VYPR

CWE-434

Unrestricted Upload of File with Dangerous Type

BaseDraftLikelihood: Medium

Description

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-1

CVEs mapped to this weakness (4,297)

page 209 of 215
  • CVE-2026-55633HigJul 7, 2026
    risk 0.00cvss epss 0.01

    DataEase is an open source data visualization and analysis tool. Prior to 2.10.24, a bypass of the H2 zip protocol and file dropper fix allows an authenticated attacker to upload a zip archive disguised with a .ttf extension through FontManage.saveFile and then exploit it…

  • CVE-2026-23698HigJul 7, 2026
    risk 0.00cvss 7.2epss 0.01

    Vtiger CRM through 8.4.0 contains an authenticated remote code execution vulnerability in the admin module import feature that allows administrator-level attackers to upload arbitrary PHP files by submitting a crafted zip archive through the ModuleManager import function, which…

  • CVE-2026-23697HigJul 7, 2026
    risk 0.00cvss 8.8epss 0.01

    Vtiger CRM before 8.4.0 contains an authenticated file upload vulnerability that allows low-privileged users to achieve remote code execution by uploading a .phar file containing arbitrary PHP code through the Documents module, bypassing the extension denylist in config.inc.php…

  • CVE-2026-42145LowJul 7, 2026
    risk 0.00cvss 3.1epss 0.00

    Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.474, the file upload endpoint (app/Http/Controllers/UploadController.php) for database backup restore uploads did not enforce file type or size validation,…

  • CVE-2026-9182CriJul 6, 2026
    risk 0.00cvss 9.8epss 0.00

    Esri ArcGIS Server contains an unrestricted file upload vulnerability. An unauthenticated attacker could exploit this issue by uploading a crafted file to the affected endpoint. Successful exploitation could allow arbitrary file upload, potentially allowing for other attacks.…

  • CVE-2026-24014CriJul 6, 2026
    risk 0.00cvss 9.8epss 0.01

    Apache IoTDB DataNode’s internal RPC interface for creating Trigger instances uses the uploaded Trigger JAR name to build a file path without sufficient validation. If the internal DataNode RPC port is exposed to an untrusted network, an attacker may use path traversal…

  • CVE-2026-14777MedJul 6, 2026
    risk 0.00cvss 6.3epss 0.00

    A weakness has been identified in SourceCodester Onlne Examination & Learning Management System 1.0. Affected by this issue is some unknown functionality of the file /announcements.php. Executing a manipulation can lead to unrestricted upload. The attack can be executed…

  • CVE-2026-14776MedJul 5, 2026
    risk 0.00cvss 6.3epss 0.00

    A security flaw has been discovered in SourceCodester Onlne Examination & Learning Management System 1.0. Affected by this vulnerability is the function pathinfo of the file /upload_files.php of the component Filename Extension. Performing a manipulation results in unrestricted…

  • CVE-2026-14775MedJul 5, 2026
    risk 0.00cvss 6.3epss 0.00

    A vulnerability was identified in SourceCodester Onlne Examination & Learning Management System 1.0. Affected is an unknown function of the file /process_lesson.php. Such manipulation of the argument user_id leads to unrestricted upload. The attack may be launched remotely. The…

  • CVE-2026-14736HigJul 5, 2026
    risk 0.00cvss 7.3epss 0.00

    A vulnerability was found in Ruijie RG-UAC up to 1.0-R1.8.2.p5. The impacted element is an unknown function of the file user_auth_commit.php. Performing a manipulation of the argument upload_image results in unrestricted upload. The attack is possible to be carried out remotely.…

  • CVE-2026-14698MedJul 5, 2026
    risk 0.00cvss 6.3epss 0.00

    A security flaw has been discovered in SourceCodester Syllabus-Aligned Learning Management and Examination System 1.0. Impacted is an unknown function of the file upload_files.php. Performing a manipulation results in unrestricted upload. The attack may be initiated remotely.…

  • CVE-2024-14037CriJul 2, 2026
    risk 0.00cvss 9.8epss 0.01

    Redsea Cloud eHR contains an arbitrary file upload vulnerability that allows unauthenticated attackers to achieve remote code execution by uploading malicious files through the PtFjk.mob servlet endpoint. Attackers can submit a multipart POST request with a JSP webshell…

  • CVE-2022-50973CriJul 2, 2026
    risk 0.00cvss 9.8epss 0.01

    Yonyou KSOA 9.0 contains an unauthenticated arbitrary file upload vulnerability in the com.sksoft.bill.ImageUpload servlet that allows unauthenticated attackers to upload arbitrary files by submitting a POST request with attacker-controlled filepath and filename parameters…

  • CVE-2026-5524CriJul 2, 2026
    risk 0.00cvss 9.8epss 0.01

    The Divi Form Builder plugin for WordPress is vulnerable to Arbitrary File Upload leading to Remote Code Execution in all versions up to and including 5.1.8. This is due to insufficient file extension validation in the do_image_upload() function where user-supplied input from…

  • CVE-2026-27419CriJul 2, 2026
    risk 0.00cvss 9.9epss 0.00

    Subscriber Arbitrary File Upload in Zegen <= 1.1.9 versions.

  • CVE-2026-53909MedJul 1, 2026
    risk 0.00cvss 6.5epss 0.00

    MCO does not correctly validate types of uploaded files. File upload validation functionality relies only on client-side checks, which can be bypassed. An authorized, low-privileged attacker can upload files with arbitrary types to the server. Because vendor contact attempts…

  • CVE-2026-48283CriJun 30, 2026
    risk 0.00cvss 10.0epss 0.02

    ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction. Scope…

  • CVE-2026-48276CriJun 30, 2026
    risk 0.00cvss 10.0epss 0.05

    ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction. Scope…

  • CVE-2026-53691HigJun 30, 2026
    risk 0.00cvss epss 0.00

    An Unrestricted File Upload vulnerability in Redeight CMS version 1.0 allows authenticated attackers to achieve Remote Code Execution via the POST "/admin/index.php?module=pages&mode=FileAdd" endpoint. The application fails to validate file extensions and MIME types, permitting…

  • CVE-2025-24815HigJun 30, 2026
    risk 0.00cvss 7.8epss 0.00

    Nokia MantaRay NM is subject to an unrestricted file upload vulnerability due to insufficient file type validation. Successful exploitation could allow an authenticated attacker to upload malicious files onto the system.