CWE-434— Unrestricted Upload of File with Dangerous Type
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.— MITRE CWE catalog
4,557 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-434page 23 of 92
- CVE-2022-30808CRITICALCVSS 9.8EG 9.82022-06-02
elitecms 1.0.1 is vulnerable to Arbitrary code execution via admin/manage_uploads.php.
- CVE-2022-30506CRITICALCVSS 9.8EG 9.82022-06-02
An arbitrary file upload vulnerability was discovered in MCMS 5.2.7, allowing an attacker to execute arbitrary code through a crafted ZIP file.
- CVE-2022-30423CRITICALCVSS 9.8EG 9.82022-06-02
Merchandise Online Store v1.0 by oretnom23 has an arbitrary code execution (RCE) vulnerability in the user profile upload point in the system information.
- CVE-2022-24239CRITICALCVSS 9.8EG 9.82022-06-02
ACEweb Online Portal 3.5.065 was discovered to contain an unrestricted file upload vulnerability via attachments.awp.
- CVE-2021-26634CRITICALCVSS 9.8EG 9.82022-06-02
SQL injection and file upload attacks are possible due to insufficient validation of input values in some parameters and variables of files compromising Maxboard, which may lead to arbitrary code execution or privilege escalation. Attacker…
- CVE-2022-29632CRITICALCVSS 9.8EG 9.82022-05-26
An arbitrary file upload vulnerability in the component /course/api/upload/pic of Roncoo Education v9.0.0 allows attackers to execute arbitrary code via a crafted file.
- CVE-2021-42654CRITICALCVSS 9.8EG 9.82022-05-24
SiteServer CMS < V5.1 is affected by an unrestricted upload of a file with dangerous type (getshell), which could be used to execute arbitrary code.
- CVE-2022-30887CRITICALCVSS 9.8EG 9.82022-05-20
Pharmacy Management System v1.0 was discovered to contain a remote code execution (RCE) vulnerability via the component /php_action/editProductImage.php. This vulnerability allows attackers to execute arbitrary code via a crafted image fil…
- CVE-2022-28104CRITICALCVSS 9.8EG 9.82022-05-20
Foxit PDF Editor v11.3.1 was discovered to contain an arbitrary file upload vulnerability.
- CVE-2022-28927CRITICALCVSS 9.8EG 9.82022-05-19
A remote code execution (RCE) vulnerability in Subconverter v0.7.2 allows attackers to execute arbitrary code via crafted config and url parameters.
- CVE-2022-29622CRITICALCVSS 9.8EG 9.82022-05-16
An arbitrary file upload vulnerability in formidable v3.1.4 allows attackers to execute arbitrary code via a crafted filename. NOTE: some third parties dispute this issue because the product has common use cases in which uploading arbitrar…
- CVE-2022-29354CRITICALCVSS 9.8EG 9.82022-05-16
An arbitrary file upload vulnerability in the file upload module of Keystone v4.2.1 allows attackers to execute arbitrary code via a crafted file.
- CVE-2022-29353CRITICALCVSS 9.8EG 9.82022-05-16
An arbitrary file upload vulnerability in the file upload module of Graphql-upload v13.0.0 allows attackers to execute arbitrary code via a crafted filename.
- CVE-2022-29351CRITICALCVSS 9.8EG 9.82022-05-16
An arbitrary file upload vulnerability in the file upload module of Tiddlywiki5 v5.2.2 allows attackers to execute arbitrary code via a crafted SVG file. Note: The vendor argues that this is not a legitimate issue and there is no vulnerabi…
- CVE-2021-42967CRITICALCVSS 9.8EG 9.82022-05-13
Unrestricted file upload in /novel-admin/src/main/java/com/java2nb/common/controller/FileController.java in novel-plus all versions allows allows an attacker to upload malicious JSP files.
- CVE-2022-30448CRITICALCVSS 9.8EG 9.82022-05-11
Hospital Management System in PHP with Source Code (HMS) 1.0 was discovered to contain a File upload vulnerability in treatmentrecord.php.
- CVE-2022-28606CRITICALCVSS 9.8EG 9.82022-05-05
An arbitrary file upload vulnerability exists in Wenzhou Huoyin Information Technology Co., Ltd. BossCMS 1.0, which can be exploited by an attacker to gain control of the server.
- CVE-2022-28120CRITICALCVSS 9.8EG 9.82022-05-05
Beijing Runnier Network Technology Co., Ltd Open virtual simulation experiment teaching management platform software 2.0 has a file upload vulnerability, which can be exploited by an attacker to gain control of the server.
- CVE-2022-29347CRITICALCVSS 9.8EG 9.82022-05-04
An arbitrary file upload vulnerability in Web@rchiv 1.0 allows attackers to execute arbitrary commands via a crafted PHP file.
- CVE-2022-28568CRITICALCVSS 9.8EG 9.82022-05-04
Sourcecodester Doctor's Appointment System 1.0 is vulnerable to File Upload to RCE via Image upload from the administrator panel. An attacker can obtain remote command execution just by knowing the path where the images are stored.
- CVE-2021-43934CRITICALCVSS 9.8EG 9.82022-04-28
Elcomplus SmartPTT is vulnerable as the backup and restore system does not adequately validate upload requests, enabling a malicious user to potentially upload arbitrary files.
- CVE-2021-41921CRITICALCVSS 9.8EG 9.82022-04-28
novel-plus V3.6.1 allows unrestricted file uploads. Unrestricted file suffixes and contents can lead to server attacks and arbitrary code execution.
- CVE-2022-27468CRITICALCVSS 9.8EG 9.82022-04-26
Monstaftp v2.10.3 was discovered to contain an arbitrary file upload which allows attackers to execute arbitrary code via a crafted file uploaded to the web server.
- CVE-2022-28021CRITICALCVSS 9.8EG 9.82022-04-21
Purchase Order Management System v1.0 was discovered to contain a remote code execution (RCE) vulnerability via /purchase_order/admin/?page=user.
- CVE-2022-27862CRITICALCVSS 9.8EG 9.82022-04-19
Arbitrary File Upload leading to RCE in E4J s.r.l. VikBooking Hotel Booking Engine & PMS plugin <= 1.5.3 on WordPress allows attackers to upload and execute dangerous file types (e.g. PHP shell) via the signature upload on the booking form.
- CVE-2022-28397CRITICALCVSS 9.8EG 9.82022-04-12
An arbitrary file upload vulnerability in the file upload module of Ghost CMS v4.42.0 allows attackers to execute arbitrary code via a crafted file. NOTE: Vendor states as detailed in Ghost's security documentation, files can only be uploa…
- CVE-2022-27952CRITICALCVSS 9.8EG 9.82022-04-12
An arbitrary file upload vulnerability in the file upload module of PayloadCMS v0.15.0 allows attackers to execute arbitrary code via a crafted SVG file.
- CVE-2022-27263CRITICALCVSS 9.8EG 9.82022-04-12
An arbitrary file upload vulnerability in the file upload module of Strapi v4.1.5 allows attackers to execute arbitrary code via a crafted file.
- CVE-2022-27262CRITICALCVSS 9.8EG 9.82022-04-12
An arbitrary file upload vulnerability in the file upload module of Skipper v0.9.1 allows attackers to execute arbitrary code via a crafted file.
- CVE-2022-27260CRITICALCVSS 9.8EG 9.82022-04-12
An arbitrary file upload vulnerability in the file upload component of ButterCMS v1.2.8 allows attackers to execute arbitrary code via a crafted SVG file.
- CVE-2022-27140CRITICALCVSS 9.8EG 9.82022-04-12
An arbitrary file upload vulnerability in the file upload module of express-fileupload 1.3.1 allows attackers to execute arbitrary code via a crafted PHP file. NOTE: the vendor's position is that the observed behavior can only occur with "…
- CVE-2022-27139CRITICALCVSS 9.8EG 9.82022-04-12
An arbitrary file upload vulnerability in the file upload module of Ghost v4.39.0 allows attackers to execute arbitrary code via a crafted SVG file. NOTE: Vendor states that as outlined in Ghost's security documentation, upload of SVGs is …
- CVE-2022-27115CRITICALCVSS 9.8EG 9.82022-04-11
In Studio-42 elFinder 2.1.60, there is a vulnerability that causes remote code execution through file name bypass for file upload.
- CVE-2022-27477CRITICALCVSS 9.8EG 9.82022-04-10
Newbee-Mall v1.0.0 was discovered to contain an arbitrary file upload via the Upload function at /admin/goods/edit.
- CVE-2022-27131CRITICALCVSS 9.8EG 9.82022-04-10
An arbitrary file upload vulnerability at /zbzedit/php/zbz.php in zbzcms v1.0 allows attackers to execute arbitrary code via a crafted PHP file.
- CVE-2022-27129CRITICALCVSS 9.8EG 9.82022-04-10
An arbitrary file upload vulnerability at /admin/ajax.php in zbzcms v1.0 allows attackers to execute arbitrary code via a crafted PHP file.
- CVE-2022-27047CRITICALCVSS 9.8EG 9.82022-04-08
mogu_blog_cms 5.2 suffers from upload arbitrary files without any limitation.
- CVE-2022-27357CRITICALCVSS 9.8EG 9.82022-04-08
Ecommerce-Website v1 was discovered to contain an arbitrary file upload vulnerability via /customer_register.php. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.
- CVE-2022-27351CRITICALCVSS 9.8EG 9.82022-04-08
Zoo Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via /public_html/apply_vacancy. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.
- CVE-2021-43421CRITICALCVSS 9.8EG 9.82022-04-07
A File Upload vulnerability exists in Studio-42 elFinder 2.0.4 to 2.1.59 via connector.minimal.php, which allows a remote malicious user to upload arbitrary files and execute PHP code.
- CVE-2021-28428CRITICALCVSS 9.8EG 9.82022-04-05
File upload vulnerability in HorizontCMS before 1.0.0-beta.3 via uploading a .htaccess and *.hello files using the Media Files upload functionality. The original file upload vulnerability (CVE-2020-27387) was remediated by restricting the …
- CVE-2022-24136CRITICALCVSS 9.8EG 9.82022-03-31
Hospital Management System v1.0 is affected by an unrestricted upload of dangerous file type vulerability in treatmentrecord.php. To exploit, an attacker can upload any PHP file, and then execute it.
- CVE-2022-26645CRITICALCVSS 9.8EG 9.82022-03-30
A remote code execution (RCE) vulnerability in Online Banking System Protect v1.0 allows attackers to execute arbitrary code via a crafted PHP file uploaded through the Upload Image function.
- CVE-2021-45865CRITICALCVSS 9.8EG 9.82022-03-29
A File Upload vulnerability exists in Sourcecodester Student Attendance Manageent System 1.0 via the file upload functionality.
- CVE-2022-23880CRITICALCVSS 9.8EG 9.82022-03-23
An arbitrary file upload vulnerability in the File Management function module of taoCMS v3.0.2 allows attackers to execute arbitrary code via a crafted PHP file.
- CVE-2022-0888CRITICALCVSS 9.8EG 9.82022-03-23
The Ninja Forms - File Uploads Extension WordPress plugin is vulnerable to arbitrary file uploads due to insufficient input file type validation found in the ~/includes/ajax/controllers/uploads.php file which can be bypassed making it poss…
- CVE-2021-27428CRITICALCVSS 9.8EG 9.82022-03-23
GE UR IED firmware versions prior to version 8.1x supports upgrading firmware using UR Setup configuration tool – Enervista UR Setup. This UR Setup tool validates the authenticity and integrity of firmware file before uploading the UR IE…
- CVE-2021-39384CRITICALCVSS 9.8EG 9.82022-03-20
DWSurvey v3.2.0 was discovered to contain an arbitrary file write vulnerability via the component /utils/ToHtmlServlet.java.
- CVE-2021-45835CRITICALCVSS 9.8EG 9.82022-03-18
The Online Admission System 1.0 allows an unauthenticated attacker to upload or transfer files of dangerous types to the application through documents.php, which may be used to execute malicious code or lead to code execution.
- CVE-2021-45834CRITICALCVSS 9.8EG 9.82022-03-18
An attacker can upload or transfer files of dangerous types to the OpenDocMan 1.4.4 portal via add.php using MIME-bypass, which may be automatically processed within the product's environment or lead to arbitrary code execution.
Map vulnerabilities like CWE-434 to your infrastructure
EchelonGraph correlates every CVE — across CWE-434 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →