CWE-434— Unrestricted Upload of File with Dangerous Type
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.— MITRE CWE catalog
4,555 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-434page 16 of 92
- CVE-2024-10801CRITICALCVSS 9.8EG 9.82024-11-09
The WordPress User Extra Fields plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the ajax_manage_file_chunk_upload() function in all versions up to, and including, 16.5. This makes it poss…
- CVE-2024-10547CRITICALCVSS 9.8EG 9.82024-11-09
The WP Membership plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the user_profile_image_upload() function in all versions up to, and including, 1.6.2. This makes it possible for unauthen…
- CVE-2024-10627CRITICALCVSS 9.8EG 9.82024-11-09
The WooCommerce Support Ticket System plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the ajax_manage_file_chunk_upload() function in all versions up to, and including, 17.7. This makes i…
- CVE-2023-52044CRITICALCVSS 9.8EG 9.82024-10-31
Studio-42 eLfinder 2.1.62 is vulnerable to Remote Code Execution (RCE) as there is no restriction for uploading files with the .php8 extension.
- CVE-2024-10392CRITICALCVSS 9.8EG 9.82024-10-31
The AI Power: Complete AI Pack plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'handle_image_upload' function in all versions up to, and including, 1.8.89. This makes it possible for …
- CVE-2024-48202CRITICALCVSS 9.8EG 9.82024-10-30
icecms <=3.4.7 has a File Upload vulnerability in FileUtils.java,uploadFile.
- CVE-2024-9932CRITICALCVSS 9.8EG 9.82024-10-26
The Wux Blog Editor plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'wuxbt_insertImageNew' function in versions up to, and including, 3.0.0. This makes it possible for unauthenti…
- CVE-2024-48180CRITICALCVSS 9.8EG 9.82024-10-16
ClassCMS <=4.8 is vulnerable to file inclusion in the nowView method in/class/cms/cms.php, which can include a file uploaded to the/class/template directory to execute PHP code.
- CVE-2016-15042CRITICALCVSS 9.8EG 9.82024-10-16
The Frontend File Manager (versions < 4.0), N-Media Post Front-end Form (versions < 1.1) plugins for WordPress are vulnerable to arbitrary file uploads due to missing file type validation via the `nm_filemanager_upload_file` and `nm_postfr…
- CVE-2021-4449CRITICALCVSS 9.8EG 9.82024-10-16
The ZoomSounds plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'savepng.php' file in versions up to, and including, 5.96. This makes it possible for unauthenticated attackers to uploa…
- CVE-2021-4443CRITICALCVSS 9.8EG 9.82024-10-16
The WordPress Mega Menu plugin for WordPress is vulnerable to Arbitrary File Creation in versions up to, and including, 2.0.6 via the compiler_save AJAX action. This makes it possible for unauthenticated attackers to create arbitrary PHP f…
- CVE-2024-48782CRITICALCVSS 9.8EG 9.82024-10-15
File Upload vulnerability in DYCMS Open-Source Version v2.0.9.41 allows a remote attacker to execute arbitrary code via the application only detecting the extension of image files in the front-end.
- CVE-2024-48781CRITICALCVSS 9.8EG 9.82024-10-15
An issue in Wanxing Technology Yitu Project Management Kirin Edition 2.3.6 allows a remote attacker to execute arbitrary code via a specially constructed so file/opt/EdrawProj-2/plugins/imageformat.
- CVE-2024-46088CRITICALCVSS 9.8EG 9.82024-10-11
An arbitrary file upload vulnerability in the ProductAction.entphone interface of Zhejiang University Entersoft Customer Resource Management System v2002 to v2024 allows attackers to execute arbitrary code via uploading a crafted file.
- CVE-2024-42640CRITICALCVSS 9.8EG 9.82024-10-11
angular-base64-upload prior to v0.1.21 is vulnerable to unauthenticated remote code execution via demo/server.php. Exploiting this vulnerability allows an attacker to upload arbitrary content to the server, which can subsequently be access…
- CVE-2024-47823CRITICALCVSS 9.8EG 9.82024-10-08
Livewire is a full-stack framework for Laravel that allows for dynamic UI components without leaving PHP. In livewire/livewire prior to `2.12.7` and `v3.5.2`, the file extension of an uploaded file is guessed based on the MIME type. As a r…
- CVE-2024-9108CRITICALCVSS 9.8EG 9.82024-10-01
The Wechat Social login plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'convert_remoteimage_to_local' function in versions up to, and including, 1.3.0. This makes it possible fo…
- CVE-2024-7772CRITICALCVSS 9.8EG 9.82024-09-26
The Jupiter X Core plugin for WordPress is vulnerable to arbitrary file uploads due to a mishandled file type validation in the 'validate' function in all versions up to, and including, 4.6.5. This makes it possible for unauthenticated att…
- CVE-2023-26686CRITICALCVSS 9.8EG 9.82024-09-25
File Upload vulnerability in CS-Cart MultiVendor 4.16.1 allows remote attackers to run arbitrary code via the image upload feature when customizing a shop.
- CVE-2024-46101CRITICALCVSS 9.8EG 9.82024-09-20
GDidees CMS <= v3.9.1 has a file upload vulnerability.
- CVE-2024-40125CRITICALCVSS 9.8EG 9.82024-09-19
An arbitrary file upload vulnerability in the Media Manager function of Closed-Loop Technology CLESS Server v4.5.2 allows attackers to execute arbitrary code via uploading a crafted PHP file to the upload endpoint.
- CVE-2024-46377CRITICALCVSS 9.8EG 9.82024-09-18
Best House Rental Management System 1.0 contains an arbitrary file upload vulnerability in the save_settings() function of the file rental/admin_class.php.
- CVE-2024-27115CRITICALCVSS 9.8EG 9.82024-09-11
A unauthenticated Remote Code Execution (RCE) vulnerability is found in the SO Planning online planning tool. With this vulnerability, an attacker can upload executable files that are moved to a publicly accessible folder before verifying …
- CVE-2024-44849CRITICALCVSS 9.8EG 9.82024-09-09
Qualitor up to 8.24 is vulnerable to Remote Code Execution (RCE) via Arbitrary File Upload in checkAcesso.php.
- CVE-2024-42777CRITICALCVSS 9.8EG 9.82024-08-21
An Unrestricted file upload vulnerability was found in "/music/ajax.php?action=signup" of Kashipara Music Management System v1.0, which allows attackers to execute arbitrary code via uploading a crafted PHP file.
- CVE-2024-42563CRITICALCVSS 9.8EG 9.82024-08-20
An arbitrary file upload vulnerability in ERP commit 44bd04 allows attackers to execute arbitrary code via uploading a crafted HTML file.
- CVE-2024-7732CRITICALCVSS 9.8EG 9.82024-08-14
Dr.ID Access Control System from SECOM does not properly validate a specific page parameter, allowing unauthenticated remote attackers to inject SQL commands to read, modify, and delete database contents.
- CVE-2024-38530CRITICALCVSS 9.8EG 9.82024-08-12
The Open eClass platform (formerly known as GUnet eClass) is a complete Course Management System. An arbitrary file upload vulnerability in the "save" functionality of the H5P module enables unauthenticated users to upload arbitrary files …
- CVE-2024-41577CRITICALCVSS 9.8EG 9.82024-08-12
An arbitrary file upload vulnerability in the Ueditor component of productinfoquick v1.0 allows attackers to execute arbitrary code via uploading a crafted PNG file.
- CVE-2024-7257CRITICALCVSS 9.8EG 9.82024-08-03
The YayExtra – WooCommerce Extra Product Options plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the handle_upload_file function in all versions up to, and including, 1.3.7. This makes …
- CVE-2024-6220CRITICALCVSS 9.8EG 9.82024-07-17
The 简数采集器 (Keydatas) plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the keydatas_downloadImages function in all versions up to, and including, 2.5.2. This makes it possible for…
- CVE-2024-40394CRITICALCVSS 9.8EG 9.82024-07-16
Simple Library Management System Project Using PHP/MySQL v1.0 was discovered to contain an arbitrary file upload vulnerability via the component ajax.php.
- CVE-2024-40425CRITICALCVSS 9.8EG 9.82024-07-16
File Upload vulnerability in Nanjin Xingyuantu Technology Co Sparkshop (Spark Mall B2C Mall v.1.1.6 and before allows a remote attacker to execute arbitrary code via the contorller/common.php component.
- CVE-2024-6314CRITICALCVSS 9.8EG 9.82024-07-09
The IQ Testimonials plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'process_image_upload' function in versions up to, and including, 2.2.7. This makes it possible for unauthenti…
- CVE-2024-6313CRITICALCVSS 9.8EG 9.82024-07-09
The Gutenberg Forms plugin for WordPress is vulnerable to arbitrary file uploads due to the users can specify the allowed file types in the 'upload' function in versions up to, and including, 2.2.9. This makes it possible for unauthenticat…
- CVE-2024-27903CRITICALCVSS 9.8EG 9.82024-07-08
OpenVPN plug-ins on Windows with OpenVPN 2.6.9 and earlier could be loaded from any directory, which allows an attacker to load an arbitrary plug-in which can be used to interact with the privileged OpenVPN interactive service.
- CVE-2024-6127CRITICALCVSS 9.8EG 9.82024-06-27
BC Security Empire before 5.9.3 is vulnerable to a path traversal issue that can lead to remote code execution. A remote, unauthenticated attacker can exploit this vulnerability over HTTP by acting as a normal agent, completing all cryptog…
- CVE-2024-35527CRITICALCVSS 9.8EG 9.82024-06-25
An arbitrary file upload vulnerability in /fileupload/upload.cfm in Daemon PTY Limited FarCry Core framework before 7.2.14 allows attackers to execute arbitrary code via uploading a crafted .cfm file.
- CVE-2023-45197CRITICALCVSS 9.8EG 9.82024-06-21
The file upload plugin in Adminer and AdminerEvo allows an attacker to upload a file with a table name of “..” to the root of the Adminer directory. The attacker can effectively guess the name of the uploaded file and execute it. Admin…
- CVE-2024-33836CRITICALCVSS 9.8EG 9.82024-06-19
In the module "JA Marketplace" (jamarketplace) up to version 9.0.1 from JA Module for PrestaShop, a guest can upload files with extensions .php. In version 6.X, the method `JmarketplaceproductModuleFrontController::init()` and in version 8…
- CVE-2024-3229CRITICALCVSS 9.8EG 9.82024-06-19
The Salon booking system plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the SLN_Action_Ajax_ImportAssistants function along with missing authorization checks in all versions up to, and i…
- CVE-2024-34833CRITICALCVSS 9.8EG 9.82024-06-17
Sourcecodester Payroll Management System v1.0 is vulnerable to File Upload. Users can upload images via the "save_settings" page. An unauthenticated attacker can leverage this functionality to upload a malicious PHP file instead. Successfu…
- CVE-2024-3912CRITICALCVSS 9.8EG 9.82024-06-14
Certain models of ASUS routers have an arbitrary firmware upload vulnerability. An unauthenticated remote attacker can exploit this vulnerability to execute arbitrary system commands on the device.
- CVE-2024-31777CRITICALCVSS 9.8EG 9.82024-06-13
File Upload vulnerability in openeclass v.3.15 and before allows an attacker to execute arbitrary code via a crafted file to the certbadge.php endpoint.
- CVE-2024-1659CRITICALCVSS 9.8EG 9.82024-06-12
Arbitrary File Upload vulnerability in MegaBIP software allows attacker to upload any file to the server (including a PHP code file) without an authentication. This issue affects MegaBIP software versions through 5.10.
- CVE-2024-37273CRITICALCVSS 9.8EG 9.82024-06-04
An arbitrary file upload vulnerability in the /v1/app/appendFileSync interface of Jan v0.4.12 allows attackers to execute arbitrary code via uploading a crafted file.
- CVE-2024-36858CRITICALCVSS 9.8EG 9.82024-06-04
An arbitrary file upload vulnerability in the /v1/app/writeFileSync interface of Jan v0.4.12 allows attackers to execute arbitrary code via uploading a crafted file.
- CVE-2024-29974CRITICALCVSS 9.8EG 9.82024-06-04
** UNSUPPORTED WHEN ASSIGNED ** The remote code execution vulnerability in the CGI program “file_upload-cgi” in Zyxel NAS326 firmware versions before V5.21(AAZF.17)C0 and NAS542 firmware versions before V5.21(ABAG.14)C0 could allow an…
- CVE-2024-35510CRITICALCVSS 9.8EG 9.82024-05-28
An arbitrary file upload vulnerability in /dede/file_manage_control.php of DedeCMS v5.7.114 allows attackers to execute arbitrary code via uploading a crafted file.
- CVE-2024-35570CRITICALCVSS 9.8EG 9.82024-05-23
An arbitrary file upload vulnerability in the component \controller\ImageUploadController.class of inxedu v2.0.6 allows attackers to execute arbitrary code via uploading a crafted jsp file.
Map vulnerabilities like CWE-434 to your infrastructure
EchelonGraph correlates every CVE — across CWE-434 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →