CWE-434— Unrestricted Upload of File with Dangerous Type
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.— MITRE CWE catalog
4,557 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-434page 20 of 92
- CVE-2016-15033CRITICALCVSS 9.8EG 9.82023-06-07
The Delete All Comments plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the via the delete-all-comments.php file in versions up to, and including, 2.0. This makes it possible for unauthen…
- CVE-2023-29631CRITICALCVSS 9.8EG 9.82023-06-05
PrestaShop jmsslider 1.6.0 is vulnerable to Incorrect Access Control via ajax_jmsslider.php.
- CVE-2023-33386CRITICALCVSS 9.8EG 9.82023-06-05
MarsCTF 1.2.1 has an arbitrary file upload vulnerability in the interface for uploading attachments in the background.
- CVE-2023-33508CRITICALCVSS 9.8EG 9.82023-05-31
KramerAV VIA GO² < 4.0.1.1326 is vulnerable to unauthenticated file upload resulting in Remote Code Execution (RCE).
- CVE-2023-29721CRITICALCVSS 9.8EG 9.82023-05-24
SofaWiki <= 3.8.9 has a file upload vulnerability that leads to command execution.
- CVE-2023-28409CRITICALCVSS 9.8EG 9.82023-05-23
Unrestricted upload of file with dangerous type exists in MW WP Form versions v4.4.2 and earlier, which may allow a remote unauthenticated attacker to upload an arbitrary file.
- CVE-2023-27397CRITICALCVSS 9.8EG 9.82023-05-23
Unrestricted upload of file with dangerous type exists in MicroEngine Mailform version 1.1.0 to 1.1.8. If the product's file upload function and server save option are enabled, a remote attacker may save an arbitrary file on the server and…
- CVE-2023-31689CRITICALCVSS 9.8EG 9.82023-05-22
In Wcms 0.3.2, an attacker can send a crafted request from a vulnerable web application backend server /wcms/wex/html.php via the finish parameter and the textAreaCode parameter. It can write arbitrary strings into custom file names and up…
- CVE-2023-30333CRITICALCVSS 9.8EG 9.82023-05-18
An arbitrary file upload vulnerability in the component /admin/ThemeController.java of PerfreeBlog v3.1.2 allows attackers to execute arbitrary code via a crafted file.
- CVE-2023-31903CRITICALCVSS 9.8EG 9.82023-05-17
GuppY CMS 6.00.10 is vulnerable to Unrestricted File Upload which allows remote attackers to execute arbitrary code by uploading a php file.
- CVE-2023-31857CRITICALCVSS 9.8EG 9.82023-05-16
Sourcecodester Online Computer and Laptop Store 1.0 allows unrestricted file upload and can lead to remote code execution. The vulnerability path is /classes/Users.php?f=save.
- CVE-2022-4774CRITICALCVSS 9.8EG 9.82023-05-15
The Bit Form WordPress plugin before 1.9 does not validate the file types uploaded via it's file upload form field, allowing unauthenticated users to upload arbitrary files types such as PHP or HTML files to the server, leading to Remote C…
- CVE-2023-30247CRITICALCVSS 9.8EG 9.82023-05-12
File Upload vulnerability found in Oretnom23 Storage Unit Rental Management System v.1.0 allows a remote attacker to execute arbitrary code via the update_settings parameter.
- CVE-2023-30185CRITICALCVSS 9.8EG 9.82023-05-08
CRMEB v4.4 to v4.6 was discovered to contain an arbitrary file upload vulnerability via the component \attachment\SystemAttachmentServices.php.
- CVE-2023-30090CRITICALCVSS 9.8EG 9.82023-05-05
Semcms Shop v4.2 was discovered to contain an arbitrary file uplaod vulnerability via the component SEMCMS_Upfile.php. This vulnerability allows attackers to execute arbitrary code via uploading a crafted PHP file.
- CVE-2023-30122CRITICALCVSS 9.8EG 9.82023-05-05
An arbitrary file upload vulnerability in the component /admin/ajax.php?action=save_menu of Online Food Ordering System v2.0 allows attackers to execute arbitrary code via uploading a crafted PHP file.
- CVE-2023-30264CRITICALCVSS 9.8EG 9.82023-05-04
CLTPHP <=6.0 is vulnerable to Unrestricted Upload of File with Dangerous Type via application/admin/controller/Template.php:update.
- CVE-2023-29635CRITICALCVSS 9.8EG 9.82023-05-01
File upload vulnerability in Antabot White-Jotter v0.2.2, allows remote attackers to execute malicious code via the file parameter to function coversUpload.
- CVE-2022-45802CRITICALCVSS 9.8EG 9.82023-05-01
Streampark allows any users to upload a jar as application, but there is no mandatory verification of the uploaded file type, causing users to upload some high-risk files, and may upload them to any directory, Users of the affected versio…
- CVE-2023-29268CRITICALCVSS 9.8EG 9.82023-04-26
The Splus Server component of TIBCO Software Inc.'s TIBCO Spotfire Statistics Services contains a vulnerability that allows an unauthenticated remote attacker to upload or modify arbitrary files within the web server directory on the affec…
- CVE-2022-34128CRITICALCVSS 9.8EG 9.82023-04-16
The Cartography (aka positions) plugin before 6.0.1 for GLPI allows remote code execution via PHP code in the POST data to front/upload.php.
- CVE-2020-19802CRITICALCVSS 9.8EG 9.82023-04-11
File Upload vulnerability found in Milken DoyoCMS v.2.3 allows a remote attacker to execute arbitrary code via the upload file type parameter.
- CVE-2023-27178CRITICALCVSS 9.8EG 9.82023-04-10
An arbitrary file upload vulnerability in the upload function of GDidees CMS 3.9.1 allows attackers to execute arbitrary code via a crafted file.
- CVE-2023-29375CRITICALCVSS 9.8EG 9.82023-04-10
An issue was discovered in Progress Sitefinity 13.3 before 13.3.7647, 14.0 before 14.0.7736, 14.1 before 14.1.7826, 14.2 before 14.2.7930, and 14.3 before 14.3.8025. There is potentially dangerous file upload through the SharePoint connect…
- CVE-2023-27602CRITICALCVSS 9.8EG 9.82023-04-10
In Apache Linkis <=1.3.1, The PublicService module uploads files without restrictions on the path to the uploaded files, and file types. We recommend users upgrade the version of Linkis to version 1.3.2. For versions <=1.3.1, we s…
- CVE-2023-27033CRITICALCVSS 9.8EG 9.82023-04-07
Prestashop cdesigner v3.1.3 to v3.1.8 was discovered to contain a code injection vulnerability via the component CdesignerSaverotateModuleFrontController::initContent().
- CVE-2023-24720CRITICALCVSS 9.8EG 9.82023-04-05
An arbitrary file upload vulnerability in readium-js v0.32.0 allows attackers to execute arbitrary code via uploading a crafted EPUB file.
- CVE-2021-31707CRITICALCVSS 9.8EG 9.82023-04-04
Permissions vulnerability found in KiteCMS allows a remote attacker to execute arbitrary code via the upload file type.
- CVE-2023-28731CRITICALCVSS 9.8EG 9.82023-03-30
AnyMailing Joomla Plugin is vulnerable to unauthenticated remote code execution, when being granted access to the campaign's creation on front-office due to unrestricted file upload allowing PHP code to be injected. This issue affect…
- CVE-2023-26968CRITICALCVSS 9.8EG 9.82023-03-29
In Atrocore 1.5.25, the Create Import Feed option with glyphicon-glyphicon-paperclip function is vulnerable to Unauthenticated File upload.
- CVE-2023-25909CRITICALCVSS 9.8EG 9.82023-03-27
HGiga OAKlouds file uploading function does not restrict upload of file with dangerous type. An unauthenticated remote attacker can exploit this vulnerability to upload and run arbitrary executable files to perform arbitrary command or dis…
- CVE-2023-25655CRITICALCVSS 9.8EG 9.82023-03-23
baserCMS is a Content Management system. Prior to version 4.7.5, any file may be uploaded on the management system of baserCMS. Version 4.7.5 contains a patch.
- CVE-2023-25654CRITICALCVSS 9.8EG 9.82023-03-23
baserCMS is a Content Management system. Prior to version 4.7.5, there is a Remote Code Execution (RCE) Vulnerability in the management system of baserCMS. Version 4.7.5 contains a patch.
- CVE-2023-27757CRITICALCVSS 9.8EG 9.82023-03-15
An arbitrary file upload vulnerability in the /admin/user/uploadImg component of PerfreeBlog v3.1.1 allows attackers to execute arbitrary code via a crafted JPG file.
- CVE-2021-33352CRITICALCVSS 9.8EG 9.82023-03-08
An issue in Wyomind Help Desk Magento 2 extension v.1.3.6 and before fixed in v.1.3.7 allows attacker to execute arbitrary code via a phar file upload in the ticket message field.
- CVE-2023-26949CRITICALCVSS 9.8EG 9.82023-03-06
An arbitrary file upload vulnerability in the component /admin1/config/update of onekeyadmin v1.3.9 allows attackers to execute arbitrary code via a crafted PHP file.
- CVE-2022-4328CRITICALCVSS 9.8EG 9.82023-03-06
The WooCommerce Checkout Field Manager WordPress plugin before 18.0 does not validate files to be uploaded, which could allow unauthenticated attackers to upload arbitrary files such as PHP on the server
- CVE-2021-33224CRITICALCVSS 9.8EG 9.82023-02-24
File upload vulnerability in Umbraco Forms v.8.7.0 allows unauthenticated attackers to execute arbitrary code via a crafted web.config and asp file.
- CVE-2022-39983CRITICALCVSS 9.8EG 9.82023-02-22
File upload vulnerability in Pro Gamma Instant Developer RD3 22.5 r23, r30, and possibly earlier versions, allows attackers to execute arbitrary code.
- CVE-2022-41217CRITICALCVSS 9.8EG 9.82023-02-22
Cloudflow contains a unauthenticated file upload vulnerability, which makes it possible for an attacker to upload malicious files to the CLOUDFLOW PROOFSCOPE built-in storage.
- CVE-2021-35261CRITICALCVSS 9.8EG 9.82023-02-17
File Upload Vulnerability in Yupoxion BearAdmin before commit 10176153528b0a914eb4d726e200fd506b73b075 allows attacker to execute arbitrary remote code via the Upfile function of the extend/tools/Ueditor endpoint.
- CVE-2023-24646CRITICALCVSS 9.8EG 9.82023-02-13
An arbitrary file upload vulnerability in the component /fos/admin/ajax.php of Food Ordering System v2.0 allows attackers to execute arbitrary code via a crafted PHP file.
- CVE-2022-45527CRITICALCVSS 9.8EG 9.82023-02-08
File upload vulnerability in Future-Depth Institutional Management Website (IMS) 1.0, allows unauthorized attackers to directly upload malicious files to the courseimg directory.
- CVE-2023-24202CRITICALCVSS 9.8EG 9.82023-02-06
Raffle Draw System v1.0 was discovered to contain a local file inclusion vulnerability via the page parameter in index.php.
- CVE-2022-48079CRITICALCVSS 9.8EG 9.82023-02-02
Monnai aaPanel host system v1.5 contains an access control issue which allows attackers to escalate privileges and execute arbitrary code via uploading a crafted PHP file to the virtual host directory of the system.
- CVE-2022-42971CRITICALCVSS 9.8EG 9.82023-02-01
A CWE-434: Unrestricted Upload of File with Dangerous Type vulnerability exists that could cause remote code execution when the attacker uploads a malicious JSP file. Affected Products: APC Easy UPS Online Monitoring Software (Windows 7, 1…
- CVE-2022-47769CRITICALCVSS 9.8EG 9.82023-02-01
An arbitrary file write vulnerability in Serenissima Informatica Fast Checkin v1.0 allows unauthenticated attackers to upload malicious files in the web root of the application to gain access to the server via the web shell.
- CVE-2022-47854CRITICALCVSS 9.8EG 9.82023-01-31
i-librarian 4.10 is vulnerable to Arbitrary file upload in ajaxsupplement.php.
- CVE-2022-48006CRITICALCVSS 9.8EG 9.82023-01-30
An arbitrary file upload vulnerability in taocms v3.0.2 allows attackers to execute arbitrary code via a crafted PHP file. This vulnerability is exploited via manipulation of the upext variable at /include/Model/Upload.php.
- CVE-2022-4395CRITICALCVSS 9.8EG 9.82023-01-30
The Membership For WooCommerce WordPress plugin before 2.1.7 does not validate uploaded files, which could allow unauthenticated users to upload arbitrary files, such as malicious PHP code, and achieve RCE.
Map vulnerabilities like CWE-434 to your infrastructure
EchelonGraph correlates every CVE — across CWE-434 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →