CWE-434

Medium likelihood

Unrestricted Upload of File with Dangerous Type

Parent: CWE-669 - Incorrect Resource Transfer Between Spheres

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

4,018 vulnerabilities with CWE-434
CVE-2021-44426 HIGH
Anydesk < 6.2.6 - Unrestricted File Upload
CVSS 8.8
CVE-2021-29891 MEDIUM
IBM Power System Ac922 (8335-gtg) Firmware - Unrestricted File Upload
CVSS 4.9
CVE-2021-36711 CRITICAL
Octobot < 0.4.4 - Unrestricted File Upload
CVSS 9.8
CVE-2021-36461 HIGH
Microweber 1.1.3 - RCE
CVSS 8.8
CVE-2021-29281 CRITICAL
GFI Archiver < 15.2 - Unrestricted File Upload
CVSS 9.8
CVE-2021-37770 HIGH
Nucleuscms Nucleus Cms - Unrestricted File Upload
CVSS 7.2
CVE-2021-38945 CRITICAL
IBM Cognos Analytics <11.2.1 - RCE
CVSS 9.8
CVE-2021-40954 CRITICAL
Laiketui 3.5.0 - RCE
CVSS 9.8
CVE-2021-41421 MEDIUM
Maianmedia Maianaffiliate - XSS
CVSS 4.8
CVE-2021-40940 CRITICAL
Monstra 3.0.4 - Unrestricted File Upload
CVSS 9.8
CVE-2021-42675 CRITICAL
Kreado Kreasfero - Unrestricted File Upload
CVSS 9.8
CVE-2021-35532 MEDIUM
Hitachi Energy TXpert Hub CoreTec <2.2.1 - Code Injection
CVSS 6.7
CVE-2021-45982 HIGH
NetScout nGeniusONE 6.3.2 - Privilege Escalation
CVSS 8.8
CVE-2021-33615 HIGH
RSA Archer <6.8.00500.1003 - Unrestricted Upload
CVSS 7.5
CVE-2021-26634 CRITICAL
Maxboard < 1.9.6 - SQL Injection
CVSS 9.8
CVE-2021-42654 CRITICAL
Sscms Siteserver Cms < 5.1 - Unrestricted File Upload
CVSS 9.8
CVE-2021-41938 HIGH
Shopxo - Unrestricted File Upload
CVSS 7.2
CVE-2021-25119 HIGH
AGIL WordPress <1.0 - RCE
CVSS 7.2
CVE-2021-33009 HIGH
mySCADA myPRO <8.20.0 - File Upload
CVSS 7.5
CVE-2021-42967 CRITICAL
Novel-Plus - File Upload
CVSS 9.8
CVE-2021-27771 HIGH
Sametime - Privilege Escalation
CVSS 8.2
CVE-2021-42645 CRITICAL
Cmsimple-xh Cmsimple XH - Unrestricted File Upload
CVSS 10.0
CVE-2021-43934 CRITICAL
Elcomplus SmartPTT - File Upload Vulnerability
CVSS 9.8
CVE-2021-41921 CRITICAL
Xxyopen Novel-plus - Unrestricted File Upload
CVSS 9.8
CVE-2021-26628 HIGH
Maxboard < 1.9.6.1 - XSS
CVSS 8.1
Details
Vulnerabilities 4,018
Exploit Likelihood Medium