CWE-434

Medium likelihood

Unrestricted Upload of File with Dangerous Type

Parent: CWE-669 - Incorrect Resource Transfer Between Spheres

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

4,019 vulnerabilities with CWE-434
CVE-2020-3436 HIGH
Cisco ASA/FTD - Info Disclosure
CVSS 8.6
CVE-2020-26583 MEDIUM
Sage DPW <2020_06_002 - XSS
CVSS 6.1
CVE-2020-26048 HIGH
Cuppacms < 2019-11-12 - Unrestricted File Upload
CVSS 8.8
CVE-2020-12715 HIGH
RainbowFish PacsOne Server 6.8.4 - Privilege Escalation
CVSS 8.8
CVE-2020-15488 HIGH
RE - Unrestricted File Upload
CVSS 7.5
CVE-2020-25763 CRITICAL
Seat Reservation System - Unrestricted File Upload
CVSS 9.8
CVE-2020-21564 HIGH
Pluck - Unrestricted File Upload
CVSS 8.8
CVE-2020-19672 CRITICAL
Niushop - Unrestricted File Upload
CVSS 9.8
CVE-2020-25149 HIGH
Observium - Path Traversal
CVSS 8.8
CVE-2020-25145 HIGH
Observium - Path Traversal
CVSS 8.8
CVE-2020-25144 HIGH
Observium - Path Traversal
CVSS 8.8
CVE-2020-25136 HIGH
Observium - Path Traversal
CVSS 8.8
CVE-2020-25134 HIGH
Observium - Path Traversal
CVSS 8.8
CVE-2020-25133 HIGH
Observium - Path Traversal
CVSS 8.8
CVE-2020-12843 CRITICAL
is smart gate PRO <1.5.9 - Code Injection
CVSS 9.8
CVE-2020-12837 HIGH
is smart gate PRO 1.5.9 - Code Injection
CVSS 7.5
CVE-2020-25515 HIGH
Simple Library Management System - Unrestricted File Upload
CVSS 7.8
CVE-2020-15839 MEDIUM
Liferay Digital Experience Platform < 7.3.3 - Unrestricted File Upload
CVSS 6.5
CVE-2020-14022 HIGH
Ozeki NG Sms Gateway < 4.17.6 - Unrestricted File Upload
CVSS 8.8
CVE-2020-4620 HIGH
IBM Data Risk Manager < 2.0.6.4 - Unrestricted File Upload
CVSS 8.8
CVE-2020-25790 HIGH
Typesetter < 5.1 - Unrestricted File Upload
CVSS 7.2
CVE-2020-15189 MEDIUM
SOY CMS <3.0.2.328 - RCE
CVSS 6.8
CVE-2020-25733 HIGH
Webtareas < 2.1 - Unrestricted File Upload
CVSS 7.5
CVE-2020-13260 MEDIUM
RAD SecFlow-1v - Authenticated XSS
CVSS 6.1
CVE-2020-23828 CRITICAL
SourceCodester Online Course Registration v1.0 - RCE
CVSS 9.8
Details
Vulnerabilities 4,019
Exploit Likelihood Medium