CWE-434
Unrestricted Upload of File with Dangerous Type
Description
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.
Hierarchy (View 1000)
Parents
Children
none
Related attack patterns (CAPEC)
CAPEC-1
CVEs mapped to this weakness (4,316)
page 95 of 216| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-19786 | Hig | 0.57 | 8.8 | 0.01 | Mar 23, 2023 | File upload vulnerability in CSKaza CSZ CMS v.1.2.2 fixed in v1.2.4 allows attacker to execute aritrary commands and code via crafted PHP file. | ||
| CVE-2023-28337 | Hig | 0.57 | 8.8 | 0.01 | Mar 15, 2023 | When uploading a firmware image to a Netgear Nighthawk Wifi6 Router (RAX30), a hidden “forceFWUpdate” parameter may be provided to force the upgrade to complete and bypass certain validation checks. End users can use this to upload modified, unofficial, and potentially… | ||
| CVE-2023-0477 | Hig | 0.57 | 8.8 | 0.02 | Mar 13, 2023 | The Auto Featured Image (Auto Post Thumbnail) WordPress plugin before 3.9.16 includes an AJAX endpoint that allows any user with at least Author privileges to upload arbitrary files, such as PHP files. This is caused by incorrect file extension validation. | ||
| CVE-2023-23328 | Hig | 0.57 | 8.8 | 0.01 | Mar 10, 2023 | A File Upload vulnerability exists in AvantFAX 3.3.7. An authenticated user can bypass PHP file type validation in FileUpload.php by uploading a specially crafted PHP file. | ||
| CVE-2021-4330 | Hig | 0.57 | 8.8 | 0.02 | Mar 7, 2023 | The Envato Elements & Download and Template Kit – Import plugins for WordPress are vulnerable to arbitrary file uploads due to insufficient validation of file type upon extracting uploaded Zip files in the installFreeTemplateKit and uploadTemplateKitZipFile functions. This… | ||
| CVE-2023-26762 | Hig | 0.57 | 8.8 | 0.01 | Feb 27, 2023 | Sme.UP ERP TOKYO V6R1M220406 was discovered to contain an arbitrary file upload vulnerability. | ||
| CVE-2023-0255 | Hig | 0.57 | 8.8 | 0.01 | Feb 13, 2023 | The Enable Media Replace WordPress plugin before 4.0.2 does not prevent authors from uploading arbitrary files to the site, which may allow them to upload PHP shells on affected sites. | ||
| CVE-2021-36426 | Hig | 0.57 | 8.8 | 0.01 | Feb 3, 2023 | File Upload vulnerability in phpwcms 1.9.25 allows remote attackers to run arbitrary code via crafted file upload to include/inc_lib/general.inc.php. | ||
| CVE-2023-24610 | Hig | 0.57 | 8.8 | 0.02 | Feb 1, 2023 | NOSH 4a5cfdb allows remote authenticated users to execute PHP arbitrary code via the "practice logo" upload feature. The client-side checks can be bypassed. This may allow attackers to steal Protected Health Information because the product is for health charting. | ||
| CVE-2022-47042 | Hig | 0.57 | 8.8 | 0.01 | Jan 26, 2023 | MCMS v5.2.10 and below was discovered to contain an arbitrary file write vulnerability via the component ms/template/writeFileContent.do. | ||
| CVE-2022-40035 | Hig | 0.57 | 8.8 | 0.01 | Jan 26, 2023 | File Upload Vulnerability found in Rawchen Blog-ssm v1.0 allowing attackers to execute arbitrary commands and gain escalated privileges via the /uploadFileList component. | ||
| CVE-2021-26642 | Hig | 0.57 | 8.8 | 0.01 | Jan 20, 2023 | When uploading an image file to a bulletin board developed with XpressEngine, a vulnerability in which an arbitrary file can be uploaded due to insufficient verification of the file. A remote attacker can use this vulnerability to execute arbitrary code on the server where the… | ||
| CVE-2022-47766 | Hig | 0.57 | 8.8 | 0.01 | Jan 19, 2023 | PopojiCMS v2.0.1 backend plugin function has a file upload vulnerability. | ||
| CVE-2022-43436 | Hig | 0.57 | 8.8 | 0.01 | Jan 3, 2023 | The File Upload function of EasyTest has insufficient filtering for special characters and file type. A remote attacker authenticated as a general user can upload and execute arbitrary files, to manipulate system or disrupt service. | ||
| CVE-2022-34483 | Hig | 0.57 | 8.8 | 0.01 | Dec 22, 2022 | An attacker who could have convinced a user to drag and drop an image to a filesystem could have manipulated the resulting filename to contain an executable extension, and by extension potentially tricked the user into executing malicious code. While very similar, this is a… | ||
| CVE-2022-34482 | Hig | 0.57 | 8.8 | 0.01 | Dec 22, 2022 | An attacker who could have convinced a user to drag and drop an image to a filesystem could have manipulated the resulting filename to contain an executable extension, and by extension potentially tricked the user into executing malicious code. While very similar, this is a… | ||
| CVE-2020-20588 | Hig | 0.57 | 8.8 | 0.01 | Dec 15, 2022 | File upload vulnerability in function upload in action/Core.class.php in zhimengzhe iBarn 1.5 allows remote attackers to run arbitrary code via avatar upload to index.php. | ||
| CVE-2022-45759 | Hig | 0.57 | 8.8 | 0.01 | Dec 12, 2022 | SENS v1.0 has a file upload vulnerability. | ||
| CVE-2022-45548 | Hig | 0.57 | 8.8 | 0.01 | Dec 6, 2022 | AyaCMS v3.1.2 has an Arbitrary File Upload vulnerability. | ||
| CVE-2022-44289 | Hig | 0.57 | 8.8 | 0.03 | Dec 6, 2022 | Thinkphp 5.1.41 and 5.0.24 has a code logic error which causes file upload getshell. |
- risk 0.57cvss 8.8epss 0.01
File upload vulnerability in CSKaza CSZ CMS v.1.2.2 fixed in v1.2.4 allows attacker to execute aritrary commands and code via crafted PHP file.
- risk 0.57cvss 8.8epss 0.01
When uploading a firmware image to a Netgear Nighthawk Wifi6 Router (RAX30), a hidden “forceFWUpdate” parameter may be provided to force the upgrade to complete and bypass certain validation checks. End users can use this to upload modified, unofficial, and potentially…
- risk 0.57cvss 8.8epss 0.02
The Auto Featured Image (Auto Post Thumbnail) WordPress plugin before 3.9.16 includes an AJAX endpoint that allows any user with at least Author privileges to upload arbitrary files, such as PHP files. This is caused by incorrect file extension validation.
- risk 0.57cvss 8.8epss 0.01
A File Upload vulnerability exists in AvantFAX 3.3.7. An authenticated user can bypass PHP file type validation in FileUpload.php by uploading a specially crafted PHP file.
- risk 0.57cvss 8.8epss 0.02
The Envato Elements & Download and Template Kit – Import plugins for WordPress are vulnerable to arbitrary file uploads due to insufficient validation of file type upon extracting uploaded Zip files in the installFreeTemplateKit and uploadTemplateKitZipFile functions. This…
- risk 0.57cvss 8.8epss 0.01
Sme.UP ERP TOKYO V6R1M220406 was discovered to contain an arbitrary file upload vulnerability.
- risk 0.57cvss 8.8epss 0.01
The Enable Media Replace WordPress plugin before 4.0.2 does not prevent authors from uploading arbitrary files to the site, which may allow them to upload PHP shells on affected sites.
- risk 0.57cvss 8.8epss 0.01
File Upload vulnerability in phpwcms 1.9.25 allows remote attackers to run arbitrary code via crafted file upload to include/inc_lib/general.inc.php.
- risk 0.57cvss 8.8epss 0.02
NOSH 4a5cfdb allows remote authenticated users to execute PHP arbitrary code via the "practice logo" upload feature. The client-side checks can be bypassed. This may allow attackers to steal Protected Health Information because the product is for health charting.
- risk 0.57cvss 8.8epss 0.01
MCMS v5.2.10 and below was discovered to contain an arbitrary file write vulnerability via the component ms/template/writeFileContent.do.
- risk 0.57cvss 8.8epss 0.01
File Upload Vulnerability found in Rawchen Blog-ssm v1.0 allowing attackers to execute arbitrary commands and gain escalated privileges via the /uploadFileList component.
- risk 0.57cvss 8.8epss 0.01
When uploading an image file to a bulletin board developed with XpressEngine, a vulnerability in which an arbitrary file can be uploaded due to insufficient verification of the file. A remote attacker can use this vulnerability to execute arbitrary code on the server where the…
- risk 0.57cvss 8.8epss 0.01
PopojiCMS v2.0.1 backend plugin function has a file upload vulnerability.
- risk 0.57cvss 8.8epss 0.01
The File Upload function of EasyTest has insufficient filtering for special characters and file type. A remote attacker authenticated as a general user can upload and execute arbitrary files, to manipulate system or disrupt service.
- risk 0.57cvss 8.8epss 0.01
An attacker who could have convinced a user to drag and drop an image to a filesystem could have manipulated the resulting filename to contain an executable extension, and by extension potentially tricked the user into executing malicious code. While very similar, this is a…
- risk 0.57cvss 8.8epss 0.01
An attacker who could have convinced a user to drag and drop an image to a filesystem could have manipulated the resulting filename to contain an executable extension, and by extension potentially tricked the user into executing malicious code. While very similar, this is a…
- risk 0.57cvss 8.8epss 0.01
File upload vulnerability in function upload in action/Core.class.php in zhimengzhe iBarn 1.5 allows remote attackers to run arbitrary code via avatar upload to index.php.
- risk 0.57cvss 8.8epss 0.01
SENS v1.0 has a file upload vulnerability.
- risk 0.57cvss 8.8epss 0.01
AyaCMS v3.1.2 has an Arbitrary File Upload vulnerability.
- risk 0.57cvss 8.8epss 0.03
Thinkphp 5.1.41 and 5.0.24 has a code logic error which causes file upload getshell.