authenticated attackers with Administrator privileges to upload arbitrary PHP files by passing a false value to wp_handle_upload() that disables WordPress…