CWE-434— Unrestricted Upload of File with Dangerous Type
3,922 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-434page 34 of 79
- CVE-2022-50898HIGHCVSS 8.8EG 8.82026-01-13
NanoCMS 0.4 contains an authenticated file upload vulnerability that allows remote code execution through unvalidated page content creation. Authenticated attackers can upload PHP files with arbitrary code to the server's pages directory b…
- CVE-2022-50907HIGHCVSS 7.2EG 8.82026-01-13
e107 CMS version 3.2.1 contains a file upload vulnerability that allows authenticated administrative users to bypass upload restrictions and execute PHP files. Attackers can upload malicious PHP files to parent directories by manipulating …
- CVE-2022-50912CRITICALCVSS 9.8EG 9.82026-01-13
ImpressCMS 1.4.4 contains a file upload vulnerability with weak extension sanitization that allows attackers to upload potentially malicious files. Attackers can bypass file upload restrictions by using alternative file extensions .php2.ph…
- CVE-2022-50916HIGHCVSS 7.2EG 8.82026-01-13
e107 CMS version 3.2.1 contains a file upload vulnerability that allows authenticated administrators to override server files through the Media Manager import functionality. Attackers can exploit the upload mechanism by manipulating the up…
- CVE-2022-50936HIGHCVSS 8.8EG 8.82026-01-13
WBCE CMS version 1.5.2 contains an authenticated remote code execution vulnerability that allows attackers to upload malicious droplets through the admin panel. Authenticated attackers can exploit the droplet upload functionality in the ad…
- CVE-2022-50939HIGHCVSS 7.2EG 7.22026-01-13
e107 CMS version 3.2.1 contains a critical file upload vulnerability that allows authenticated administrators to override arbitrary server files through path traversal. The vulnerability exists in the Media Manager's remote URL upload func…
- CVE-2022-50993CRITICALCVSS 9.8EG 9.82026-04-30
Weaver (Fanwei) E-office versions prior to 10.0_20221201 contain an unauthenticated arbitrary file upload vulnerability in the OfficeServer.php endpoint that allows remote attackers to upload malicious files by sending multipart POST reque…
- CVE-2023-0255HIGHCVSS 8.8EG 8.82023-02-13
The Enable Media Replace WordPress plugin before 4.0.2 does not prevent authors from uploading arbitrary files to the site, which may allow them to upload PHP shells on affected sites.
- CVE-2023-0257MEDIUMCVSS 4.7EG 9.82023-01-12
A vulnerability was found in SourceCodester Online Food Ordering System 2.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /fos/admin/index.php?page=menu of the component Menu Form…
- CVE-2023-0265HIGHCVSS 8.8EG 8.82023-04-04
Uvdesk version 1.1.1 allows an authenticated remote attacker to execute commands on the server. This is possible because the application does not properly validate profile pictures uploaded by customers.
- CVE-2023-0455HIGHCVSS 8.8EG 8.82023-01-26
Unrestricted Upload of File with Dangerous Type in GitHub repository unilogies/bumsys prior to v1.0.3-beta.
- CVE-2023-0477HIGHCVSS 8.8EG 8.82023-03-13
The Auto Featured Image (Auto Post Thumbnail) WordPress plugin before 3.9.16 includes an AJAX endpoint that allows any user with at least Author privileges to upload arbitrary files, such as PHP files. This is caused by incorrect file exte…
- CVE-2023-0587CRITICALCVSS 9.1EG 9.12023-02-01
A file upload vulnerability in exists in Trend Micro Apex One server build 11110. Using a malformed Content-Length header in an HTTP PUT message sent to URL /officescan/console/html/cgi/fcgiOfcDDA.exe, an unauthenticated remote attacker ca…
- CVE-2023-0651MEDIUMCVSS 6.3EG 9.82023-02-02
A vulnerability was found in FastCMS 0.1.0. It has been classified as critical. Affected is an unknown function of the component Template Management. The manipulation leads to unrestricted upload. It is possible to launch the attack remote…
- CVE-2023-0670HIGHCVSS 7.2EG 7.22023-04-05
Ulearn version a5a7ca20de859051ea0470542844980a66dfc05d allows an attacker with administrator permissions to obtain remote code execution on the server through the image upload functionality. This occurs because the application does not va…
- CVE-2023-0714HIGHCVSS 8.1EG 8.12024-08-17
The Metform Elementor Contact Form Builder for WordPress is vulnerable to Arbitrary File Upload due to insufficient file type validation in versions up to, and including, 3.2.4. This allows unauthenticated visitors to perform a "double ext…
- CVE-2023-0783MEDIUMCVSS 4.7EG 9.82023-02-11
A vulnerability was found in EcShop 4.1.5. It has been classified as critical. This affects an unknown part of the file /ecshop/admin/template.php of the component PHP File Handler. The manipulation leads to unrestricted upload. It is poss…
- CVE-2023-0918MEDIUMCVSS 6.3EG 9.82023-02-19
A vulnerability has been found in codeprojects Pharmacy Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file add.php of the component Avatar Image Handler. The manipulation leads to unrestri…
- CVE-2023-0924HIGHCVSS 7.2EG 7.22023-05-02
The ZYREX POPUP WordPress plugin through 1.0 does not validate the type of files uploaded when creating a popup, allowing a high privileged user (such as an Administrator) to upload arbitrary files, even when modifying the file system is d…
- CVE-2023-0943MEDIUMCVSS 4.7EG 8.82023-02-21
A vulnerability, which was classified as problematic, has been found in SourceCodester Best POS Management System 1.0. This issue affects the function save_settings of the file index.php?page=site_settings of the component Image Handler. T…
- CVE-2023-1184MEDIUMCVSS 4.7EG 8.82023-03-06
A vulnerability, which was classified as problematic, has been found in ECshop up to 4.1.8. Affected by this issue is some unknown functionality of the file admin/database.php of the component Backup Database Handler. The manipulation lead…
- CVE-2023-1185MEDIUMCVSS 4.7EG 8.82023-03-06
A vulnerability, which was classified as problematic, was found in ECshop up to 4.1.8. This affects an unknown part of the component New Product Handler. The manipulation leads to unrestricted upload. It is possible to initiate the attack …
- CVE-2023-1303MEDIUMCVSS 6.3EG 9.82023-03-09
A vulnerability was found in UCMS 1.6 and classified as critical. This issue affects some unknown processing of the file sadmin/fileedit.php of the component System File Management Module. The manipulation of the argument file leads to unr…
- CVE-2023-1313HIGHCVSS 8.8EG 8.82023-03-10
Unrestricted Upload of File with Dangerous Type in GitHub repository cockpit-hq/cockpit prior to 2.4.1.
- CVE-2023-1328MEDIUMCVSS 4.7EG 7.22023-03-10
A vulnerability was found in Guizhou 115cms 4.2. It has been classified as problematic. Affected is an unknown function of the file /admin/content/index. The manipulation leads to unrestricted upload. It is possible to launch the attack re…
- CVE-2023-1391MEDIUMCVSS 4.7EG 9.82023-03-14
A vulnerability, which was classified as problematic, was found in SourceCodester Online Tours & Travels Management System 1.0. Affected is an unknown function of the file admin/ab.php. The manipulation of the argument img leads to unrestr…
- CVE-2023-1392MEDIUMCVSS 6.3EG 9.82023-03-14
A vulnerability has been found in SourceCodester Online Pizza Ordering System 1.0 and classified as critical. Affected by this vulnerability is the function save_menu. The manipulation leads to unrestricted upload. The attack can be launch…
- CVE-2023-1406HIGHCVSS 8.8EG 8.82023-04-10
The JetEngine WordPress plugin before 3.1.3.1 includes uploaded files without adequately ensuring that they are not executable, leading to a remote code execution vulnerability.
- CVE-2023-1415MEDIUMCVSS 6.3EG 8.82023-03-15
A vulnerability was found in Simple Art Gallery 1.0. It has been declared as critical. This vulnerability affects the function sliderPicSubmit of the file adminHome.php. The manipulation leads to unrestricted upload. The attack can be init…
- CVE-2023-1433MEDIUMCVSS 4.7EG 7.22023-03-16
A vulnerability was found in SourceCodester Gadget Works Online Ordering System 1.0. It has been classified as problematic. This affects an unknown part of the file admin/products/controller.php?action=add of the component Products Handler…
- CVE-2023-1442MEDIUMCVSS 4.7EG 7.22023-03-17
A vulnerability was found in Meizhou Qingyunke QYKCMS 4.3.0. It has been classified as problematic. This affects an unknown part of the file /admin_system/api.php of the component Update Handler. The manipulation of the argument downurl le…
- CVE-2023-1479MEDIUMCVSS 6.3EG 9.82023-03-18
A vulnerability classified as critical has been found in SourceCodester Simple Music Player 1.0. Affected is an unknown function of the file save_music.php. The manipulation of the argument filename leads to unrestricted upload. It is poss…
- CVE-2023-1484MEDIUMCVSS 6.3EG 9.82023-03-18
A vulnerability was found in xzjie cms up to 1.0.3 and classified as critical. This issue affects some unknown processing of the file /api/upload. The manipulation of the argument uploadFile leads to unrestricted upload. The attack may be …
- CVE-2023-1497MEDIUMCVSS 6.3EG 9.82023-03-19
A vulnerability was found in SourceCodester Simple and Nice Shopping Cart Script 1.0. It has been rated as critical. This issue affects some unknown processing of the file uploaderm.php. The manipulation of the argument submit leads to unr…
- CVE-2023-1501MEDIUMCVSS 6.3EG 8.82023-03-19
A vulnerability, which was classified as critical, was found in RockOA 2.3.2. This affects the function runAction of the file acloudCosAction.php.SQL. The manipulation of the argument fileid leads to unrestricted upload. It is possible to …
- CVE-2023-1558MEDIUMCVSS 6.3EG 9.82023-03-22
A vulnerability classified as critical has been found in Simple and Beautiful Shopping Cart System 1.0. This affects an unknown part of the file uploadera.php. The manipulation leads to unrestricted upload. It is possible to initiate the a…
- CVE-2023-1559MEDIUMCVSS 4.7EG 7.22023-03-22
A vulnerability classified as problematic was found in SourceCodester Storage Unit Rental Management System 1.0. This vulnerability affects unknown code of the file classes/Users.php?f=save. The manipulation leads to unrestricted upload. T…
- CVE-2023-1561MEDIUMCVSS 6.3EG 9.82023-03-22
A vulnerability, which was classified as critical, was found in code-projects Simple Online Hotel Reservation System 1.0. Affected is an unknown function of the file add_room.php. The manipulation leads to unrestricted upload. It is possib…
- CVE-2023-1684MEDIUMCVSS 4.7EG 9.82023-03-29
A vulnerability was found in HadSky 7.7.16. It has been classified as problematic. This affects an unknown part of the file upload/index.php?c=app&a=superadmin:index. The manipulation leads to unrestricted upload. It is possible to initiat…
- CVE-2023-1713HIGHCVSS 8.8EG 8.82023-11-01
Insecure temporary file creation in bitrix/modules/crm/lib/order/import/instagram.php in Bitrix24 22.0.300 hosted on Apache HTTP Server allows remote authenticated attackers to execute arbitrary code via uploading a crafted ".htaccess" fil…
- CVE-2023-1720CRITICALCVSS 9.6EG 9.62023-11-01
Lack of mime type response header in Bitrix24 22.0.300 allows authenticated remote attackers to execute arbitrary JavaScript code in the victim's browser, and possibly execute arbitrary PHP code on the server if the victim has administrato…
- CVE-2023-1721CRITICALCVSS 9.1EG 9.12023-06-24
Yoga Class Registration System version 1.0 allows an administrator to execute commands on the server. This is possible because the application does not correctly validate the thumbnails of the classes uploaded by the administrators.
- CVE-2023-1728CRITICALCVSS 9.8EG 10.02023-04-04
Unrestricted Upload of File with Dangerous Type vulnerability in Fernus Informatics LMS allows OS Command Injection, Server Side Include (SSI) Injection. This issue affects LMS: before 23.04.03.
- CVE-2023-1731HIGHCVSS 7.2EG 7.22023-04-24
In Meinbergs LTOS versions prior to V7.06.013, the configuration file upload function would not correctly validate the input, which would allow an remote authenticated attacker with high privileges to execute arbitrary commands.
- CVE-2023-1734HIGHCVSS 7.3EG 9.82023-03-30
A vulnerability classified as critical has been found in SourceCodester Young Entrepreneur E-Negosyo System 1.0. Affected is an unknown function of the file admin/products/controller.php?action=add. The manipulation of the argument image l…
- CVE-2023-1739MEDIUMCVSS 6.3EG 9.82023-03-30
A vulnerability was found in SourceCodester Simple and Beautiful Shopping Cart System 1.0 and classified as critical. This issue affects some unknown processing of the file upload.php. The manipulation leads to unrestricted upload. The att…
- CVE-2023-1744MEDIUMCVSS 6.3EG 8.82023-03-30
A vulnerability classified as critical was found in IBOS 4.5.5. This vulnerability affects unknown code of the component htaccess Handler. The manipulation leads to unrestricted upload. The attack can be initiated remotely. The exploit has…
- CVE-2023-1797MEDIUMCVSS 6.3EG 9.82023-04-02
A vulnerability classified as critical was found in OTCMS 6.0.1. Affected by this vulnerability is an unknown functionality of the file sysCheckFile.php?mudi=sql. The manipulation leads to unrestricted upload. The attack can be launched re…
- CVE-2023-1800HIGHCVSS 7.3EG 7.32023-04-02
A vulnerability, which was classified as critical, has been found in sjqzhang go-fastdfs up to 1.4.3. Affected by this issue is the function upload of the file /group1/uploa of the component File Upload Handler. The manipulation leads to p…
- CVE-2023-1826MEDIUMCVSS 6.3EG 9.82023-04-04
A vulnerability, which was classified as critical, was found in SourceCodester Online Computer and Laptop Store 1.0. This affects an unknown part of the file php-ocls\admin\system_info\index.php. The manipulation of the argument img leads …
Map vulnerabilities like CWE-434 to your infrastructure
EchelonGraph correlates every CVE — across CWE-434 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →