VYPR

CWE-434

Unrestricted Upload of File with Dangerous Type

BaseDraftLikelihood: Medium

Description

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-1

CVEs mapped to this weakness (4,316)

page 95 of 216
  • CVE-2020-19786HigMar 23, 2023
    risk 0.57cvss 8.8epss 0.01

    File upload vulnerability in CSKaza CSZ CMS v.1.2.2 fixed in v1.2.4 allows attacker to execute aritrary commands and code via crafted PHP file.

  • CVE-2023-28337HigMar 15, 2023
    risk 0.57cvss 8.8epss 0.01

    When uploading a firmware image to a Netgear Nighthawk Wifi6 Router (RAX30), a hidden “forceFWUpdate” parameter may be provided to force the upgrade to complete and bypass certain validation checks. End users can use this to upload modified, unofficial, and potentially…

  • CVE-2023-0477HigMar 13, 2023
    risk 0.57cvss 8.8epss 0.02

    The Auto Featured Image (Auto Post Thumbnail) WordPress plugin before 3.9.16 includes an AJAX endpoint that allows any user with at least Author privileges to upload arbitrary files, such as PHP files. This is caused by incorrect file extension validation.

  • CVE-2023-23328HigMar 10, 2023
    risk 0.57cvss 8.8epss 0.01

    A File Upload vulnerability exists in AvantFAX 3.3.7. An authenticated user can bypass PHP file type validation in FileUpload.php by uploading a specially crafted PHP file.

  • CVE-2021-4330HigMar 7, 2023
    risk 0.57cvss 8.8epss 0.02

    The Envato Elements & Download and Template Kit – Import plugins for WordPress are vulnerable to arbitrary file uploads due to insufficient validation of file type upon extracting uploaded Zip files in the installFreeTemplateKit and uploadTemplateKitZipFile functions. This…

  • CVE-2023-26762HigFeb 27, 2023
    risk 0.57cvss 8.8epss 0.01

    Sme.UP ERP TOKYO V6R1M220406 was discovered to contain an arbitrary file upload vulnerability.

  • CVE-2023-0255HigFeb 13, 2023
    risk 0.57cvss 8.8epss 0.01

    The Enable Media Replace WordPress plugin before 4.0.2 does not prevent authors from uploading arbitrary files to the site, which may allow them to upload PHP shells on affected sites.

  • CVE-2021-36426HigFeb 3, 2023
    risk 0.57cvss 8.8epss 0.01

    File Upload vulnerability in phpwcms 1.9.25 allows remote attackers to run arbitrary code via crafted file upload to include/inc_lib/general.inc.php.

  • CVE-2023-24610HigFeb 1, 2023
    risk 0.57cvss 8.8epss 0.02

    NOSH 4a5cfdb allows remote authenticated users to execute PHP arbitrary code via the "practice logo" upload feature. The client-side checks can be bypassed. This may allow attackers to steal Protected Health Information because the product is for health charting.

  • CVE-2022-47042HigJan 26, 2023
    risk 0.57cvss 8.8epss 0.01

    MCMS v5.2.10 and below was discovered to contain an arbitrary file write vulnerability via the component ms/template/writeFileContent.do.

  • CVE-2022-40035HigJan 26, 2023
    risk 0.57cvss 8.8epss 0.01

    File Upload Vulnerability found in Rawchen Blog-ssm v1.0 allowing attackers to execute arbitrary commands and gain escalated privileges via the /uploadFileList component.

  • CVE-2021-26642HigJan 20, 2023
    risk 0.57cvss 8.8epss 0.01

    When uploading an image file to a bulletin board developed with XpressEngine, a vulnerability in which an arbitrary file can be uploaded due to insufficient verification of the file. A remote attacker can use this vulnerability to execute arbitrary code on the server where the…

  • CVE-2022-47766HigJan 19, 2023
    risk 0.57cvss 8.8epss 0.01

    PopojiCMS v2.0.1 backend plugin function has a file upload vulnerability.

  • CVE-2022-43436HigJan 3, 2023
    risk 0.57cvss 8.8epss 0.01

    The File Upload function of EasyTest has insufficient filtering for special characters and file type. A remote attacker authenticated as a general user can upload and execute arbitrary files, to manipulate system or disrupt service.

  • CVE-2022-34483HigDec 22, 2022
    risk 0.57cvss 8.8epss 0.01

    An attacker who could have convinced a user to drag and drop an image to a filesystem could have manipulated the resulting filename to contain an executable extension, and by extension potentially tricked the user into executing malicious code. While very similar, this is a…

  • CVE-2022-34482HigDec 22, 2022
    risk 0.57cvss 8.8epss 0.01

    An attacker who could have convinced a user to drag and drop an image to a filesystem could have manipulated the resulting filename to contain an executable extension, and by extension potentially tricked the user into executing malicious code. While very similar, this is a…

  • CVE-2020-20588HigDec 15, 2022
    risk 0.57cvss 8.8epss 0.01

    File upload vulnerability in function upload in action/Core.class.php in zhimengzhe iBarn 1.5 allows remote attackers to run arbitrary code via avatar upload to index.php.

  • CVE-2022-45759HigDec 12, 2022
    risk 0.57cvss 8.8epss 0.01

    SENS v1.0 has a file upload vulnerability.

  • CVE-2022-45548HigDec 6, 2022
    risk 0.57cvss 8.8epss 0.01

    AyaCMS v3.1.2 has an Arbitrary File Upload vulnerability.

  • CVE-2022-44289HigDec 6, 2022
    risk 0.57cvss 8.8epss 0.03

    Thinkphp 5.1.41 and 5.0.24 has a code logic error which causes file upload getshell.