VYPR

CWE-434

Unrestricted Upload of File with Dangerous Type

BaseDraftLikelihood: Medium

Description

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-1

CVEs mapped to this weakness (4,314)

page 47 of 216
  • CVE-2021-40940CriJun 15, 2022
    risk 0.64cvss 9.8epss 0.02

    Monstra 3.0.4 does not filter the case of php, which leads to an unrestricted file upload vulnerability.

  • CVE-2021-42675CriJun 14, 2022
    risk 0.64cvss 9.8epss 0.02

    Kreado Kreasfero 1.5 does not properly sanitize uploaded files to the media directory. One can upload a malicious PHP file and obtain remote code execution.

  • CVE-2022-32019CriJun 2, 2022
    risk 0.64cvss 9.8epss 0.02

    Car Rental Management System v1.0 is vulnerable to Arbitrary code execution via car-rental-management-system/admin/ajax.php?action=save_car.

  • CVE-2022-30506CriJun 2, 2022
    risk 0.64cvss 9.8epss 0.03

    An arbitrary file upload vulnerability was discovered in MCMS 5.2.7, allowing an attacker to execute arbitrary code through a crafted ZIP file.

  • CVE-2022-30423CriJun 2, 2022
    risk 0.64cvss 9.8epss 0.02

    Merchandise Online Store v1.0 by oretnom23 has an arbitrary code execution (RCE) vulnerability in the user profile upload point in the system information.

  • CVE-2022-24239CriJun 2, 2022
    risk 0.64cvss 9.8epss 0.01

    ACEweb Online Portal 3.5.065 was discovered to contain an unrestricted file upload vulnerability via attachments.awp.

  • CVE-2021-26634CriJun 2, 2022
    risk 0.64cvss 9.8epss 0.01

    SQL injection and file upload attacks are possible due to insufficient validation of input values in some parameters and variables of files compromising Maxboard, which may lead to arbitrary code execution or privilege escalation. Attackers can use these vulnerabilities to…

  • CVE-2021-42654CriMay 24, 2022
    risk 0.64cvss 9.8epss 0.02

    SiteServer CMS < V5.1 is affected by an unrestricted upload of a file with dangerous type (getshell), which could be used to execute arbitrary code.

  • CVE-2022-28104CriMay 20, 2022
    risk 0.64cvss 9.8epss 0.02

    Foxit PDF Editor v11.3.1 was discovered to contain an arbitrary file upload vulnerability.

  • CVE-2022-29354CriMay 16, 2022
    risk 0.64cvss 9.8epss 0.02

    An arbitrary file upload vulnerability in the file upload module of Keystone v4.2.1 allows attackers to execute arbitrary code via a crafted file.

  • CVE-2022-29353CriMay 16, 2022
    risk 0.64cvss 9.8epss 0.02

    An arbitrary file upload vulnerability in the file upload module of Graphql-upload v13.0.0 allows attackers to execute arbitrary code via a crafted filename.

  • CVE-2022-29351CriMay 16, 2022
    risk 0.64cvss 9.8epss 0.02

    An arbitrary file upload vulnerability in the file upload module of Tiddlywiki5 v5.2.2 allows attackers to execute arbitrary code via a crafted SVG file. Note: The vendor argues that this is not a legitimate issue and there is no vulnerability here.

  • CVE-2021-42967CriMay 13, 2022
    risk 0.64cvss 9.8epss 0.01

    Unrestricted file upload in /novel-admin/src/main/java/com/java2nb/common/controller/FileController.java in novel-plus all versions allows allows an attacker to upload malicious JSP files.

  • CVE-2022-30448CriMay 11, 2022
    risk 0.64cvss 9.8epss 0.02

    Hospital Management System in PHP with Source Code (HMS) 1.0 was discovered to contain a File upload vulnerability in treatmentrecord.php.

  • CVE-2022-28606CriMay 5, 2022
    risk 0.64cvss 9.8epss 0.01

    An arbitrary file upload vulnerability exists in Wenzhou Huoyin Information Technology Co., Ltd. BossCMS 1.0, which can be exploited by an attacker to gain control of the server.

  • CVE-2022-28120CriMay 5, 2022
    risk 0.64cvss 9.8epss 0.01

    Beijing Runnier Network Technology Co., Ltd Open virtual simulation experiment teaching management platform software 2.0 has a file upload vulnerability, which can be exploited by an attacker to gain control of the server.

  • CVE-2022-29347CriMay 4, 2022
    risk 0.64cvss 9.8epss 0.03

    An arbitrary file upload vulnerability in Web@rchiv 1.0 allows attackers to execute arbitrary commands via a crafted PHP file.

  • CVE-2022-28568CriMay 4, 2022
    risk 0.64cvss 9.8epss 0.03

    Sourcecodester Doctor's Appointment System 1.0 is vulnerable to File Upload to RCE via Image upload from the administrator panel. An attacker can obtain remote command execution just by knowing the path where the images are stored.

  • CVE-2021-43934CriApr 28, 2022
    risk 0.64cvss 9.8epss 0.01

    Elcomplus SmartPTT is vulnerable as the backup and restore system does not adequately validate upload requests, enabling a malicious user to potentially upload arbitrary files.

  • CVE-2021-41921CriApr 28, 2022
    risk 0.64cvss 9.8epss 0.02

    novel-plus V3.6.1 allows unrestricted file uploads. Unrestricted file suffixes and contents can lead to server attacks and arbitrary code execution.