VYPR

CWE-434

Unrestricted Upload of File with Dangerous Type

BaseDraftLikelihood: Medium

Description

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-1

CVEs mapped to this weakness (4,316)

page 90 of 216
  • CVE-2024-29387HigApr 4, 2024
    risk 0.57cvss 8.8epss 0.01

    projeqtor up to 11.2.0 was discovered to contain a remote code execution (RCE) vulnerability via the component /view/print.php.

  • CVE-2024-29514HigApr 2, 2024
    risk 0.57cvss 8.8epss 0.01

    File Upload vulnerability in lepton v.7.1.0 allows a remote authenticated attackers to execute arbitrary code via uploading a crafted PHP file.

  • CVE-2024-29515HigMar 25, 2024
    risk 0.57cvss 8.8epss 0.01

    File Upload vulnerability in lepton v.7.1.0 allows a remote authenticated attackers to execute arbitrary code via uploading a crafted PHP file to the save.php and config.php component.

  • CVE-2024-27964HigMar 21, 2024
    risk 0.57cvss 8.8epss 0.01

    Unrestricted Upload of File with Dangerous Type vulnerability in Gesundheit Bewegt GmbH Zippy.This issue affects Zippy: from n/a through 1.6.9.

  • CVE-2024-1205HigMar 20, 2024
    risk 0.57cvss 8.8epss 0.01

    The Management App for WooCommerce – Order notifications, Order management, Lead management, Uptime Monitoring plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the nouvello_upload_csv_file function in all versions up to, and…

  • CVE-2024-0800HigMar 13, 2024
    risk 0.57cvss 8.8epss 0.01

    A path traversal vulnerability exists in Arcserve Unified Data Protection 9.2 and 8.1 in edge-app-base-webui.jar!com.ca.arcserve.edge.app.base.ui.server.servlet.ImportNodeServlet.

  • CVE-2024-1986HigMar 7, 2024
    risk 0.57cvss 8.8epss 0.01

    The Booster Elite for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the wc_add_new_product() function in all versions up to, and including, 7.1.7. This makes it possible for customer-level attackers, and above, to…

  • CVE-2024-1468HigFeb 29, 2024
    risk 0.57cvss 8.8epss 0.01

    The Avada | Website Builder For WordPress & WooCommerce theme for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the ajax_import_options() function in all versions up to, and including, 7.11.4. This makes it possible for authenticated…

  • CVE-2024-23811HigFeb 13, 2024
    risk 0.57cvss 8.8epss 0.00

    A vulnerability has been identified in SINEC NMS (All versions < V2.0 SP1). The affected application allows users to upload arbitrary files via TFTP. This could allow an attacker to upload malicious firmware images or other files, that could potentially lead to remote code…

  • CVE-2023-40265HigFeb 8, 2024
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in Atos Unify OpenScape Xpressions WebAssistant V7 before V7R1 FR5 HF42 P911. It allows authenticated remote code execution via file upload.

  • CVE-2024-24350HigFeb 8, 2024
    risk 0.57cvss 8.8epss 0.01

    File Upload vulnerability in Software Publico e-Sic Livre v.2.0 and before allows a remote attacker to execute arbitrary code via the extension filtering component.

  • CVE-2024-22515HigFeb 6, 2024
    risk 0.57cvss 8.8epss 0.01

    Unrestricted File Upload vulnerability in iSpyConnect.com Agent DVR 5.1.6.0 allows attackers to upload arbitrary files via the upload audio component.

  • CVE-2024-23180HigJan 23, 2024
    risk 0.57cvss 8.8epss 0.01

    Improper input validation vulnerability in a-blog cms Ver.3.1.x series versions prior to Ver.3.1.7, Ver.3.0.x series versions prior to Ver.3.0.29, Ver.2.11.x series versions prior to Ver.2.11.58, Ver.2.10.x series versions prior to Ver.2.10.50, and Ver.2.9.0 and earlier allows a…

  • CVE-2024-22895HigJan 22, 2024
    risk 0.57cvss 8.8epss 0.01

    DedeCMS 5.7.112 has a File Upload vulnerability via uploads/dede/module_upload.php.

  • CVE-2023-4536HigJan 16, 2024
    risk 0.57cvss 8.8epss 0.01

    The My Account Page Editor WordPress plugin before 1.3.2 does not validate the profile picture to be uploaded, allowing any authenticated users, such as subscriber to upload arbitrary files to the server, leading to RCE

  • CVE-2023-6979HigJan 11, 2024
    risk 0.57cvss 8.8epss 0.01

    The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the ivole_import_upload_csv AJAX action in all versions up to, and including, 5.38.9. This makes it possible for authenticated attackers, with…

  • CVE-2023-6316CriJan 11, 2024
    risk 0.57cvss 9.8epss 0.01

    The MW WP Form plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the '_single_file_upload' function in versions up to, and including, 5.0.1. This makes it possible for unauthenticated attackers to upload arbitrary files on…

  • CVE-2023-6140HigJan 8, 2024
    risk 0.57cvss 8.8epss 0.01

    The Essential Real Estate WordPress plugin before 4.4.0 does not prevent users with limited privileges on the site, like subscribers, from momentarily uploading malicious PHP files disguised as ZIP archives, which may lead to remote code execution.

  • CVE-2023-50760HigJan 4, 2024
    risk 0.57cvss 8.8epss 0.01

    Online Notice Board System v1.0 is vulnerable to an Insecure File Upload vulnerability on the 'f' parameter of user/update_profile_pic.php page, allowing an authenticated attacker to obtain Remote Code Execution on the server hosting the application.

  • CVE-2023-50038HigDec 28, 2023
    risk 0.57cvss 8.8epss 0.01

    There is an arbitrary file upload vulnerability in the background of textpattern cms v4.8.8, which leads to the loss of server permissions.