VYPR

CWE-434

Unrestricted Upload of File with Dangerous Type

BaseDraftLikelihood: Medium

Description

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-1

CVEs mapped to this weakness (4,316)

page 82 of 216
  • CVE-2025-65471HigDec 11, 2025
    risk 0.57cvss 8.8epss 0.01

    An arbitrary file upload vulnerability in the /admin/manager.php component of EasyImages 2.0 v2.8.6 and below allows attackers to execute arbitrary code via uploading a crafted PHP file.

  • CVE-2024-58283HigDec 10, 2025
    risk 0.57cvss 8.8epss 0.01

    WBCE CMS version 1.6.2 contains a remote code execution vulnerability that allows authenticated attackers to upload malicious PHP files through the Elfinder file manager. Attackers can exploit the file upload functionality in the elfinder connector to upload a web shell and…

  • CVE-2024-58281HigDec 10, 2025
    risk 0.57cvss 8.8epss 0.01

    Dotclear 2.29 contains a remote code execution vulnerability that allows authenticated attackers to upload malicious PHP files through the media upload functionality. Attackers can exploit the file upload process by crafting a PHP shell with a command execution form to gain…

  • CVE-2024-58279HigDec 10, 2025
    risk 0.57cvss 8.8epss 0.01

    appRain CMF 4.0.5 contains an authenticated remote code execution vulnerability that allows administrative users to upload malicious PHP files through the filemanager upload endpoint. Attackers can leverage authenticated access to generate a web shell with command execution…

  • CVE-2025-14390HigDec 10, 2025
    risk 0.57cvss 8.8epss 0.00

    The Video Merchant plugin for WordPress is vulnerable to Cross-Site Request Forgery in version <= 5.0.4. This is due to missing or incorrect nonce validation on the video_merchant_add_video_file() function. This makes it possible for unauthenticated attackers to upload arbitrary…

  • CVE-2025-56704HigDec 9, 2025
    risk 0.57cvss 8.8epss 0.01

    LeptonCMS version 7.3.0 contains an arbitrary file upload vulnerability, which is caused by the lack of proper validation for uploaded files. An authenticated attacker can exploit this vulnerability by uploading a specially crafted ZIP/PHP file to execute arbitrary code.

  • CVE-2025-12673CriDec 6, 2025
    risk 0.57cvss 9.8epss 0.01

    The Flex QR Code Generator plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the update_qr_code() function in all versions up to, and including, 1.2.7. This makes it possible for unauthenticated attackers to upload arbitrary…

  • CVE-2025-12154HigDec 5, 2025
    risk 0.57cvss 8.8epss 0.01

    The Auto Thumbnailer plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the uploadThumb() function in all versions up to, and including, 1.0. This makes it possible for authenticated attackers, with Contributor-level access and…

  • CVE-2025-12153HigDec 5, 2025
    risk 0.57cvss 8.8epss 0.01

    The Featured Image via URL plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation function in all versions up to, and including, 0.1. This makes it possible for authenticated attackers, with Contributor-level access and above, to upload…

  • CVE-2025-13543HigDec 4, 2025
    risk 0.57cvss 8.8epss 0.01

    The PostGallery plugin for WordPress is vulnerable to arbitrary file uploads due to incorrect file type validation in the 'PostGalleryUploader' class functions in all versions up to, and including, 1.12.5. This makes it possible for authenticated attackers, with subscriber-level…

  • CVE-2025-13827HigDec 2, 2025
    risk 0.57cvss epss 0.00

    Summary Arbitrary files can be uploaded via the GrapesJS Builder, as the types of files that can be uploaded are not restricted. ImpactIf the media folder is not restricted from running files this can lead to a remote code execution.

  • CVE-2025-13597CriNov 25, 2025
    risk 0.57cvss 9.8epss 0.01

    The AI Feeds plugin for WordPress is vulnerable to arbitrary file uploads due to missing capability check in the 'actualizador_git.php' file in all versions up to, and including, 1.0.11. This makes it possible for unauthenticated attackers to download arbitrary GitHub…

  • CVE-2025-13595CriNov 25, 2025
    risk 0.57cvss 9.8epss 0.01

    The CIBELES AI plugin for WordPress is vulnerable to arbitrary file uploads due to missing capability check in the 'actualizador_git.php' file in all versions up to, and including, 1.10.8. This makes it possible for unauthenticated attackers to download arbitrary GitHub…

  • CVE-2025-12138HigNov 21, 2025
    risk 0.57cvss 8.8epss 0.01

    The URL Image Importer plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in all versions up to, and including, 1.0.6. This is due to the plugin relying on a user-controlled Content-Type HTTP header to validate file uploads in…

  • CVE-2025-11456CriNov 21, 2025
    risk 0.57cvss 9.8epss 0.01

    The ELEX WordPress HelpDesk & Customer Ticketing System plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the eh_crm_new_ticket_post() function in all versions up to, and including, 3.3.1. This makes it possible for…

  • CVE-2025-41735HigNov 18, 2025
    risk 0.57cvss 8.8epss 0.01

    A low privileged remote attacker can upload any file to an arbitrary location due to missing file check resulting in remote code execution.

  • CVE-2025-13069HigNov 18, 2025
    risk 0.57cvss 8.8epss 0.01

    The Enable SVG, WebP, and ICO Upload plugin for WordPress is vulnerable to arbitrary file upload in all versions up to, and including, 1.1.3. This is due to insufficient file type validation detecting ICO files, allowing double extension files with the appropriate magic bytes to…

  • CVE-2025-12775HigNov 18, 2025
    risk 0.57cvss 8.8epss 0.01

    The WP Dropzone plugin for WordPress is vulnerable to authenticated arbitrary file upload in all versions up to, and including, 1.1.0 via the `ajax_upload_handle` function. This is due to the chunked upload functionality writing files directly to the uploads directory before any…

  • CVE-2025-63748HigNov 17, 2025
    risk 0.57cvss 8.8epss 0.00

    QaTraq 6.9.2 allows authenticated users to upload arbitrary files via the "Add Attachment" feature in the "Test Script" module. The application fails to restrict file types, enabling the upload of executable PHP files. Once uploaded, the file can be accessed through the "View…

  • CVE-2025-12161HigNov 8, 2025
    risk 0.57cvss 8.8epss 0.01

    The Smart Auto Upload Images plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the auto-image creation functionality in all versions up to, and including, 1.2.0. This makes it possible for authenticated attackers, with…