CWE-434— Unrestricted Upload of File with Dangerous Type
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.— MITRE CWE catalog
4,384 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-434page 2 of 88
- CVE-2012-5190CRITICALCVSS 9.8EG 9.82020-01-21
Prizm Content Connect 5.1 has an Arbitrary File Upload Vulnerability
- CVE-2012-6649CRITICALCVSS 9.8EG 9.82020-01-23
WordPress WP GPX Maps Plugin 1.1.21 allows remote attackers to execute arbitrary PHP code via improper file upload.
- CVE-2013-0803CRITICALCVSS 9.8EG 9.82020-02-11
A PHP File Upload Vulnerability exists in PolarBear CMS 2.5 via upload.php, which could let a malicious user execute arbitrary code.
- CVE-2013-10032HIGHCVSS 8.8EG 8.82025-07-25
An authenticated remote code execution vulnerability exists in GetSimpleCMS version 3.2.1. The application’s upload.php endpoint allows authenticated users to upload arbitrary files without proper validation of MIME types or extensions. …
- CVE-2013-10034CRITICALCVSS 9.3EG 9.32025-07-31
An unrestricted file upload vulnerability exists in Kaseya KServer versions prior to 6.3.0.2. The uploadImage.asp endpoint allows unauthenticated users to upload files to arbitrary paths via a crafted filename parameter in a multipart/form…
- CVE-2013-10038CRITICALCVSS 9.3EG 9.32025-07-31
An unauthenticated arbitrary file upload vulnerability exists in FlashChat versions 6.0.2 and 6.0.4 through 6.0.8. The upload.php endpoint fails to properly validate file types and authentication, allowing attackers to upload malicious PHP…
- CVE-2013-10040CRITICALCVSS 9.8EG 9.82025-07-31
ClipBucket version 2.6 and earlier contains a critical vulnerability in the ofc_upload_image.php script located at /admin_area/charts/ofc-library/. This endpoint allows unauthenticated users to upload arbitrary files, including executable …
- CVE-2013-10043CRITICALCVSS 9.5EG 9.52025-07-31
A vulnerability exists in OAstium VoIP PBX astium-confweb-2.1-25399 and earlier, where improper input validation in the logon.php script allows an attacker to bypass authentication via SQL injection. Once authenticated as an administrator,…
- CVE-2013-10044HIGHCVSS 8.8EG 8.82025-08-01
An authenticated SQL injection vulnerability exists in OpenEMR ≤ 4.1.1 Patch 14 that allows a low-privileged attacker to extract administrator credentials and subsequently escalate privileges. Once elevated, the attacker can exploit an u…
- CVE-2013-10047CRITICALCVSS 9.3EG 9.32025-08-01
An unrestricted file upload vulnerability exists in MiniWeb HTTP Server <= Build 300 that allows unauthenticated remote attackers to upload arbitrary files to the server’s filesystem. By abusing the upload handler and crafting a traversa…
- CVE-2013-10054CRITICALCVSS 9.3EG 9.32025-08-04
An unauthenticated arbitrary file upload vulnerability exists in LibrettoCMS version 1.1.7 (and possibly earlier) contains an unauthenticated arbitrary file upload vulnerability in its File Manager plugin. The upload handler located at adm…
- CVE-2013-10055CRITICALCVSS 9.3EG 9.32025-08-01
An unauthenticated arbitrary file upload vulnerability exists in Havalite CMS version 1.1.7 (and possibly earlier) in the upload.php script. The application fails to enforce proper file extension validation and authentication checks, allow…
- CVE-2013-10066CRITICALCVSS 10.0EG 10.02025-08-05
An unauthenticated arbitrary file upload vulnerability exists in Kordil EDMS v2.2.60rc3. The application exposes an upload endpoint (users_add.php) that allows attackers to upload files to the /userpictures/ directory without authenticat…
- CVE-2013-10067CRITICALCVSS 9.4EG 9.42025-08-05
Glossword versions 1.8.8 through 1.8.12 contain an authenticated arbitrary file upload vulnerability. When deployed as a standalone application, the administrative interface (gw_admin.php) allows users with administrator privileges to uplo…
- CVE-2013-1916HIGHCVSS 8.8EG 8.82022-06-24
In WordPress Plugin User Photo 0.9.4, when a photo is uploaded, it is only partially validated and it is possible to upload a backdoor on the server hosting WordPress. This backdoor can be called (executed) even if the photo has not been y…
- CVE-2013-20002CRITICALCVSS 9.8EG 9.82021-06-17
Elemin allows remote attackers to upload and execute arbitrary PHP code via the Themify framework (before 1.2.2) wp-content/themes/elemin/themify/themify-ajax.php file.
- CVE-2013-2057CRITICALCVSS 9.8EG 9.82020-02-11
YaBB through 2.5.2: 'guestlanguage' Cookie Parameter Local File Include Vulnerability
- CVE-2013-2748CRITICALCVSS 9.8EG 9.82020-01-28
Belkin Wemo Switch before WeMo_US_2.00.2176.PVT could allow remote attackers to upload arbitrary files onto the system.
- CVE-2013-3591HIGHCVSS 8.8EG 8.82020-02-07
vTiger CRM 5.3 and 5.4: 'files' Upload Folder Arbitrary PHP Code Execution Vulnerability
- CVE-2013-3684CRITICALCVSS 9.8EG 9.82020-02-11
NextGEN Gallery plugin before 1.9.13 for WordPress: ngggallery.php file upload
- CVE-2013-4796HIGHCVSS 8.8EG 8.82019-12-27
ReviewBoard 1.6.17 allows code execution by attaching PHP scripts to review request
- CVE-2013-6234HIGHCVSS 8.0EG 8.02019-11-22
Unrestricted file upload vulnerability in the Worksheet designer in SpagoBI before 4.1 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to …
- CVE-2013-6358HIGHCVSS 8.8EG 8.82020-01-23
PrestaShop 1.5.5 allows remote authenticated attackers to execute arbitrary code by uploading a crafted profile and then accessing it in the module/ directory.
- CVE-2013-7390CRITICALCVSS 9.8EG 9.82020-01-27
Unrestricted file upload vulnerability in AgentLogUploadServlet in ManageEngine DesktopCentral 7.x and 8.0.0 before build 80293 allows remote attackers to execute arbitrary code by uploading a file with a jsp extension, then accessing it v…
- CVE-2013-7426CRITICALCVSS 9.8EG 9.82017-08-29
Insecure Temporary file vulnerability in /tmp/kamailio_fifo in kamailio 4.0.1.
- CVE-2014-0468CRITICALCVSS 9.8EG 9.82025-06-26
Vulnerability in fusionforge in the shipped Apache configuration, where the web server may execute scripts that the users would have uploaded in their raw SCM repositories (SVN, Git, Bzr...). This issue affects fusionforge: before 5.3+20…
- CVE-2014-10074CRITICALCVSS 9.8EG 9.82018-08-27
Umbraco before 7.2.0 has a remote PHP code execution vulnerability because Umbraco.Web.UI/config/umbracoSettings.Release.config does not block the upload of .php files.
- CVE-2014-1214HIGHCVSS 8.8EG 8.82019-11-13
views/upload.php in the ProJoom Smart Flash Header (NovaSFH) component 3.0.2 and earlier for Joomla! allows remote attackers to upload and execute arbitrary files via a crafted (1) dest parameter and (2) arbitrary extension in the Filename…
- CVE-2014-125104MEDIUMCVSS 6.3EG 6.32023-06-01
A vulnerability was found in VaultPress Plugin up to 1.6.0 on WordPress. It has been declared as critical. Affected by this vulnerability is the function protect_aioseo_ajax of the file class.vaultpress-hotfixes.php of the component MailPo…
- CVE-2014-125113CRITICALCVSS 9.3EG 9.32025-08-05
An unrestricted file upload vulnerability exists in Dell (acquired by Quest) KACE K1000 System Management Appliance version 5.0 - 5.3, 5.4 prior to 5.4.76849, and 5.5 prior to 5.5.90547 in the download_agent.php endpoint. An attacker can u…
- CVE-2014-125116CRITICALCVSS 9.3EG 9.32025-07-25
A remote code execution vulnerability exists in HybridAuth versions 2.0.9 through 2.2.2 due to insecure use of the install.php installation script. The script remains accessible after deployment and fails to sanitize input before writing t…
- CVE-2014-125119HIGHCVSS 8.4EG 8.42025-07-25
A filename spoofing vulnerability exists in WinRAR when opening specially crafted ZIP archives. The issue arises due to inconsistencies between the Central Directory and Local File Header entries in ZIP files. When viewed in WinRAR, the fi…
- CVE-2014-125126CRITICALCVSS 9.2EG 9.22025-07-31
An unrestricted file upload vulnerability exists in Simple E-Document versions 3.0 to 3.1 that allows an unauthenticated attacker to bypass authentication by sending a specific cookie header (access=3) with HTTP requests. The application�…
- CVE-2014-2025CRITICALCVSS 9.8EG 9.82020-01-31
Unrestricted file upload vulnerability in an unspecified third party tool in United Planet Intrexx Professional before 5.2 Online Update 0905 and 6.x before 6.0 Online Update 10 allows remote attackers to execute arbitrary code by uploadin…
- CVE-2014-2592CRITICALCVSS 9.8EG 9.82018-03-09
Unrestricted file upload vulnerability in Aruba Web Management portal allows remote attackers to execute arbitrary code by uploading a file with an executable extension.
- CVE-2014-2664HIGHCVSS 8.8EG 8.82017-10-17
Unrestricted file upload vulnerability in the ProfileController::actionUploadPhoto method in protected/controllers/ProfileController.php in X2Engine X2CRM before 4.0 allows remote attackers to execute arbitrary code by uploading a file wit…
- CVE-2014-3448CRITICALCVSS 9.8EG 9.82020-01-09
BSS Continuity CMS 4.2.22640.0 has a Remote Code Execution vulnerability due to unauthenticated file upload
- CVE-2014-4912CRITICALCVSS 9.8EG 9.82018-03-22
An Arbitrary File Upload issue was discovered in Frog CMS 0.9.5 due to lack of extension validation.
- CVE-2014-4972CRITICALCVSS 9.8EG 9.82018-01-08
Unrestricted file upload vulnerability in the Gravity Upload Ajax plugin 1.1 and earlier for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct reque…
- CVE-2014-8337CRITICALCVSS 9.8EG 9.82020-01-03
Unrestricted file upload vulnerability in includes/classes/uploadify-v2.1.4/uploadify.php in HelpDEZk 1.0.1 and earlier allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it v…
- CVE-2014-8516CRITICALCVSS 9.8EG 9.82020-01-03
Unrestricted file upload vulnerability in Visual Mining NetCharts Server allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via unspecified vectors.
- CVE-2014-8739CRITICALCVSS 9.8EG 9.82020-02-08
Unrestricted file upload vulnerability in server/php/UploadHandler.php in the jQuery File Upload Plugin 6.4.4 for jQuery, as used in the Creative Solutions Creative Contact Form (formerly Sexy Contact Form) before 1.0.0 for WordPress and b…
- CVE-2014-9312HIGHCVSS 8.8EG 8.92017-08-28
Unrestricted File Upload vulnerability in Photo Gallery 1.2.5.
- CVE-2014-9619HIGHCVSS 7.2EG 7.22017-09-19
Unrestricted file upload vulnerability in webadmin/ajaxfilemanager/ajaxfilemanager.php in Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4.1.2 allows remote authenticated users with admin privileges on the Cloud Manager web…
- CVE-2015-0258HIGHCVSS 8.8EG 8.82020-02-17
Multiple incomplete blacklist vulnerabilities in the avatar upload functionality in manageuser.php in Collabtive before 2.1 allow remote authenticated users to execute arbitrary code by uploading a file with a (1) .php3, (2) .php4, (3) .ph…
- CVE-2015-0796HIGHCVSS 6.3EG 7.82018-03-02
In open buildservice 2.6 before 2.6.3, 2.5 before 2.5.7 and 2.4 before 2.4.8 the source service patch application could generate non-standard files like symlinks or device nodes, which could allow buildservice users to break of confinement…
- CVE-2015-1000000CRITICALCVSS 9.8EG 9.82016-10-06
Remote file upload vulnerability in mailcwp v1.99 wordpress plugin
- CVE-2015-1000001CRITICALCVSS 9.8EG 9.82016-10-06
Remote file upload vulnerability in fast-image-adder v1.1 Wordpress plugin
- CVE-2015-1000013HIGHCVSS 7.8EG 7.82016-10-06
Remote file upload vulnerability in wordpress plugin csv2wpec-coupon v1.1
- CVE-2015-10087HIGHCVSS 6.3EG 8.82023-03-07
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability has been found in UpThemes Theme DesignFolio Plus 1.2 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to unrestr…
Map vulnerabilities like CWE-434 to your infrastructure
EchelonGraph correlates every CVE — across CWE-434 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →