VYPR

CWE-434

Unrestricted Upload of File with Dangerous Type

BaseDraftLikelihood: Medium

Description

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-1

CVEs mapped to this weakness (4,316)

page 153 of 216
  • CVE-2023-5146MedSep 25, 2023
    risk 0.44cvss 6.3epss 0.33

    ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DAR-7000 and DAR-8000 up to 20151231 and classified as critical. Affected by this issue is some unknown functionality of the file /sysmanage/updatelib.php. The manipulation of the argument file_upload leads to…

  • CVE-2023-5145MedSep 25, 2023
    risk 0.44cvss 6.3epss 0.34

    ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability has been found in D-Link DAR-7000 up to 20151231 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /sysmanage/licence.php. The manipulation of the argument file_upload leads to…

  • CVE-2023-43619HigSep 20, 2023
    risk 0.44cvss 7.8epss 0.00

    An issue was discovered in Croc through 9.6.5. A sender may send dangerous new files to a receiver, such as executable content or a .ssh/authorized_keys file.

  • CVE-2023-30962MedSep 12, 2023
    risk 0.44cvss 6.8epss 0.00

    The Gotham Cerberus service was found to have a stored cross-site scripting (XSS) vulnerability that could have allowed an attacker with access to Gotham to launch attacks against other users. This vulnerability is resolved in Cerberus 100.230704.0-27-g031dd58 .

  • CVE-2023-3187MedJun 9, 2023
    risk 0.44cvss 6.3epss 0.03

    A vulnerability, which was classified as critical, has been found in PHPGurukul Teachers Record Management System 1.0. Affected by this issue is some unknown functionality of the file /changeimage.php of the component Profile Picture Handler. The manipulation of the argument…

  • CVE-2023-28700MedJun 2, 2023
    risk 0.44cvss 6.8epss 0.00

    OMICARD EDM backend system’s file uploading function does not restrict upload of file with dangerous type. A local area network attacker with administrator privileges can exploit this vulnerability to upload and run arbitrary executable files to perform arbitrary system…

  • CVE-2023-2246MedApr 23, 2023
    risk 0.44cvss 6.3epss 0.04

    A vulnerability has been found in SourceCodester Online Pizza Ordering System 1.0 and classified as critical. This vulnerability affects unknown code of the file admin/ajax.php?action=save_settings. The manipulation of the argument img leads to unrestricted upload. The attack…

  • CVE-2023-1826MedApr 4, 2023
    risk 0.44cvss 6.3epss 0.04

    A vulnerability, which was classified as critical, was found in SourceCodester Online Computer and Laptop Store 1.0. This affects an unknown part of the file php-ocls\admin\system_info\index.php. The manipulation of the argument img leads to unrestricted upload. It is possible…

  • CVE-2022-43192MedNov 17, 2022
    risk 0.44cvss 6.7epss 0.00

    An arbitrary file upload vulnerability in the component /dede/file_manage_control.php of Dedecms v5.7.101 allows attackers to execute arbitrary code via a crafted PHP file. This vulnerability is related to an incomplete fix for CVE-2022-40886.

  • CVE-2022-1565HigJul 18, 2022
    risk 0.44cvss 7.2epss 0.15

    The plugin WP All Import is vulnerable to arbitrary file uploads due to missing file type validation via the wp_all_import_get_gz.php file in versions up to, and including, 3.6.7. This makes it possible for authenticated attackers, with administrator level permissions and above,…

  • CVE-2022-2297MedJul 12, 2022
    risk 0.44cvss 6.3epss 0.03

    A vulnerability, which was classified as critical, was found in SourceCodester Clinics Patient Management System 2.0. Affected is an unknown function of the file /pms/update_user.php?user_id=1. The manipulation of the argument profile_picture with the input <?php phpinfo();?>…

  • CVE-2021-35532MedJun 7, 2022
    risk 0.44cvss 6.7epss 0.00

    A vulnerability exists in the file upload validation part of Hitachi Energy TXpert Hub CoreTec 4 product. The vulnerability allows an attacker or malicious agent who manages to gain access to the system and obtain an account with sufficient privilege to upload a malicious…

  • CVE-2022-29623HigMay 16, 2022
    risk 0.44cvss 7.8epss 0.01

    An arbitrary file upload vulnerability in the file upload module of Express Connect-Multiparty 2.2.0 allows attackers to execute arbitrary code via a crafted PDF file. NOTE: the Supplier has not verified this vulnerability report.

  • CVE-2022-0409HigFeb 19, 2022
    risk 0.44cvss 7.8epss 0.01

    Unrestricted Upload of File with Dangerous Type in Packagist showdoc/showdoc prior to 2.10.2.

  • CVE-2022-0263HigJan 18, 2022
    risk 0.44cvss 7.8epss 0.01

    Unrestricted Upload of File with Dangerous Type in Packagist pimcore/pimcore prior to 10.2.7.

  • CVE-2021-24490MedSep 13, 2021
    risk 0.44cvss 6.8epss 0.01

    The Email Artillery (MASS EMAIL) WordPress plugin through 4.1 does not properly check the uploaded files from the Import Emails feature, allowing arbitrary files to be uploaded. Furthermore, the plugin is also lacking any CSRF check, allowing such issue to be exploited via a…

  • CVE-2021-29699MedJul 15, 2021
    risk 0.44cvss 6.8epss 0.01

    IBM Security Verify Access Docker 10.0.0 could allow a remote priviled user to upload arbitrary files with a dangerous file type that could be excuted by an user. IBM X-Force ID: 200600.

  • CVE-2020-4928MedJan 4, 2021
    risk 0.44cvss 6.7epss 0.00

    IBM Cloud Pak System 2.3 could allow a local privileged attacker to upload arbitrary files. By intercepting the request and modifying the file extention, the attacker could execute arbitrary code on the server. IBM X-Force ID: 191705.

  • CVE-2018-20926MedAug 1, 2019
    risk 0.44cvss 6.7epss 0.00

    cPanel before 70.0.23 allows local privilege escalation via the WHM Locale XML Upload interface (SEC-380).

  • CVE-2018-20925MedAug 1, 2019
    risk 0.44cvss 6.7epss 0.00

    cPanel before 70.0.23 allows local privilege escalation via the WHM Legacy Language File Upload interface (SEC-379).