CWE-434— Unrestricted Upload of File with Dangerous Type
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.— MITRE CWE catalog
4,557 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-434page 26 of 92
- CVE-2021-34623CRITICALCVSS 9.8EG 9.82021-07-07
A vulnerability in the image uploader component found in the ~/src/Classes/ImageUploader.php file of the ProfilePress WordPress plugin made it possible for users to upload arbitrary files during user registration or during profile updates.…
- CVE-2020-22249CRITICALCVSS 9.8EG 9.82021-07-06
Remote Code Execution vulnerability in phplist 3.5.1. The application does not check any file extensions stored in the plugin zip file, Uploading a malicious plugin which contains the php files with extensions like PHP,phtml,php7 will be c…
- CVE-2021-34427CRITICALCVSS 9.8EG 9.82021-06-25
In Eclipse BIRT versions 4.8.0 and earlier, an attacker can use query parameters to create a JSP file which is accessible from remote (current BIRT viewer dir) to inject JSP code into the running instance.
- CVE-2021-34074CRITICALCVSS 9.8EG 9.82021-06-25
PandoraFMS <=7.54 allows arbitrary file upload, it leading to remote command execution via the File Manager. To bypass the built-in protection, a relative path is used in the requests.
- CVE-2020-21786CRITICALCVSS 9.8EG 9.82021-06-24
In IBOS 4.5.4 Open, Arbitrary File Inclusion causes getshell via /system/modules/dashboard/controllers/CronController.php.
- CVE-2020-21787CRITICALCVSS 9.8EG 9.82021-06-24
CRMEB 3.1.0+ is vulnerable to File Upload Getshell via /crmeb/crmeb/services/UploadService.php.
- CVE-2010-1433CRITICALCVSS 9.8EG 9.82021-06-21
Joomla! Core is prone to a vulnerability that lets attackers upload arbitrary files because the application fails to properly verify user-supplied input. An attacker can exploit this vulnerability to upload arbitrary code and run it in the…
- CVE-2021-24376CRITICALCVSS 9.8EG 9.82021-06-21
The Autoptimize WordPress plugin before 2.7.8 attempts to delete malicious files (such as .php) form the uploaded archive via the "Import Settings" feature, after its extraction. However, the extracted folders are not checked and it is pos…
- CVE-2021-24370CRITICALCVSS 9.8EG 9.82021-06-21
The Fancy Product Designer WordPress plugin before 4.6.9 allows unauthenticated attackers to upload arbitrary files, resulting in remote code execution.
- CVE-2020-19510CRITICALCVSS 9.8EG 9.82021-06-21
Textpattern 4.7.3 contains an aribtrary file load via the file_insert function in include/txp_file.php.
- CVE-2013-20002CRITICALCVSS 9.8EG 9.82021-06-17
Elemin allows remote attackers to upload and execute arbitrary PHP code via the Themify framework (before 1.2.2) wp-content/themes/elemin/themify/themify-ajax.php file.
- CVE-2020-35760CRITICALCVSS 9.8EG 9.82021-06-16
bloofoxCMS 0.5.2.1 is infected with Unrestricted File Upload that allows attackers to upload malicious files (ex: php files).
- CVE-2021-26473CRITICALCVSS 9.8EG 9.82021-06-08
In VembuBDR before 4.2.0.1 and VembuOffsiteDR before 4.2.0.1 the http API located at /sgwebservice_o.php action logFilePath allows an attacker to write arbitrary files in the context of the web server process. These files can then be execu…
- CVE-2020-35442CRITICALCVSS 9.8EG 9.82021-06-02
FDCMS (also known as Fangfa Content Management System) 4.0 allows remote attackers to get a webshell in the background via Front/lib/Action/FindexAction.class.php.
- CVE-2021-31703CRITICALCVSS 9.8EG 9.82021-05-29
Frontier ichris through 5.18 allows users to upload malicious executable files that might later be downloaded and run by any client user.
- CVE-2021-27459CRITICALCVSS 9.8EG 9.82021-05-20
A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The webserver of the affected products allows unvalidated files to be uploaded, which an attacker could utilize to execute arbitrary code.
- CVE-2021-20721CRITICALCVSS 9.8EG 9.82021-05-20
KonaWiki2 versions prior to 2.2.4 allows a remote attacker to upload arbitrary files via unspecified vectors. If the file contains PHP scripts, arbitrary code may be executed.
- CVE-2020-18166CRITICALCVSS 9.8EG 9.82021-05-14
Unrestricted File Upload in LAOBANCMS v2.0 allows remote attackers to upload arbitrary files by attaching a file with a ".jpg.php" extension to the component "admin/wenjian.php?wj=../templets/pc".
- CVE-2021-24284CRITICALCVSS 9.8EG 9.82021-05-14
The Kaswara Modern VC Addons WordPress plugin through 3.0.1 allows unauthenticated arbitrary file upload via the 'uploadFontIcon' AJAX action. The supplied zipfile being unzipped in the wp-content/uploads/kaswara/fonts_icon directory with …
- CVE-2020-28063CRITICALCVSS 9.8EG 9.82021-05-13
A file upload issue exists in all versions of ArticleCMS which allows malicious users to getshell.
- CVE-2020-20092CRITICALCVSS 9.8EG 9.82021-05-13
File Upload vulnerability exists in ArticleCMS 1.0 via the image upload feature at /admin by changing the Content-Type to image/jpeg and placing PHP code after the JPEG data, which could let a remote malicious user execute arbitrary PHP co…
- CVE-2020-23790CRITICALCVSS 9.8EG 9.82021-05-12
An Arbitrary File Upload vulnerability was discovered in the Golo Laravel theme v 1.1.5.
- CVE-2021-32089CRITICALCVSS 9.8EG 9.82021-05-11
An issue was discovered on Zebra (formerly Motorola Solutions) Fixed RFID Reader FX9500 devices. An unauthenticated attacker can upload arbitrary files to the filesystem that can then be accessed through the web interface. This can lead to…
- CVE-2021-31737CRITICALCVSS 9.8EG 9.82021-05-06
emlog v5.3.1 and emlog v6.0.0 have a Remote Code Execution vulnerability due to upload of database backup file in admin/data.php.
- CVE-2021-24236CRITICALCVSS 9.8EG 9.82021-05-06
The Imagements WordPress plugin through 1.2.5 allows images to be uploaded in comments, however only checks for the Content-Type in the request to forbid dangerous files. This allows unauthenticated attackers to upload arbitrary files by u…
- CVE-2020-19113CRITICALCVSS 9.8EG 9.82021-05-06
Arbitrary File Upload vulnerability in Online Book Store v1.0 in admin_add.php, which may lead to remote code execution.
- CVE-2020-23083CRITICALCVSS 9.8EG 9.82021-05-03
Unrestricted File Upload in JEECG v4.0 and earlier allows remote attackers to execute arbitrary code or gain privileges by uploading a crafted file to the component "jeecgFormDemoController.do?commonUpload".
- CVE-2020-21452CRITICALCVSS 9.8EG 9.82021-04-29
An issue was discovered in uniview ISC2500-S. This is an upload vulnerability where an attacker can upload malicious code via /Interface/DevManage/EC.php?cmd=upload
- CVE-2021-24240CRITICALCVSS 9.8EG 9.82021-04-22
The Business Hours Pro WordPress plugin through 5.5.0 allows a remote attacker to upload arbitrary files using its manual update functionality, leading to an unauthenticated remote code execution vulnerability.
- CVE-2020-29592CRITICALCVSS 9.8EG 9.82021-04-14
An issue was discovered in Orchard before 1.10. A broken access control issue in Orchard components that use the TinyMCE HTML editor's file upload allows an attacker to upload dangerous executables that bypass the file types allowed (regar…
- CVE-2021-24223CRITICALCVSS 9.8EG 9.82021-04-12
The N5 Upload Form WordPress plugin through 1.0 suffers from an arbitrary file upload issue in page where a Form from the plugin is embed, as any file can be uploaded. The uploaded filename might be hard to guess as it's generated with md5…
- CVE-2021-24222CRITICALCVSS 9.8EG 9.82021-04-12
The WP-Curriculo Vitae Free WordPress plugin through 6.3 suffers from an arbitrary file upload issue in page where the [formCadastro] is embed. The form allows unauthenticated user to register and submit files for their profile picture as …
- CVE-2021-28173CRITICALCVSS 9.8EG 9.82021-04-06
The file upload function of Vangene deltaFlow E-platform does not perform access controlled properly. Remote attackers can upload and execute arbitrary files without login.
- CVE-2021-30149CRITICALCVSS 9.8EG 9.82021-04-06
Composr 10.0.36 allows upload and execution of PHP files.
- CVE-2021-24212CRITICALCVSS 9.8EG 9.82021-04-05
The WooCommerce Help Scout WordPress plugin before 2.9.1 (https://woocommerce.com/products/woocommerce-help-scout/) allows unauthenticated users to upload any files to the site which by default will end up in wp-content/uploads/hstmp.
- CVE-2021-24171CRITICALCVSS 9.8EG 9.82021-04-05
The WooCommerce Upload Files WordPress plugin before 59.4 ran a single sanitization pass to remove blocked extensions such as .php. It was possible to bypass this and upload a file with a PHP extension by embedding a "blocked" extension wi…
- CVE-2020-21585CRITICALCVSS 9.8EG 9.82021-04-02
Vulnerability in emlog v6.0.0 allows user to upload webshells via zip plugin module.
- CVE-2021-27274CRITICALCVSS 9.8EG 9.82021-03-29
This vulnerability allows remote attackers to execute arbitrary code on affected installations of NETGEAR ProSAFE Network Management System 1.6.0.26. Authentication is not required to exploit this vulnerability. The specific flaw exists wi…
- CVE-2021-21350CRITICALCVSS 9.8EG 9.82021-03-23
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to execute arbitrary code only by manipulating the processed input stream. N…
- CVE-2021-21347CRITICALCVSS 9.8EG 9.82021-03-23
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code from a remote host only by manipulating t…
- CVE-2021-21346CRITICALCVSS 9.8EG 9.82021-03-23
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code from a remote host only by manipulating t…
- CVE-2021-21344CRITICALCVSS 9.8EG 9.82021-03-23
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code from a remote host only by manipulating t…
- CVE-2021-28294CRITICALCVSS 9.8EG 9.82021-03-16
Online Ordering System 1.0 is vulnerable to arbitrary file upload through /onlineordering/GPST/store/initiateorder.php, which may lead to remote code execution (RCE).
- CVE-2021-27817CRITICALCVSS 9.8EG 9.82021-03-15
A remote command execution vulnerability in shopxo 1.9.3 allows an attacker to upload malicious code generated by phar where the suffix is JPG, which is uploaded after modifying the phar suffix.
- CVE-2021-27964CRITICALCVSS 9.8EG 9.82021-03-05
SonLogger before 6.4.1 is affected by Unauthenticated Arbitrary File Upload. An attacker can send a POST request to /Config/SaveUploadedHotspotLogoFile without any authentication or session header. There is no check for the file extension …
- CVE-2021-21978CRITICALCVSS 9.8EG 9.82021-03-03
VMware View Planner 4.x prior to 4.6 Security Patch 1 contains a remote code execution vulnerability. Improper input validation and lack of authorization leading to arbitrary file upload in logupload web application. An unauthorized attack…
- CVE-2021-27198CRITICALCVSS 9.8EG 9.82021-02-26
An issue was discovered in Visualware MyConnection Server before v11.1a. Unauthenticated Remote Code Execution can occur via Arbitrary File Upload in the web service when using a myspeed/sf?filename= URI. This application is written in Jav…
- CVE-2021-3120CRITICALCVSS 9.8EG 9.82021-02-22
An arbitrary file upload vulnerability in the YITH WooCommerce Gift Cards Premium plugin before 3.3.1 for WordPress allows remote attackers to achieve remote code execution on the operating system in the security context of the web server.…
- CVE-2021-26809CRITICALCVSS 9.8EG 9.82021-02-17
PHPGurukul Car Rental Project version 2.0 suffers from a remote shell upload vulnerability in changeimage1.php.
- CVE-2020-28871CRITICALCVSS 9.8EG 9.82021-02-10
Remote code execution in Monitorr v1.7.6m in upload.php allows an unauthorized person to execute arbitrary code on the server-side via an insecure file upload.
Map vulnerabilities like CWE-434 to your infrastructure
EchelonGraph correlates every CVE — across CWE-434 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →