VYPR

CWE-434

Unrestricted Upload of File with Dangerous Type

BaseDraftLikelihood: Medium

Description

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-1

CVEs mapped to this weakness (4,297)

page 206 of 215
  • CVE-2026-67206HigJul 30, 2026
    risk 0.00cvss 8.8epss 0.00

    Wolf CMS through 0.8.3.1 contains a remote code execution vulnerability in FileManagerController that allows authenticated attackers to create arbitrary PHP files by exploiting missing file extension validation in the create_file() and save() functions. Attackers with the…

  • CVE-2026-44103MedJul 30, 2026
    risk 0.00cvss 5.3epss 0.00

    An unauthenticated remote attacker can inject malicious firmware into the internal charging module because the JupiCore service transmits firmware updates without performing integrity or verification check. Successful exploitation may compromise the integrity of the affected…

  • CVE-2026-44097HigJul 30, 2026
    risk 0.00cvss 7.1epss 0.00

    A low-privileged remote attacker with "operator" access can upload arbitrary files via the REST endpoint intended for firmware updates, resulting in persistent storage of attacker-controlled files and potentially exhausting resources, which might lead to Denial-of-Service.

  • CVE-2026-16610CriJul 30, 2026
    risk 0.00cvss 9.8epss 0.01

    The Admin and Site Enhancements (ASE) Pro plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 8.9.0 via the recursive_html function. This is due to the frontend save handler enforces only a publicly emitted nonce with no…

  • CVE-2026-14270HigJul 29, 2026
    risk 0.00cvss 8.8epss 0.01

    The Extra Checkout Options (addon for Extra Product Options & Add-Ons for WooCommerce) plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.3.2. This is due to missing authorization and nonce validation in the eco_save_settings()…

  • CVE-2026-63228LowJul 29, 2026
    risk 0.00cvss 2.6epss 0.00

    An unrestricted image upload vulnerability in Koollab LMS allowed an authenticated attacker to upload malicious content disguised as an image file via the feedback mail registration endpoint, potentially enabling further attacks on the server.

  • CVE-2026-63227CriJul 29, 2026
    risk 0.00cvss 9.9epss 0.00

    An unrestricted SCORM file upload vulnerability in Koollab LMS allowed an authenticated module designer to upload a SCORM package containing a PHP webshell to a publicly accessible directory and execute arbitrary code on the server.

  • CVE-2026-13714CriJul 27, 2026
    risk 0.00cvss 9.8epss 0.00

    The Realtyna Organic IDX plugin + WPL Real Estate WordPress plugin before 5.3.0 does not validate the type of uploaded files, and its file upload functionality is gated only by an API that is enabled by default and authenticated with hardcoded credentials shipped identically…

  • CVE-2026-10818HigJul 25, 2026
    risk 0.00cvss 8.1epss 0.00

    The WPForms Pro plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 1.10.1.1 via the ajax_chunk_upload_finalize function. This is due to the file type validation occurring after chunk metadata and file contents have already been…

  • CVE-2026-24727CriJul 24, 2026
    risk 0.00cvss epss 0.01

    An unrestricted upload of file with dangerous type vulnerability in the e-paper draft upload function of SUNNET Corporate Training Management System through v10.3 allows remote authenticated users with administrator privileges to execute arbitrary commands by uploading a crafted…

  • CVE-2026-65461CriJul 23, 2026
    risk 0.00cvss 9.1epss 0.00

    Administrator Arbitrary File Upload in Really Simple CSV Importer <= 1.3 versions.

  • CVE-2026-65455CriJul 23, 2026
    risk 0.00cvss 9.1epss 0.00

    Administrator Arbitrary File Upload in MapSVG <= 8.14.0 versions.

  • CVE-2026-27064CriJul 23, 2026
    risk 0.00cvss 9.1epss 0.00

    Editor Arbitrary File Upload in Mailster <= 4.1.17 versions.

  • CVE-2026-14282CriJul 23, 2026
    risk 0.00cvss 9.8epss 0.01

    The GoDAM – Organize WordPress Media Library & File Manager with Unlimited Folders for Images, Videos & more plugin for WordPress is vulnerable to arbitrary file uploads in versions up to, and including, 1.12.2. This is due to insufficient file type validation in the…

  • CVE-2026-63048CriJul 22, 2026
    risk 0.00cvss epss 0.00

    Joomla Extension - joomlack.fr - Improper access control in Page Builder CK < 3.6.2 - The Joomla extension Page Builder CK is vulnerable to an authenticated arbitrary file upload, leading to RCE.

  • CVE-2026-16451MedJul 21, 2026
    risk 0.00cvss 6.3epss 0.00

    A security flaw has been discovered in zsadmin2025 ZS-Admin up to b52e14536d59fda11e56e2536a1c32e82a38cead. This impacts an unknown function of the file /api/system/file/upload of the component com.zs.file.controller.SysFileController. Performing a manipulation of the argument…

  • CVE-2026-16447HigJul 21, 2026
    risk 0.00cvss 7.3epss 0.01

    A vulnerability has been found in D-Link DNS-320 1.0.2. Impacted is an unknown function of the file /web/jquery/uploader/multi_uploadify.php. The manipulation of the argument Filedata[] leads to unrestricted upload. Remote exploitation of the attack is possible. The exploit has…

  • CVE-2026-16332HigJul 21, 2026
    risk 0.00cvss 7.3epss 0.01

    A vulnerability was detected in D-Link DNS-320 1.0.2. This impacts an unknown function of the file /mydlink/multi_uploadify.php. Performing a manipulation of the argument Filedata[] results in unrestricted upload. The attack is possible to be carried out remotely. The exploit is…

  • CVE-2026-16331HigJul 21, 2026
    risk 0.00cvss 7.3epss 0.01

    A security vulnerability has been detected in D-Link DNS-320 1.0.2. This affects an unknown function of the file /web/function/save_ajax.php. Such manipulation of the argument Malicious Handler leads to unrestricted upload. The attack can be executed remotely. The exploit has…

  • CVE-2026-16330HigJul 21, 2026
    risk 0.00cvss 7.3epss 0.01

    A weakness has been identified in D-Link DNS-320 1.0.2. The impacted element is an unknown function of the file /web/jquery/uploader/uploadify.php. This manipulation of the argument https:/ucn9h68n9289.feishu.cn/wiki/JJcTwHz7aiKeq6kSItMcoeSUnMc?from=from_copylink causes…