CWE-434— Unrestricted Upload of File with Dangerous Type
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.— MITRE CWE catalog
4,557 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-434page 25 of 92
- CVE-2021-37926CRITICALCVSS 9.8EG 9.82021-10-07
Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execution.
- CVE-2021-37924CRITICALCVSS 9.8EG 9.82021-10-07
Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execution.
- CVE-2021-37923CRITICALCVSS 9.8EG 9.82021-10-07
Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execution.
- CVE-2021-37921CRITICALCVSS 9.8EG 9.82021-10-07
Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execution.
- CVE-2021-37920CRITICALCVSS 9.8EG 9.82021-10-07
Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execution.
- CVE-2021-37919CRITICALCVSS 9.8EG 9.82021-10-07
Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execution.
- CVE-2021-37918CRITICALCVSS 9.8EG 9.82021-10-07
Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execution.
- CVE-2021-37762CRITICALCVSS 9.8EG 9.82021-10-07
Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file overwrite leading to remote code execution.
- CVE-2021-3832CRITICALCVSS 9.8EG 9.82021-10-07
Integria IMS in its 5.0.92 version is vulnerable to a Remote Code Execution attack through file uploading. An unauthenticated attacker could abuse the AsyncUpload() function in order to exploit the vulnerability.
- CVE-2021-41290CRITICALCVSS 9.8EG 9.82021-09-30
ECOA BAS controller suffers from an arbitrary file write and path traversal vulnerability. Using the POST parameters, unauthenticated attackers can remotely set arbitrary values for location and content type and gain the possibility to exe…
- CVE-2021-37761CRITICALCVSS 9.8EG 9.82021-09-27
Zoho ManageEngine ADManager Plus version 7110 and prior is vulnerable to unrestricted file upload, leading to remote code execution.
- CVE-2021-37539CRITICALCVSS 9.8EG 9.82021-09-27
Zoho ManageEngine ADManager Plus before 7111 is vulnerable to unrestricted file which leads to Remote code execution.
- CVE-2021-26794CRITICALCVSS 9.8EG 9.82021-09-23
Privilege escalation in 'upload.php' in FrogCMS SentCMS v0.9.5 allows attacker to execute arbitrary code via crafted php file.
- CVE-2020-21322CRITICALCVSS 9.8EG 9.82021-09-15
An arbitrary file upload vulnerability in Feehi CMS v2.0.8 and below allows attackers to execute arbitrary code via a crafted PHP file.
- CVE-2021-36582CRITICALCVSS 9.8EG 9.82021-09-14
In Kooboo CMS 2.1.1.0, it is possible to upload a remote shell (e.g., aspx) to the server and then call upon it to receive a reverse shell from the victim server. The files are uploaded to /Content/Template/root/reverse-shell.aspx and can …
- CVE-2021-36581CRITICALCVSS 9.8EG 9.82021-09-14
Kooboo CMS 2.1.1.0 is vulnerable to Insecure file upload. It is possible to upload any file extension to the server. The server does not verify the extension of the file and the tester was able to upload an aspx to the server.
- CVE-2021-24493CRITICALCVSS 9.8EG 9.82021-09-13
The shopp_upload_file AJAX action of the Shopp WordPress plugin through 1.4, available to both unauthenticated and authenticated user does not have any security measure in place to prevent upload of malicious files, such as PHP, allowing u…
- CVE-2020-19267CRITICALCVSS 9.8EG 9.82021-09-09
An issue in index.php/Dswjcms/Basis/resources of Dswjcms 1.6.4 allows attackers to execute arbitrary code via uploading a crafted PHP file.
- CVE-2021-36440CRITICALCVSS 9.8EG 9.82021-09-08
Unrestricted File Upload in ShowDoc v2.9.5 allows remote attackers to execute arbitrary code via the 'file_url' parameter in the component AdminUpdateController.class.php'.
- CVE-2020-19138CRITICALCVSS 9.8EG 9.82021-09-08
Unrestricted Upload of File with Dangerous Type in DotCMS v5.2.3 and earlier allow remote attackers to execute arbitrary code via the component "/src/main/java/com/dotmarketing/filters/CMSFilter.java".
- CVE-2021-40531CRITICALCVSS 9.8EG 9.82021-09-06
Sketch before 75 allows library feeds to be used to bypass file quarantine. Files are automatically downloaded and opened, without the com.apple.quarantine extended attribute. This results in remote code execution, as demonstrated by Comma…
- CVE-2021-36356CRITICALCVSS 9.8EG 9.82021-08-31
KRAMER VIAware through August 2021 allows remote attackers to execute arbitrary code because ajaxPages/writeBrowseFilePathAjax.php accepts arbitrary executable pathnames (even though browseSystemFiles.php is no longer reachable via the GUI…
- CVE-2021-32955CRITICALCVSS 9.8EG 9.82021-08-30
Delta Electronics DIAEnergie Version 1.7.5 and prior allows unrestricted file uploads, which may allow an attacker to remotely execute code.
- CVE-2021-40175CRITICALCVSS 9.8EG 9.82021-08-29
Zoho ManageEngine Log360 before Build 5219 allows unrestricted file upload with resultant remote code execution.
- CVE-2020-18114CRITICALCVSS 9.8EG 9.82021-08-27
An arbitrary file upload vulnerability in the /uploads/dede component of DedeCMS V5.7SP2 allows attackers to upload a webshell in HTM format.
- CVE-2021-38613CRITICALCVSS 9.8EG 9.82021-08-24
The assets/index.php Image Upload feature of the NASCENT RemKon Device Manager 4.0.0.0 allows attackers to upload any code to the target system and achieve remote code execution.
- CVE-2020-18879CRITICALCVSS 9.8EG 9.82021-08-20
Unrestricted File Upload in Bludit v3.8.1 allows remote attackers to execute arbitrary code by uploading malicious files via the component 'bl-kereln/ajax/upload-logo.php'.
- CVE-2021-37608CRITICALCVSS 9.8EG 9.82021-08-18
Unrestricted Upload of File with Dangerous Type vulnerability in Apache OFBiz allows an attacker to execute remote commands. This issue affects Apache OFBiz version 17.12.07 and prior versions. Upgrade to at least 17.12.08 or apply patches…
- CVE-2020-18704CRITICALCVSS 9.8EG 9.82021-08-16
Unrestricted Upload of File with Dangerous Type in Django-Widgy v0.8.4 allows remote attackers to execute arbitrary code via the 'image' widget in the component 'Change Widgy Page'.
- CVE-2021-38753CRITICALCVSS 9.8EG 9.82021-08-16
An unrestricted file upload on Simple Image Gallery Web App can be exploited to upload a web shell and executed to gain unauthorized access to the server hosting the web app.
- CVE-2021-29377CRITICALCVSS 9.8EG 9.82021-08-12
Pear Admin Think through 2.1.2 has an arbitrary file upload vulnerability that allows attackers to execute arbitrary code remotely. A .php file can be uploaded via admin.php/index/upload because app/common/service/UploadService.php mishand…
- CVE-2020-20979CRITICALCVSS 9.8EG 9.82021-08-12
An arbitrary file upload vulnerability in the move_uploaded_file() function of LJCMS v4.3 allows attackers to execute arbitrary code.
- CVE-2020-28165CRITICALCVSS 9.8EG 9.82021-08-12
The EasyCorp ZenTao PMS 12.4.2 application suffers from an arbitrary file upload vulnerability. An attacker can upload arbitrary webshell to the server by using the downloadZipPackage() function.
- CVE-2020-21359CRITICALCVSS 9.8EG 9.82021-08-11
An arbitrary file upload vulnerability in the Template Upload function of Maccms10 allows attackers bypass the suffix whitelist verification to execute arbitrary code via adding a character to the end of the uploaded file's name.
- CVE-2021-24499CRITICALCVSS 9.8EG 9.82021-08-09
The Workreap WordPress theme before 2.2.2 AJAX actions workreap_award_temp_file_uploader and workreap_temp_file_uploader did not perform nonce checks, or validate that the request is from a valid user in any other way. The endpoints allowe…
- CVE-2020-28088CRITICALCVSS 9.8EG 9.82021-08-06
An arbitrary file upload vulnerability in /jeecg-boot/sys/common/upload of jeecg-boot CMS 2.3 allows attackers to execute arbitrary code.
- CVE-2020-19302CRITICALCVSS 9.8EG 9.82021-08-03
An arbitrary file upload vulnerability in the avatar upload function of vaeThink v1.0.1 allows attackers to open a webshell via changing uploaded file suffixes to ".php".
- CVE-2021-36623CRITICALCVSS 9.8EG 9.82021-08-03
Arbitrary File Upload in Sourcecodester Phone Shop Sales Management System 1.0 enables RCE.
- CVE-2021-36622CRITICALCVSS 9.8EG 9.82021-08-03
Sourcecodester Online Covid Vaccination Scheduler System 1.0 is affected vulnerable to Arbitrary File Upload. The admin panel has an upload function of profile photo accessible at http://localhost/scheduler/admin/?page=user. An attacker co…
- CVE-2021-25200CRITICALCVSS 9.8EG 9.82021-07-30
Arbitrary file upload vulnerability in SourceCodester Learning Management System v 1.0 allows attackers to execute arbitrary code, via the file upload to \lms\student_avatar.php.
- CVE-2021-25208CRITICALCVSS 9.8EG 9.82021-07-23
Arbitrary file upload vulnerability in SourceCodester Travel Management System v 1.0 allows attackers to execute arbitrary code via the file upload to updatepackage.php.
- CVE-2021-25206CRITICALCVSS 9.8EG 9.82021-07-23
Arbitrary file upload vulnerability in SourceCodester Responsive Ordering System v 1.0 allows attackers to execute arbitrary code via the file upload to Product_model.php.
- CVE-2021-25203CRITICALCVSS 9.8EG 9.82021-07-23
Arbitrary file upload vulnerability in Victor CMS v 1.0 allows attackers to execute arbitrary code via the file upload to \CMSsite-master\admin\includes\admin_add_post.php.
- CVE-2021-25207CRITICALCVSS 9.8EG 9.82021-07-23
Arbitrary file upload vulnerability in SourceCodester E-Commerce Website v 1.0 allows attackers to execute arbitrary code via the file upload to prodViewUpdate.php.
- CVE-2021-25211CRITICALCVSS 9.8EG 9.82021-07-22
Arbitrary file upload vulnerability in SourceCodester Ordering System v 1.0 allows attackers to execute arbitrary code, via the file upload to ordering\admin\products\edit.php.
- CVE-2021-25210CRITICALCVSS 9.8EG 9.82021-07-22
Arbitrary file upload vulnerability in SourceCodester Alumni Management System v 1.0 allows attackers to execute arbitrary code, via the file upload to manage_event.php.
- CVE-2021-35963CRITICALCVSS 9.8EG 9.82021-07-19
The specific parameter of upload function of the Orca HCM digital learning platform does not filter file format, which allows remote unauthenticated attackers to upload files containing malicious script to execute RCE attacks.
- CVE-2021-30118CRITICALCVSS 9.8EG 9.82021-07-09
An attacker can upload files with the privilege of the Web Server process for Kaseya VSA Unified Remote Monitoring & Management (RMM) 9.5.4.2149 and subsequently use these files to execute asp commands The api /SystemTab/uploader.aspx is v…
- CVE-2021-32538CRITICALCVSS 9.8EG 9.82021-07-07
ARTWARE CMS parameter of image upload function does not filter the type of upload files which allows remote attackers can upload arbitrary files without logging in, and further execute code unrestrictedly.
- CVE-2021-34624CRITICALCVSS 9.8EG 9.82021-07-07
A vulnerability in the file uploader component found in the ~/src/Classes/FileUploader.php file of the ProfilePress WordPress plugin made it possible for users to upload arbitrary files during user registration or during profile updates. T…
Map vulnerabilities like CWE-434 to your infrastructure
EchelonGraph correlates every CVE — across CWE-434 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →