VYPR

CWE-434

Unrestricted Upload of File with Dangerous Type

BaseDraftLikelihood: Medium

Description

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-1

CVEs mapped to this weakness (4,339)

page 190 of 217
  • CVE-2025-14938MedApr 4, 2026
    risk 0.34cvss 5.3epss 0.00

    The Listeo Core plugin for WordPress is vulnerable to unauthenticated arbitrary media upload in all versions up to, and including, 2.0.27 via the "listeo_core_handle_dropped_media" function. This is due to missing authorization and capability checks on the AJAX endpoint handling…

  • CVE-2026-1879MedApr 1, 2026
    risk 0.34cvss 6.3epss 0.00

    A vulnerability was detected in Harvard University IQSS Dataverse up to 6.8. This affects an unknown function of the file /ThemeAndWidgets.xhtml of the component Theme Customization. Performing a manipulation of the argument uploadLogo results in unrestricted upload. Remote…

  • CVE-2026-30280MedMar 31, 2026
    risk 0.34cvss 5.3epss 0.00

    An arbitrary file overwrite vulnerability in RAREPROB SOLUTIONS PRIVATE LIMITED Video player Play All Videos v1.0.135 allows attackers to overwrite critical internal files via the file import process, leading to arbtrary code execution or information exposure.

  • CVE-2026-1969MedMar 23, 2026
    risk 0.34cvss 5.3epss 0.00

    The trx_addons WordPress plugin before 2.38.5 does not correctly validate file types in one of its AJAX action, allowing unauthenticated users to upload arbitrary file. This is due to an incorrect fix of CVE-2024-13448

  • CVE-2026-3187MedFeb 25, 2026
    risk 0.34cvss 6.3epss 0.00

    A vulnerability was identified in feiyuchuixue sz-boot-parent up to 1.3.2-beta. Affected by this issue is some unknown functionality of the file /api/admin/sys-file/upload of the component API Endpoint. Such manipulation leads to unrestricted upload. The attack may be launched…

  • CVE-2025-12500MedFeb 19, 2026
    risk 0.34cvss 5.3epss 0.00

    The Checkout Field Manager (Checkout Manager) for WooCommerce plugin for WordPress is vulnerable to unauthenticated limited file upload in all versions up to, and including, 7.8.1. This is due to the plugin not properly verifying that a user is authorized to perform file upload…

  • CVE-2025-62182MedJan 13, 2026
    risk 0.34cvss epss 0.00

    Pega Customer Service Framework versions 8.7.0 through 25.1.0 are affected by a Unrestricted file upload vulnerability, where a privileged user could potentially upload a malicious file.

  • CVE-2025-66908MedDec 19, 2025
    risk 0.34cvss 5.3epss 0.00

    Turms AI-Serving module v0.10.0-SNAPSHOT and earlier contains an improper file type validation vulnerability in the OCR image upload functionality. The OcrController in turms-ai-serving/src/main/java/im/turms/ai/domain/ocr/controller/OcrController.java uses the…

  • CVE-2025-34330MedNov 19, 2025
    risk 0.34cvss 5.3epss 0.00

    AudioCodes Fax Server and Auto-Attendant IVR appliances versions up to and including 2.6.23 include a web administration component (F2MAdmin) that exposes an unauthenticated prompt upload endpoint at AudioCodes_files/utils/IVR/diagram/ajaxPromptUploadFile.php. The script…

  • CVE-2025-40678MedSep 18, 2025
    risk 0.34cvss epss 0.00

    Unrestricted upload vulnerability for dangerous file types on Summar Software´s Portal del Empleado. This vulnerability allows an attacker to upload a dangerous file type by sending a POST request using the parameter “cctl00$ContentPlaceHolder1$fuAdjunto” in…

  • CVE-2025-46080MedMay 29, 2025
    risk 0.34cvss 5.3epss 0.00

    HuoCMS V3.5.1 has a File Upload Vulnerability. An attacker can exploit this flaw to bypass whitelist restrictions and craft malicious files with specific suffixes, thereby gaining control of the server.

  • CVE-2025-46078MedMay 29, 2025
    risk 0.34cvss 5.3epss 0.00

    HuoCMS V3.5.1 and before is vulnerable to file upload, which allows attackers to take control of the target server

  • CVE-2025-31339MedApr 17, 2025
    risk 0.34cvss epss 0.00

    An unrestricted upload of file with dangerous type vulnerability in the course management function of Wisdom Master Pro versions 5.0 through 5.2 allows remote authenticated users to craft a malicious file.

  • CVE-2024-43662MedJan 9, 2025
    risk 0.34cvss epss 0.01

    The .exe or .exe CGI binary can be used to upload arbitrary files to /tmp/upload/ or /tmp/ respectively as any user, although the user interface for uploading files is only shown to the iocadmin user. This issue affects Iocharger firmware for AC models…

  • CVE-2024-40555MedJul 15, 2024
    risk 0.34cvss 5.3epss 0.00

    Tmall_demo v2024.07.03 was discovered to contain an arbitrary file upload vulnerability.

  • CVE-2020-36825MedMar 24, 2024
    risk 0.34cvss 6.3epss 0.00

    ** UNSUPPORTED WHEN ASSIGNED ** ** DISPUTED ** A vulnerability has been found in cyberaz0r WebRAT up to 20191222 and classified as critical. This vulnerability affects the function download_file of the file Server/api.php. The manipulation of the argument name leads to…

  • CVE-2011-10004MedOct 17, 2023
    risk 0.34cvss 6.3epss 0.01

    A vulnerability was found in reciply Plugin up to 1.1.7 on WordPress. It has been rated as critical. This issue affects some unknown processing of the file uploadImage.php. The manipulation leads to unrestricted upload. The attack may be initiated remotely. Upgrading to version…

  • CVE-2023-38330MedAug 2, 2023
    risk 0.34cvss 5.3epss 0.00

    OXID eShop Enterprise Edition 6.5.0 – 6.5.2 before 6.5.3 allows uploading files with modified headers in the administration area. An attacker can upload a file with a modified header to create a HTTP Response Splitting attack.

  • CVE-2014-125104MedJun 1, 2023
    risk 0.34cvss 6.3epss 0.01

    A vulnerability was found in VaultPress Plugin up to 1.6.0 on WordPress. It has been declared as critical. Affected by this vulnerability is the function protect_aioseo_ajax of the file class.vaultpress-hotfixes.php of the component MailPoet Plugin. The manipulation leads to…

  • CVE-2023-32689MedMay 30, 2023
    risk 0.34cvss 6.3epss 0.01

    Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Versions prior to 5.4.4 and 6.1.1 are vulnerable to a phishing attack vulnerability that involves a user uploading malicious files. A malicious user could upload an HTML file…