CWE-434— Unrestricted Upload of File with Dangerous Type
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.— MITRE CWE catalog
4,557 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-434page 17 of 92
- CVE-2024-35570CRITICALCVSS 9.8EG 9.82024-05-23
An arbitrary file upload vulnerability in the component \controller\ImageUploadController.class of inxedu v2.0.6 allows attackers to execute arbitrary code via uploading a crafted jsp file.
- CVE-2024-35375CRITICALCVSS 9.8EG 9.82024-05-23
There is an arbitrary file upload vulnerability on the media add .php page in the backend of the website in version 5.7.114 of DedeCMS
- CVE-2024-35080CRITICALCVSS 9.8EG 9.82024-05-23
An arbitrary file upload vulnerability in the gok4 method of inxedu v2024.4 allows attackers to execute arbitrary code via uploading a crafted .jsp file.
- CVE-2024-35079CRITICALCVSS 9.8EG 9.82024-05-23
An arbitrary file upload vulnerability in the uploadAudio method of inxedu v2024.4 allows attackers to execute arbitrary code via uploading a crafted .jsp file.
- CVE-2024-5084CRITICALCVSS 9.8EG 9.82024-05-23
The Hash Form – Drag & Drop Form Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'file_upload_action' function in all versions up to, and including, 1.1.0. This makes it pos…
- CVE-2024-34982CRITICALCVSS 9.8EG 9.82024-05-17
An arbitrary file upload vulnerability in the component /include/file.php of lylme_spage v1.9.5 allows attackers to execute arbitrary code via uploading a crafted file.
- CVE-2024-4825CRITICALCVSS 9.8EG 9.82024-05-14
A vulnerability has been discovered in Agentejo Cockpit CMS v0.5.5 that consists in an arbitrary file upload in ‘/media/api’ parameter via post request. An attacker could upload files to the server, compromising the entire infrastructu…
- CVE-2024-4560CRITICALCVSS 9.8EG 9.82024-05-14
The Kognetiks Chatbot for WordPress plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the chatbot_chatgpt_upload_file_to_assistant function in all versions up to, and including, 1.9.9. This…
- CVE-2024-33120CRITICALCVSS 9.8EG 9.82024-05-07
Roothub v2.5 was discovered to contain an arbitrary file upload vulnerability via the customPath parameter in the upload() function. This vulnerability allows attackers to execute arbitrary code via a crafted JSP file.
- CVE-2024-4345CRITICALCVSS 9.8EG 9.82024-05-07
The Startklar Elementor Addons plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'process' function in the 'startklarDropZoneUploadProcess' class in versions up to, and including, …
- CVE-2024-33786CRITICALCVSS 9.8EG 9.82024-05-03
An arbitrary file upload vulnerability in Zhongcheng Kexin Ticketing Management Platform 20.04 allows attackers to execute arbitrary code via uploading a crafted file.
- CVE-2023-51590CRITICALCVSS 9.8EG 9.82024-05-03
Voltronic Power ViewPower Pro UpLoadAction Unrestricted File Upload Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Voltronic Power ViewPower Pro. Authe…
- CVE-2024-2667CRITICALCVSS 9.8EG 9.82024-05-02
The InstaWP Connect – 1-click WP Staging & Migration plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file validation in the /wp-json/instawp-connect/v1/config REST API endpoint in all versions up to, and…
- CVE-2024-3962CRITICALCVSS 9.8EG 9.82024-04-26
The Product Addons & Fields for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the ppom_upload_file function in all versions up to, and including, 32.0.18. This makes it poss…
- CVE-2024-31615CRITICALCVSS 9.8EG 9.82024-04-25
ThinkCMF 6.0.9 is vulnerable to File upload via UeditorController.php.
- CVE-2024-29661CRITICALCVSS 9.8EG 9.82024-04-22
A File Upload vulnerability in DedeCMS v5.7 allows a local attacker to execute arbitrary code via a crafted payload.
- CVE-2024-32161CRITICALCVSS 9.8EG 9.82024-04-17
jizhiCMS 2.5 suffers from a File upload vulnerability.
- CVE-2024-3863CRITICALCVSS 9.8EG 9.82024-04-16
The executable file warning was not presented when downloading .xrm-ms files. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.* This vulnerability affects Firefox < 125, Firefox ESR < 115…
- CVE-2024-2221CRITICALCVSS 9.8EG 9.82024-04-10
qdrant/qdrant is vulnerable to a path traversal and arbitrary file upload vulnerability via the `/collections/{COLLECTION}/snapshots/upload` endpoint, specifically through the `snapshot` parameter. This vulnerability allows attackers to up…
- CVE-2024-31012CRITICALCVSS 9.8EG 9.82024-04-03
An issue was discovered in SEMCMS v.4.8, allows remote attackers to execute arbitrary code, escalate privileges, and obtain sensitive information via the upload.php file.
- CVE-2024-28713CRITICALCVSS 9.8EG 9.82024-03-28
An issue in Mblog Blog system v.3.5.0 allows an attacker to execute arbitrary code via a crafted file to the theme management feature.
- CVE-2024-28441CRITICALCVSS 9.8EG 9.82024-03-22
File Upload vulnerability in magicflue v.7.0 and before allows a remote attacker to execute arbitrary code via a crafted request to the messageid parameter of the mail/mailupdate.jsp endpoint.
- CVE-2024-29859CRITICALCVSS 9.8EG 9.82024-03-21
In MISP before 2.4.187, add_misp_export in app/Controller/EventsController.php does not properly check for a valid file upload.
- CVE-2023-42286CRITICALCVSS 9.8EG 9.82024-03-14
There is a PHP file inclusion vulnerability in the template configuration of eyoucms v1.6.4, allowing attackers to execute code or system commands through a carefully crafted malicious payload.
- CVE-2024-28423CRITICALCVSS 9.8EG 9.82024-03-14
Airflow-Diagrams v2.1.0 was discovered to contain an arbitrary file upload vulnerability in the unsafe_load function at cli.py. This vulnerability allows attackers to execute arbitrary code via uploading a crafted YML file.
- CVE-2023-41505CRITICALCVSS 9.8EG 9.82024-03-13
An arbitrary file upload vulnerability in the Add Student's Profile Picture function of Student Enrollment In PHP v1.0 allows attackers to execute arbitrary code via uploading a crafted PHP file.
- CVE-2024-1527CRITICALCVSS 9.8EG 9.82024-03-12
Unrestricted file upload vulnerability in CMS Made Simple, affecting version 2.2.14. This vulnerability allows an authenticated user to bypass the security measures of the upload functionality and potentially create a remote execution of c…
- CVE-2024-27747CRITICALCVSS 9.8EG 9.82024-03-01
File Upload vulnerability in Petrol Pump Mangement Software v.1.0 allows an attacker to execute arbitrary code via a crafted payload to the email Image parameter in the profile.php component.
- CVE-2024-0864CRITICALCVSS 9.8EG 9.82024-02-29
Enabling Simple Ajax Uploader plugin included in Laragon open-source software allows for a remote code execution (RCE) attack via an improper input validation in a file_upload.php file which serves as an example. By default, Laragon is not…
- CVE-2023-41506CRITICALCVSS 9.8EG 9.82024-02-27
An arbitrary file upload vulnerability in the Update/Edit Student's Profile Picture function of Student Enrollment In PHP v1.0 allows attackers to execute arbitrary code via uploading a crafted PHP file.
- CVE-2024-25802CRITICALCVSS 9.8EG 9.82024-02-22
SKINsoft S-Museum 7.02.3 allows Unrestricted File Upload via the Add Media function. Unlike in CVE-2024-25801, the attack payload is the file content.
- CVE-2024-25274CRITICALCVSS 9.8EG 9.82024-02-20
An arbitrary file upload vulnerability in the component /sysFile/upload of Novel-Plus v4.3.0-RC1 allows attackers to execute arbitrary code via uploading a crafted file.
- CVE-2024-22824CRITICALCVSS 9.8EG 9.82024-02-20
An issue in Timo v.2.0.3 allows a remote attacker to execute arbitrary code via the filetype restrictions in the UploadController.java component.
- CVE-2024-25414CRITICALCVSS 9.8EG 9.82024-02-16
An arbitrary file upload vulnerability in /admin/upgrade of CSZ CMS v1.3.0 allows attackers to execute arbitrary code via uploading a crafted Zip file.
- CVE-2024-23759CRITICALCVSS 9.8EG 9.82024-02-12
Deserialization of Untrusted Data in Gambio through 4.9.2.0 allows attackers to run arbitrary code via "search" parameter of the Parcelshopfinder/AddAddressBookEntry" function.
- CVE-2024-25674CRITICALCVSS 9.8EG 9.82024-02-09
An issue was discovered in MISP before 2.4.184. Organisation logo upload is insecure because of a lack of checks for the file extension and MIME type.
- CVE-2024-24393CRITICALCVSS 9.8EG 9.82024-02-08
File Upload vulnerability index.php in Pichome v.1.1.01 allows a remote attacker to execute arbitrary code via crafted POST request.
- CVE-2024-24202CRITICALCVSS 9.8EG 9.82024-02-08
An arbitrary file upload vulnerability in /upgrade/control.php of ZenTao Community Edition v18.10, ZenTao Biz v8.10, and ZenTao Max v4.10 allows attackers to execute arbitrary code via uploading a crafted .txt file.
- CVE-2024-24026CRITICALCVSS 9.8EG 9.82024-02-08
An arbitrary File upload vulnerability exists in Novel-Plus v4.3.0-RC1 and prior versions at com.java2nb.system.controller.SysUserController: uploadImg(). An attacker can pass in specially crafted filename parameter to perform arbitrary Fi…
- CVE-2024-24025CRITICALCVSS 9.8EG 9.82024-02-08
An arbitrary File upload vulnerability exists in Novel-Plus v4.3.0-RC1 and prior at com.java2nb.common.controller.FileController: upload(). An attacker can pass in specially crafted filename parameter to perform arbitrary File download.
- CVE-2024-24024CRITICALCVSS 9.8EG 9.82024-02-08
An arbitrary File download vulnerability exists in Novel-Plus v4.3.0-RC1 and prior at com.java2nb.common.controller.FileController: fileDownload(). An attacker can pass in specially crafted filePath and fieName parameters to perform arbitr…
- CVE-2024-24000CRITICALCVSS 9.8EG 9.82024-02-06
jshERP v3.3 is vulnerable to Arbitrary File Upload. The jshERP-boot/systemConfig/upload interface does not check the uploaded file type, and the biz parameter can be spliced into the upload path, resulting in arbitrary file uploads with co…
- CVE-2021-4436CRITICALCVSS 9.8EG 9.82024-02-05
The 3DPrint Lite WordPress plugin before 1.9.1.5 does not have any authorisation and does not check the uploaded file in its p3dlite_handle_upload AJAX action , allowing unauthenticated users to upload arbitrary file to the web server. How…
- CVE-2023-6675CRITICALCVSS 9.8EG 9.82024-02-02
Unrestricted Upload of File with Dangerous Type vulnerability in National Keep Cyber Security Services CyberMath allows Upload a Web Shell to a Web Server. This issue affects CyberMath: from v.1.4 before v.1.5.
- CVE-2023-51925CRITICALCVSS 9.8EG 9.82024-01-20
An arbitrary file upload vulnerability in the nccloud.web.arcp.taskmonitor.action.ArcpUploadAction.doAction() method of YonBIP v3_23.05 allows attackers to execute arbitrary code via uploading a crafted file.
- CVE-2023-51924CRITICALCVSS 9.8EG 9.82024-01-20
An arbitrary file upload vulnerability in the uap.framework.rc.itf.IResourceManager interface of YonBIP v3_23.05 allows attackers to execute arbitrary code via uploading a crafted file.
- CVE-2023-51928CRITICALCVSS 9.8EG 9.82024-01-20
An arbitrary file upload vulnerability in the nccloud.web.arcp.taskmonitor.action.ArcpUploadAction.doAction() method of YonBIP v3_23.05 allows attackers to execute arbitrary code via uploading a crafted file.
- CVE-2021-31314CRITICALCVSS 9.8EG 9.82024-01-20
File upload vulnerability in ejinshan v8+ terminal security system allows attackers to upload arbitrary files to arbitrary locations on the server.
- CVE-2023-27168CRITICALCVSS 9.8EG 9.82024-01-19
An arbitrary file upload vulnerability in Xpand IT Write-back Manager v2.3.1 allows attackers to execute arbitrary code via a crafted jsp file.
- CVE-2023-6316CRITICALCVSS 9.8EG 9.82024-01-11
The MW WP Form plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the '_single_file_upload' function in versions up to, and including, 5.0.1. This makes it possible for unauthenticated …
Map vulnerabilities like CWE-434 to your infrastructure
EchelonGraph correlates every CVE — across CWE-434 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →