VYPR

CWE-434

Unrestricted Upload of File with Dangerous Type

BaseDraftLikelihood: Medium

Description

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-1

CVEs mapped to this weakness (4,316)

page 144 of 216
  • CVE-2022-34154HigAug 1, 2022
    risk 0.47cvss 7.2epss 0.01

    Authenticated (author or higher user role) Arbitrary File Upload vulnerability in ideasToCode Enable SVG, WebP & ICO Upload plugin <= 1.0.1 at WordPress.

  • CVE-2022-34578HigJul 28, 2022
    risk 0.47cvss 7.2epss 0.01

    Open Source Point of Sale v3.3.7 was discovered to contain an arbitrary file upload vulnerability via the Update Branding Settings page.

  • CVE-2022-34024HigJul 19, 2022
    risk 0.47cvss 7.2epss 0.01

    Barangay Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via the resident module editing function at /bmis/pages/resident/resident.php.

  • CVE-2022-2268HigJul 4, 2022
    risk 0.47cvss 7.2epss 0.01

    The Import any XML or CSV File to WordPress plugin before 3.6.8 accepts all zip files and automatically extracts the zip file without validating the extracted file type. Allowing high privilege users such as admin to upload an arbitrary file like PHP, leading to RCE

  • CVE-2021-37770HigJun 30, 2022
    risk 0.47cvss 7.2epss 0.01

    Nucleus CMS v3.71 is affected by a file upload vulnerability. In this vulnerability, we can use upload to change the upload path to the path without the Htaccess file. Upload an Htaccess file and write it to AddType application / x-httpd-php.jpg. In this way, an attacker can…

  • CVE-2022-1939HigJun 20, 2022
    risk 0.47cvss 7.2epss 0.01

    The Allow svg files WordPress plugin before 1.1 does not properly validate uploaded files, which could allow high privilege users such as admin to upload PHP files even when they are not allowed to

  • CVE-2022-32433HigJun 15, 2022
    risk 0.47cvss 7.2epss 0.01

    itsourcecode Advanced School Management System v1.0 is vulnerable to Arbitrary code execution via ip/school/view/all_teacher.php.

  • CVE-2022-29651HigMay 25, 2022
    risk 0.47cvss 7.2epss 0.02

    An arbitrary file upload vulnerability in the Select Image function of Online Food Ordering System v1.0 allows attackers to execute arbitrary code via a crafted PHP file.

  • CVE-2021-41938HigMay 19, 2022
    risk 0.47cvss 7.2epss 0.01

    An issue was discovered in ShopXO CMS 2.2.0. After entering the management page, there is an arbitrary file upload vulnerability in three locations.

  • CVE-2022-30007HigMay 17, 2022
    risk 0.47cvss 7.2epss 0.01

    GXCMS V1.5 has a file upload vulnerability in the background. The vulnerability is the template management page. You can edit any template content and then rename to PHP suffix file, after calling PHP file can control the server.

  • CVE-2022-1409HigMay 16, 2022
    risk 0.47cvss 7.2epss 0.01

    The VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.5.8 does not properly validate images, allowing high privilege users such as administrators to upload PHP files disguised as images and containing malicious PHP code

  • CVE-2021-25119HigMay 16, 2022
    risk 0.47cvss 7.2epss 0.01

    The AGIL WordPress plugin through 1.0 accepts all zip files and automatically extracts the zip file without validating the extracted file type. Allowing high privilege users such as admin to upload an arbitrary file like PHP, leading to RCE

  • CVE-2022-29655HigMay 11, 2022
    risk 0.47cvss 7.2epss 0.01

    An arbitrary file upload vulnerability in the Upload Photos module of Wedding Management System v1.0 allows attackers to execute arbitrary code via a crafted PHP file.

  • CVE-2022-29318HigMay 11, 2022
    risk 0.47cvss 7.2epss 0.01

    An arbitrary file upload vulnerability in the New Entry module of Car Rental Management System v1.0 allows attackers to execute arbitrary code via a crafted PHP file.

  • CVE-2020-19228HigMay 11, 2022
    risk 0.47cvss 7.2epss 0.01

    An issue was found in bludit v3.13.0, unsafe implementation of the backup plugin allows attackers to upload arbitrary files.

  • CVE-2022-29001HigMay 3, 2022
    risk 0.47cvss 7.2epss 0.01

    In SpringBootMovie <=1.2, the uploaded file suffix parameter is not filtered, resulting in arbitrary file upload vulnerability

  • CVE-2022-1273HigMay 2, 2022
    risk 0.47cvss 7.2epss 0.01

    The Import WP WordPress plugin before 2.4.6 does not validate the imported file in some cases, allowing high privilege users such as admin to upload arbitrary files (such as PHP), leading to RCE

  • CVE-2022-1008HigApr 11, 2022
    risk 0.47cvss 7.2epss 0.02

    The One Click Demo Import WordPress plugin before 3.1.0 does not validate the imported file, allowing high privilege users such as admin to upload arbitrary files (such as PHP) even when FILE_MODS and FILE_EDIT are disallowed

  • CVE-2022-27349HigApr 8, 2022
    risk 0.47cvss 7.2epss 0.02

    Social Codia SMS v1 was discovered to contain an arbitrary file upload vulnerability via addteacher.php. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.

  • CVE-2022-27061HigApr 8, 2022
    risk 0.47cvss 7.2epss 0.03

    AeroCMS v0.0.1 was discovered to contain an arbitrary file upload vulnerability via the Post Image function under the Admin panel. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.