CWE-434
Unrestricted Upload of File with Dangerous Type
Description
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.
Hierarchy (View 1000)
Parents
Children
none
Related attack patterns (CAPEC)
CAPEC-1
CVEs mapped to this weakness (4,434)
page 69 of 222| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-6220 | Cri | 0.60 | 9.8 | 0.35 | Jul 17, 2024 | The 简数采集器 (Keydatas) plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the keydatas_downloadImages function in all versions up to, and including, 2.5.2. This makes it possible for unauthenticated attackers to upload… | ||
| CVE-2023-50386 | Hig | 0.60 | 8.8 | 0.84 | Feb 9, 2024 | Improper Control of Dynamically-Managed Code Resources, Unrestricted Upload of File with Dangerous Type, Inclusion of Functionality from Untrusted Control Sphere vulnerability in Apache Solr.This issue affects Apache Solr: from 6.0.0 through 8.11.2, from 9.0.0 before 9.4.1. In… | ||
| CVE-2023-50564 | Hig | 0.60 | 8.8 | 0.29 | Dec 14, 2023 | An arbitrary file upload vulnerability in the component /inc/modules_install.php of Pluck-CMS v4.7.18 allows attackers to execute arbitrary code via uploading a crafted ZIP file. | ||
| CVE-2021-43421 | Cri | 0.60 | 9.8 | 0.43 | Apr 7, 2022 | A File Upload vulnerability exists in Studio-42 elFinder 2.0.4 to 2.1.59 via connector.minimal.php, which allows a remote malicious user to upload arbitrary files and execute PHP code. | ||
| CVE-2021-42362 | Hig | 0.60 | 8.8 | 0.80 | Nov 17, 2021 | The WordPress Popular Posts WordPress plugin is vulnerable to arbitrary file uploads due to insufficient input file type validation found in the ~/src/Image.php file which makes it possible for attackers with contributor level access and above to upload malicious files that can… | ||
| CVE-2021-20130 | Hig | 0.60 | 8.8 | 0.33 | Oct 13, 2021 | ManageEngine ADManager Plus Build 7111 contains a post-authentication remote code execution vulnerability due to improperly validated file uploads in the PasswordExpiry interface. | ||
| CVE-2020-36167 | Cri | 0.60 | 9.3 | 0.00 | Jan 6, 2021 | An issue was discovered in the server in Veritas Backup Exec through 16.2, 20.6 before hotfix 298543, and 21.1 before hotfix 657517. On start-up, it loads the OpenSSL library from the Installation folder. This library in turn attempts to load the /usr/local/ssl/openssl.cnf… | ||
| CVE-2020-24407 | Cri | 0.60 | 9.1 | 0.05 | Nov 9, 2020 | Magento versions 2.4.0 and 2.3.5p1 (and earlier) are affected by an unsafe file upload vulnerability that could result in arbitrary code execution. This vulnerability could be abused by authenticated users with administrative permissions to the System/Data and Transfer/Import… | ||
| CVE-2020-0932 | Hig | 0.60 | 8.8 | 0.31 | Apr 15, 2020 | A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0920, CVE-2020-0929,… | ||
| CVE-2019-7669 | Hig | 0.60 | 8.8 | 0.31 | Jul 1, 2019 | Prima Systems FlexAir, Versions 2.3.38 and prior. Improper validation of file extensions when uploading files could allow a remote authenticated attacker to upload and execute malicious applications within the application’s web root with root privileges. | ||
| CVE-2019-8942 | Hig | 0.60 | 8.8 | 0.83 | Feb 20, 2019 | WordPress before 4.9.9 and 5.x before 5.0.1 allows remote code execution because an _wp_attached_file Post Meta entry can be changed to an arbitrary string, such as one ending with a .jpg?file.php substring. An attacker with author privileges can execute arbitrary code by… | ||
| CVE-2018-11736 | Cri | 0.60 | 9.8 | 0.09 | Jun 5, 2018 | An issue was discovered in Pluck before 4.7.7-dev2. /data/inc/images.php allows remote attackers to upload and execute arbitrary PHP code by using the image/jpeg content type for a .htaccess file. | ||
| CVE-2017-14840 | Hig | 0.60 | 8.8 | 0.04 | Sep 28, 2017 | TeamWork TicketPlus allows Arbitrary File Upload in updateProfile. | ||
| CVE-2017-14839 | Hig | 0.60 | 8.8 | 0.04 | Sep 28, 2017 | TeamWork Photo Fusion allows Arbitrary File Upload in changeAvatar and changeCover. | ||
| CVE-2017-14838 | Hig | 0.60 | 8.8 | 0.04 | Sep 28, 2017 | TeamWork Job Links allows Arbitrary File Upload in profileChange and coverChange. | ||
| CVE-2026-50093 | Cri | 0.59 | 9.0 | 0.00 | Sep 8, 2026 | A vulnerability has been identified in Siveillance Control Pro V3.0 (All versions < V3.0.12.2173), Siveillance Control Pro V4.0 (All versions < V4.0.9.2178), Siveillance Control V3.0 (All versions < V3.0.22.2177), Siveillance Control V4.0 (All versions < V4.0.11.2177). A… | ||
| CVE-2026-78274 | Cri | 0.59 | 9.1 | 0.00 | Aug 27, 2026 | Editor Arbitrary File Upload in Fluent Boards Pro <= 2.0.11 versions. | ||
| CVE-2026-66600 | Cri | 0.59 | 9.1 | 0.00 | Aug 20, 2026 | Author Arbitrary File Upload in Media LIbrary Assistant <= 3.39 versions. | ||
| CVE-2026-32475 | Cri | 0.59 | 9.0 | 0.02 | Aug 19, 2026 | Unrestricted Upload of File with Dangerous Type vulnerability in Elementor Elementor Pro allows Using Malicious Files. This issue affects Elementor Pro: from n/a through 4.2.1. | ||
| CVE-2026-3418 | — | Cri | 0.59 | 9.1 | 0.01 | Aug 6, 2026 | The System REST API accepts user-supplied file uploads without enforcing sufficient validation on the file type or destination, allowing files to be written to arbitrary server-accessible locations. Exploitation requires authenticated administrative access with publisher… |
- risk 0.60cvss 9.8epss 0.35
The 简数采集器 (Keydatas) plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the keydatas_downloadImages function in all versions up to, and including, 2.5.2. This makes it possible for unauthenticated attackers to upload…
- risk 0.60cvss 8.8epss 0.84
Improper Control of Dynamically-Managed Code Resources, Unrestricted Upload of File with Dangerous Type, Inclusion of Functionality from Untrusted Control Sphere vulnerability in Apache Solr.This issue affects Apache Solr: from 6.0.0 through 8.11.2, from 9.0.0 before 9.4.1. In…
- risk 0.60cvss 8.8epss 0.29
An arbitrary file upload vulnerability in the component /inc/modules_install.php of Pluck-CMS v4.7.18 allows attackers to execute arbitrary code via uploading a crafted ZIP file.
- risk 0.60cvss 9.8epss 0.43
A File Upload vulnerability exists in Studio-42 elFinder 2.0.4 to 2.1.59 via connector.minimal.php, which allows a remote malicious user to upload arbitrary files and execute PHP code.
- risk 0.60cvss 8.8epss 0.80
The WordPress Popular Posts WordPress plugin is vulnerable to arbitrary file uploads due to insufficient input file type validation found in the ~/src/Image.php file which makes it possible for attackers with contributor level access and above to upload malicious files that can…
- risk 0.60cvss 8.8epss 0.33
ManageEngine ADManager Plus Build 7111 contains a post-authentication remote code execution vulnerability due to improperly validated file uploads in the PasswordExpiry interface.
- risk 0.60cvss 9.3epss 0.00
An issue was discovered in the server in Veritas Backup Exec through 16.2, 20.6 before hotfix 298543, and 21.1 before hotfix 657517. On start-up, it loads the OpenSSL library from the Installation folder. This library in turn attempts to load the /usr/local/ssl/openssl.cnf…
- risk 0.60cvss 9.1epss 0.05
Magento versions 2.4.0 and 2.3.5p1 (and earlier) are affected by an unsafe file upload vulnerability that could result in arbitrary code execution. This vulnerability could be abused by authenticated users with administrative permissions to the System/Data and Transfer/Import…
- risk 0.60cvss 8.8epss 0.31
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0920, CVE-2020-0929,…
- risk 0.60cvss 8.8epss 0.31
Prima Systems FlexAir, Versions 2.3.38 and prior. Improper validation of file extensions when uploading files could allow a remote authenticated attacker to upload and execute malicious applications within the application’s web root with root privileges.
- risk 0.60cvss 8.8epss 0.83
WordPress before 4.9.9 and 5.x before 5.0.1 allows remote code execution because an _wp_attached_file Post Meta entry can be changed to an arbitrary string, such as one ending with a .jpg?file.php substring. An attacker with author privileges can execute arbitrary code by…
- risk 0.60cvss 9.8epss 0.09
An issue was discovered in Pluck before 4.7.7-dev2. /data/inc/images.php allows remote attackers to upload and execute arbitrary PHP code by using the image/jpeg content type for a .htaccess file.
- risk 0.60cvss 8.8epss 0.04
TeamWork TicketPlus allows Arbitrary File Upload in updateProfile.
- risk 0.60cvss 8.8epss 0.04
TeamWork Photo Fusion allows Arbitrary File Upload in changeAvatar and changeCover.
- risk 0.60cvss 8.8epss 0.04
TeamWork Job Links allows Arbitrary File Upload in profileChange and coverChange.
- risk 0.59cvss 9.0epss 0.00
A vulnerability has been identified in Siveillance Control Pro V3.0 (All versions < V3.0.12.2173), Siveillance Control Pro V4.0 (All versions < V4.0.9.2178), Siveillance Control V3.0 (All versions < V3.0.22.2177), Siveillance Control V4.0 (All versions < V4.0.11.2177). A…
- risk 0.59cvss 9.1epss 0.00
Editor Arbitrary File Upload in Fluent Boards Pro <= 2.0.11 versions.
- risk 0.59cvss 9.1epss 0.00
Author Arbitrary File Upload in Media LIbrary Assistant <= 3.39 versions.
- risk 0.59cvss 9.0epss 0.02
Unrestricted Upload of File with Dangerous Type vulnerability in Elementor Elementor Pro allows Using Malicious Files. This issue affects Elementor Pro: from n/a through 4.2.1.
- risk 0.59cvss 9.1epss 0.01
The System REST API accepts user-supplied file uploads without enforcing sufficient validation on the file type or destination, allowing files to be written to arbitrary server-accessible locations. Exploitation requires authenticated administrative access with publisher…