CWE-434

Medium likelihood

Unrestricted Upload of File with Dangerous Type

Parent: CWE-669 - Incorrect Resource Transfer Between Spheres

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

4,022 vulnerabilities with CWE-434
CVE-2011-4183 MEDIUM
SUSE Open Build Service <2.1.16 - RCE
CVSS 6.5
CVE-2011-4334 HIGH
LabWiki <1.1 - RCE
CVSS 8.8
CVE-2010-1433 CRITICAL
Joomla! Core <1.5.16 - RCE
CVSS 9.8
CVE-2010-4661 HIGH
Udisks < 1.0.3 - Unrestricted File Upload
CVSS 7.8
CVE-2010-3663 HIGH
Typo3 < 4.1.14 - Unrestricted File Upload
CVSS 8.8
CVE-2009-20006 CRITICAL
osCommerce <2.2 RC2a - RCE
CVE-2009-20011 CRITICAL
ContentKeeper Web Appliance <125.10 - RCE
CVE-2006-6994
Indirmax.org Ozzywork Galeri < 2.0 - Unrestricted File Upload
CVE-2006-5845
Speedywiki - Unrestricted File Upload
CVE-2006-4558
Deluxebb < 1.06 - Unrestricted File Upload
CVE-2006-4471
Joomla! < 1.0.11 - Unrestricted File Upload
CVE-2006-2428
Duware Dubanner - Unrestricted File Upload
CVE-2005-3288
Rockliffe Mailsite Express - Unrestricted File Upload
CVE-2005-1868
Yvesglodt I-man < 0.9 - Unrestricted File Upload
CVE-2005-1881
Yapig - Unrestricted File Upload
CVE-2005-0254 LOW
Guillaumegardey Biborb - Unrestricted File Upload
CVSS 3.7
CVE-2004-2262
e107 <0.617 - RCE
CVE-2002-1841
Noguska Nola - Unrestricted File Upload
CVE-2001-0901
Hypermail - Unrestricted File Upload
CVE-2001-1099
Norton AntiVirus for Microsoft Exchange 2000 2.x - Info Disclosure
CVE-2001-0340
Microsoft Exchange Server - Unrestricted File Upload
CVE-1999-0036 HIGH
SGI Irix - Unrestricted File Upload
CVSS 8.4
Details
Vulnerabilities 4,022
Exploit Likelihood Medium