VYPR

CWE-434

Unrestricted Upload of File with Dangerous Type

BaseDraftLikelihood: Medium

Description

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-1

CVEs mapped to this weakness (4,434)

page 55 of 222
  • CVE-2010-1433CriJun 21, 2021
    risk 0.64cvss 9.8epss 0.01

    Joomla! Core is prone to a vulnerability that lets attackers upload arbitrary files because the application fails to properly verify user-supplied input. An attacker can exploit this vulnerability to upload arbitrary code and run it in the context of the webserver process. This…

  • CVE-2021-24376CriJun 21, 2021
    risk 0.64cvss 9.8epss 0.04

    The Autoptimize WordPress plugin before 2.7.8 attempts to delete malicious files (such as .php) form the uploaded archive via the "Import Settings" feature, after its extraction. However, the extracted folders are not checked and it is possible to upload a zip which contained a…

  • CVE-2020-19510CriJun 21, 2021
    risk 0.64cvss 9.8epss 0.01

    Textpattern 4.7.3 contains an aribtrary file load via the file_insert function in include/txp_file.php.

  • CVE-2013-20002CriJun 17, 2021
    risk 0.64cvss 9.8epss 0.04

    Elemin allows remote attackers to upload and execute arbitrary PHP code via the Themify framework (before 1.2.2) wp-content/themes/elemin/themify/themify-ajax.php file.

  • CVE-2020-35760CriJun 16, 2021
    risk 0.64cvss 9.8epss 0.02

    bloofoxCMS 0.5.2.1 is infected with Unrestricted File Upload that allows attackers to upload malicious files (ex: php files).

  • CVE-2021-26473CriJun 8, 2021
    risk 0.64cvss 9.8epss 0.02

    In VembuBDR before 4.2.0.1 and VembuOffsiteDR before 4.2.0.1 the http API located at /sgwebservice_o.php action logFilePath allows an attacker to write arbitrary files in the context of the web server process. These files can then be executed remotely by calling the file via the…

  • CVE-2020-35442CriJun 2, 2021
    risk 0.64cvss 9.8epss 0.02

    FDCMS (also known as Fangfa Content Management System) 4.0 allows remote attackers to get a webshell in the background via Front/lib/Action/FindexAction.class.php.

  • CVE-2021-31703CriMay 29, 2021
    risk 0.64cvss 9.8epss 0.01

    Frontier ichris through 5.18 allows users to upload malicious executable files that might later be downloaded and run by any client user.

  • CVE-2021-27459CriMay 20, 2021
    risk 0.64cvss 9.8epss 0.02

    A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The webserver of the affected products allows unvalidated files to be uploaded, which an attacker could utilize to execute arbitrary code.

  • CVE-2021-20721CriMay 20, 2021
    risk 0.64cvss 9.8epss 0.02

    KonaWiki2 versions prior to 2.2.4 allows a remote attacker to upload arbitrary files via unspecified vectors. If the file contains PHP scripts, arbitrary code may be executed.

  • CVE-2020-18166CriMay 14, 2021
    risk 0.64cvss 9.8epss 0.02

    Unrestricted File Upload in LAOBANCMS v2.0 allows remote attackers to upload arbitrary files by attaching a file with a ".jpg.php" extension to the component "admin/wenjian.php?wj=../templets/pc".

  • CVE-2020-28063CriMay 13, 2021
    risk 0.64cvss 9.8epss 0.01

    A file upload issue exists in all versions of ArticleCMS which allows malicious users to getshell.

  • CVE-2020-20092CriMay 13, 2021
    risk 0.64cvss 9.8epss 0.01

    File Upload vulnerability exists in ArticleCMS 1.0 via the image upload feature at /admin by changing the Content-Type to image/jpeg and placing PHP code after the JPEG data, which could let a remote malicious user execute arbitrary PHP code.

  • CVE-2020-23790CriMay 12, 2021
    risk 0.64cvss 9.8epss 0.02

    An Arbitrary File Upload vulnerability was discovered in the Golo Laravel theme v 1.1.5.

  • CVE-2021-32089CriMay 11, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered on Zebra (formerly Motorola Solutions) Fixed RFID Reader FX9500 devices. An unauthenticated attacker can upload arbitrary files to the filesystem that can then be accessed through the web interface. This can lead to information disclosure and code…

  • CVE-2021-31737CriMay 6, 2021
    risk 0.64cvss 9.8epss 0.04

    emlog v5.3.1 and emlog v6.0.0 have a Remote Code Execution vulnerability due to upload of database backup file in admin/data.php.

  • CVE-2021-24236CriMay 6, 2021
    risk 0.64cvss 9.8epss 0.07

    The Imagements WordPress plugin through 1.2.5 allows images to be uploaded in comments, however only checks for the Content-Type in the request to forbid dangerous files. This allows unauthenticated attackers to upload arbitrary files by using a valid image Content-Type along…

  • CVE-2020-19113CriMay 6, 2021
    risk 0.64cvss 9.8epss 0.03

    Arbitrary File Upload vulnerability in Online Book Store v1.0 in admin_add.php, which may lead to remote code execution.

  • CVE-2020-23083CriMay 3, 2021
    risk 0.64cvss 9.8epss 0.04

    Unrestricted File Upload in JEECG v4.0 and earlier allows remote attackers to execute arbitrary code or gain privileges by uploading a crafted file to the component "jeecgFormDemoController.do?commonUpload".

  • CVE-2020-21452CriApr 29, 2021
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in uniview ISC2500-S. This is an upload vulnerability where an attacker can upload malicious code via /Interface/DevManage/EC.php?cmd=upload