CWE-434— Unrestricted Upload of File with Dangerous Type
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.— MITRE CWE catalog
4,555 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-434page 8 of 92
- CVE-2023-31090CRITICALCVSS 9.9EG 9.92024-04-24
Unrestricted Upload of File with Dangerous Type vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) allows Upload a Web Shell to a Web Server.This issue affects Unlimited Elements For Elem…
- CVE-2024-32514CRITICALCVSS 9.9EG 9.92024-04-17
Unrestricted Upload of File with Dangerous Type vulnerability in Poll Maker & Voting Plugin Team (InfoTheme) WP Poll Maker.This issue affects WP Poll Maker: from n/a through 3.4.
- CVE-2024-31286CRITICALCVSS 9.9EG 9.92024-04-07
Unrestricted Upload of File with Dangerous Type vulnerability in J.N. Breetvelt a.K.A. OpaJaap WP Photo Album Plus.This issue affects WP Photo Album Plus: from n/a before 8.6.03.005.
- CVE-2024-31280CRITICALCVSS 9.9EG 9.92024-04-07
Unrestricted Upload of File with Dangerous Type vulnerability in andy_moyle Church Admin church-admin.This issue affects Church Admin: from n/a through <= 4.1.5.
- CVE-2023-46808CRITICALCVSS 9.9EG 9.92024-03-31
An file upload vulnerability in Ivanti ITSM before 2023.4, allows an authenticated remote user to perform file writes to the server. Successful exploitation may lead to execution of commands in the context of non-root user.
- CVE-2024-30500CRITICALCVSS 9.9EG 9.92024-03-29
Unrestricted Upload of File with Dangerous Type vulnerability in CubeWP CubeWP – All-in-One Dynamic Content Framework.This issue affects CubeWP – All-in-One Dynamic Content Framework: from n/a through 1.1.12.
- CVE-2023-48777CRITICALCVSS 9.9EG 9.92024-03-26
Unrestricted Upload of File with Dangerous Type vulnerability in Elementor.Com Elementor Website Builder.This issue affects Elementor Website Builder: from 3.3.0 through 3.18.1.
- CVE-2024-29135CRITICALCVSS 9.9EG 9.92024-03-19
Unrestricted Upload of File with Dangerous Type vulnerability in Themefic Tourfic tourfic.This issue affects Tourfic: from n/a through <= 2.11.15.
- CVE-2024-2599CRITICALCVSS 9.9EG 9.92024-03-18
File upload restriction evasion vulnerability in AMSS++ version 4.31. This vulnerability could allow an authenticated user to potentially obtain RCE through webshell, compromising the entire infrastructure.
- CVE-2024-25909CRITICALCVSS 9.9EG 9.92024-02-26
Unrestricted Upload of File with Dangerous Type vulnerability in JoomUnited WP Media folder.This issue affects WP Media folder: from n/a through 5.7.2.
- CVE-2024-1644CRITICALCVSS 9.9EG 9.92024-02-20
Suite CRM version 7.14.2 allows including local php files. This is possible because the application is vulnerable to LFI.
- CVE-2023-34385CRITICALCVSS 9.9EG 9.92023-12-20
Unrestricted Upload of File with Dangerous Type vulnerability in Akshay Menariya Export Import Menus.This issue affects Export Import Menus: from n/a through 1.8.0.
- CVE-2023-34007CRITICALCVSS 9.9EG 9.92023-12-20
Unrestricted Upload of File with Dangerous Type vulnerability in WPChill Download Monitor.This issue affects Download Monitor: from n/a through 4.8.3.
- CVE-2023-33318CRITICALCVSS 9.9EG 9.92023-12-20
Unrestricted Upload of File with Dangerous Type vulnerability in WooCommerce AutomateWoo.This issue affects AutomateWoo: from n/a through 4.9.40.
- CVE-2023-31231CRITICALCVSS 9.9EG 9.92023-12-20
Unrestricted Upload of File with Dangerous Type vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates).This issue affects Unlimited Elements For Elementor (Free Widgets, Addons, Templates): f…
- CVE-2023-31215CRITICALCVSS 9.9EG 9.92023-12-20
Unrestricted Upload of File with Dangerous Type vulnerability in AmaderCode Lab Dropshipping & Affiliation with Amazon.This issue affects Dropshipping & Affiliation with Amazon: from n/a through 2.1.2.
- CVE-2023-40050CRITICALCVSS 9.9EG 9.92023-10-31
Upload profile either through API or user interface in Chef Automate prior to and including version 4.10.29 using InSpec check command with maliciously crafted profile allows remote code execution.
- CVE-2023-34207CRITICALCVSS 9.9EG 9.92023-10-17
Unrestricted upload of file with dangerous type vulnerability in create template function in EasyUse MailHunter Ultimate 2023 and earlier allows remote authenticated users to perform arbitrary system commands with ‘NT Authority\SYSTEM‘…
- CVE-2023-39424CRITICALCVSS 9.9EG 9.92023-09-07
A vulnerability in RDPngFileUpload.dll, as used in the IRM Next Generation booking system, allows a remote attacker to upload arbitrary content (such as a web shell component) to the SQL database and execute it with SYSTEM privileges. Th…
- CVE-2023-3342CRITICALCVSS 9.9EG 9.92023-07-13
The User Registration plugin for WordPress is vulnerable to arbitrary file uploads due to a hardcoded encryption key and missing file type validation on the 'ur_upload_profile_pic' function in versions up to, and including, 3.0.2. This mak…
- CVE-2022-3682CRITICALCVSS 9.9EG 9.92023-03-28
A vulnerability exists in the SDM600 file permission validation. An attacker could exploit the vulnerability by gaining access to the system and uploading a specially crafted message to the system node, which could result in Arbitrary cod…
- CVE-2022-41267CRITICALCVSS 9.9EG 9.92022-12-13
SAP Business Objects Platform - versions 420, and 430, allows an attacker with normal BI user privileges to upload/replace any file on Business Objects server at the operating system level, enabling the attacker to take full control of the…
- CVE-2022-40200CRITICALCVSS 9.9EG 9.92022-11-17
Auth. (subscriber+) Arbitrary File Upload vulnerability in wpForo Forum plugin <= 2.0.9 on WordPress.
- CVE-2022-42925CRITICALCVSS 9.9EG 9.92022-10-31
There is a vulnerability on Forma LMS version 3.1.0 and earlier that could allow an authenticated attacker (with the role of student) to privilege escalate in order to upload a Zip file through the plugin upload component. The exploitation…
- CVE-2022-41681CRITICALCVSS 9.9EG 9.92022-10-31
There is a vulnerability on Forma LMS version 3.1.0 and earlier that could allow an authenticated attacker (with the role of student) to privilege escalate in order to upload a Zip file through the SCORM importer feature. The exploitation …
- CVE-2020-35945CRITICALCVSS 9.9EG 9.92021-01-01
An issue was discovered in the Divi Builder plugin, Divi theme, and Divi Extra theme before 4.5.3 for WordPress. Authenticated attackers, with contributor-level or above capabilities, can upload arbitrary files, including .php files. This …
- CVE-2020-13774CRITICALCVSS 9.9EG 9.92020-11-12
An unrestricted file-upload issue in EditLaunchPadDialog.aspx in Ivanti Endpoint Manager 2019.1 and 2020.1 allows an authenticated attacker to gain remote code execution by uploading a malicious aspx file. The issue is caused by insufficie…
- CVE-2020-1112CRITICALCVSS 9.9EG 9.92020-05-21
An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) IIS module improperly handles uploaded content. An attacker who successfully exploited this vulnerability could upload restricte…
- CVE-2020-13126CRITICALCVSS 9.9EG 9.92020-05-17
An issue was discovered in the Elementor Pro plugin before 2.9.4 for WordPress, as exploited in the wild in May 2020 in conjunction with CVE-2020-13125. An attacker with the Subscriber role can upload arbitrary executable files to achieve …
- CVE-2020-7055CRITICALCVSS 9.9EG 9.92020-04-22
An issue was discovered in Elementor 2.7.4. Arbitrary file upload is possible in the Elementor Import Templates function, allowing an attacker to execute code via a crafted ZIP archive.
- CVE-2020-11011CRITICALCVSS 9.9EG 9.92020-04-22
In Phproject before version 1.7.8, there's a vulnerability which allows users with access to file uploads to execute arbitrary code. This is patched in version 1.7.8.
- CVE-2020-6965CRITICALCVSS 9.9EG 9.92020-01-24
In ApexPro Telemetry Server Versions 4.2 and prior, CARESCAPE Telemetry Server v4.2 & prior, Clinical Information Center (CIC) Versions 4.X and 5.X, CARESCAPE Central Station (CSCS) Versions 1.X, B450 Version 2.X, B650 Version 1.X, B650 Ve…
- CVE-2015-5951CRITICALCVSS 9.9EG 9.92020-01-06
A file upload issue exists in the specid parameter in Thomson Reuters FATCH before 5.2, which allows malicious users to upload arbitrary PHP files to the web root and execute system commands.
- CVE-2018-11091CRITICALCVSS 9.9EG 9.92018-05-14
An issue was discovered in MyBiz MyProcureNet 5.0.0. A malicious file can be uploaded to the webserver by an attacker. It is possible for an attacker to upload a script to issue operating system commands. This vulnerability occurs because …
- CVE-2019-4013CRITICALCVSS 9.0EG 9.92019-04-10
IBM BigFix Platform 9.5 could allow any authenticated user to upload any file to any location on the server with root privileges. This results in code execution on underlying system with root privileges. IBM X-Force ID: 155887.
- CVE-2018-1969CRITICALCVSS 9.0EG 9.92019-01-14
IBM Security Identity Manager 6.0.0 allows the attacker to upload or transfer files of dangerous types that can be automatically processed within the product's environment. IBM X-Force ID: 153750.
- CVE-2023-51421CRITICALCVSS 8.8EG 9.92023-12-29
Unrestricted Upload of File with Dangerous Type vulnerability in Soft8Soft LLC Verge3D Publishing and E-Commerce.This issue affects Verge3D Publishing and E-Commerce: from n/a through 4.5.2.
- CVE-2023-51417CRITICALCVSS 8.8EG 9.92023-12-29
Unrestricted Upload of File with Dangerous Type vulnerability in Joris van Montfort JVM Gutenberg Rich Text Icons.This issue affects JVM Gutenberg Rich Text Icons: from n/a through 1.2.3.
- CVE-2023-51410CRITICALCVSS 8.8EG 9.92023-12-29
Unrestricted Upload of File with Dangerous Type vulnerability in WPVibes WP Mail Log.This issue affects WP Mail Log: from n/a through 1.1.2.
- CVE-2023-23970CRITICALCVSS 8.8EG 9.92023-12-20
Unrestricted Upload of File with Dangerous Type vulnerability in WooRockets Corsa.This issue affects Corsa: from n/a through 1.5.
- CVE-2023-46149CRITICALCVSS 8.8EG 9.92023-12-20
Unrestricted Upload of File with Dangerous Type vulnerability in Themify Themify Ultra.This issue affects Themify Ultra: from n/a through 7.3.5.
- CVE-2023-4122CRITICALCVSS 8.8EG 9.92023-12-07
Student Information System v1.0 is vulnerable to an Insecure File Upload vulnerability on the 'photo' parameter of my-profile page, allowing an authenticated attacker to obtain Remote Code Execution on the server hosting the application.
- CVE-2023-4159CRITICALCVSS 8.8EG 9.92023-08-04
Unrestricted Upload of File with Dangerous Type in GitHub repository omeka/omeka-s prior to 4.0.3.
- CVE-2026-103889CRITICALCVSS 9.8EG 9.82026-10-10
The 3D Product configurator for WooCommerce plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 2.16.2 via the 'xpv_image' parameter parameter. This is due to missing authentication and nonce c…
- CVE-2026-94589CRITICALCVSS 9.8EG 9.82026-10-10
The Extensions For CF7 (Contact form 7 Database, Conditional Fields and Redirection) plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 3.4.5 via the extcf7_submit function. This is due to mis…
- CVE-2026-85097CRITICALCVSS 9.8EG 9.82026-10-08
The Bricksforge plugin for WordPress is vulnerable to unauthenticated arbitrary file upload in versions up to, and including, 3.1.8.9. This is due to insufficient validation of the attacker-controlled URL field in the 'temporaryFileUploads…
- CVE-2023-54405CRITICALCVSS 9.8EG 9.82026-10-02
H3C CVM, the Cloud Virtualization Management component of the H3C CAS cloud platform, contains an unauthenticated arbitrary file upload vulnerability in the /cas/fileUpload/upload endpoint that allows remote attackers to write arbitrary fi…
- CVE-2026-75873CRITICALCVSS 9.8EG 9.82026-09-30
The Zella Theme WordPress theme before 2.6.3 does not perform any capability or nonce check on one of its font upload actions, which is available to unauthenticated users, allowing them to upload arbitrary files, including PHP ones, and ac…
- CVE-2026-82901CRITICALCVSS 9.8EG 9.82026-09-26
The Ultra Addons for Contact Form 7 plugin for WordPress is vulnerable to Arbitrary File Upload due to insufficient file type validation in the 'uacf7_wpcf7_mail_components' function in all versions up to, and including, 3.5.50. This makes…
- CVE-2026-18143CRITICALCVSS 9.8EG 9.82026-09-26
The Request a Quote for WooCommerce plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.9.2 via the `afrfq_submit_quote_via_popup()` function. This is due to missing file extension and MIME t…
Map vulnerabilities like CWE-434 to your infrastructure
EchelonGraph correlates every CVE — across CWE-434 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →