CWE-434

Medium likelihood

Unrestricted Upload of File with Dangerous Type

Parent: CWE-669 - Incorrect Resource Transfer Between Spheres

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

4,019 vulnerabilities with CWE-434
CVE-2020-28063 CRITICAL
Articlecms - Unrestricted File Upload
CVSS 9.8
CVE-2020-20092 CRITICAL
Articlecms - Unrestricted File Upload
CVSS 9.8
CVE-2020-23790 CRITICAL
Golo Laravel <1.1.5 - File Upload
CVSS 9.8
CVE-2020-19113 CRITICAL
Online Book Store v1.0 - RCE
CVSS 9.8
CVE-2020-23083 CRITICAL
JEECG <4.0 - RCE
CVSS 9.8
CVE-2020-21452 CRITICAL
Uniview Isc2500-s Firmware - Unrestricted File Upload
CVSS 9.8
CVE-2020-29592 CRITICAL
Orchard <1.10 - RCE
CVSS 9.8
CVE-2020-21585 CRITICAL
Emlog - Unrestricted File Upload
CVSS 9.8
CVE-2020-28173 HIGH
Simple College - Unrestricted File Upload
CVSS 7.2
CVE-2020-19642 MEDIUM
Insma Wifi Mini Spy 1080p HD Security... - Unrestricted File Upload
CVSS 6.2
CVE-2020-29032 HIGH
Secomea Gatemanager 8250 Firmware - Unrestricted File Upload
CVSS 8.4
CVE-2020-36079 HIGH
Zenphoto < 1.5.7 - Unrestricted File Upload
CVSS 7.2
CVE-2020-7847 HIGH
ipTIME NAS <1.4.36 - RCE
CVSS 7.4
CVE-2020-4955 HIGH
IBM Spectrum Protect Operations Center - Unrestricted File Upload
CVSS 8.0
CVE-2020-28871 CRITICAL
Monitorr - Unrestricted File Upload
CVSS 9.8
CVE-2020-25037 HIGH
Ucopia Wireless Appliance < 6.0.5 - Unrestricted File Upload
CVSS 8.2
CVE-2020-20287 CRITICAL
Yccms - Unrestricted File Upload
CVSS 9.8
CVE-2020-24549 HIGH
openMAINT <1.1-2.4.2 - Command Injection
CVSS 8.8
CVE-2020-22643 HIGH
Feehi CMS 2.1.0 - RCE
CVSS 7.2
CVE-2020-26295 HIGH
OpenMage <19.4.10, <20.0.5 - Code Injection
CVSS 8.7
CVE-2020-26285 HIGH
OpenMage <19.4.10, <20.0.5 - RCE
CVSS 8.7
CVE-2020-26252 HIGH
OpenMage <19.4.10, <20.0.6 - RCE
CVSS 8.7
CVE-2020-19364 HIGH
Open-emr Openemr - Unrestricted File Upload
CVSS 8.8
CVE-2020-29450 MEDIUM
Atlassian Confluence <7.2.0 - DoS
CVSS 6.5
CVE-2020-36167 CRITICAL
Veritas Backup Exec < 20.0.1188.2734 - Unrestricted File Upload
CVSS 9.3
Details
Vulnerabilities 4,019
Exploit Likelihood Medium