CWE-434

Medium likelihood

Unrestricted Upload of File with Dangerous Type

Parent: CWE-669 - Incorrect Resource Transfer Between Spheres

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

4,016 vulnerabilities with CWE-434
CVE-2023-48275 HIGH
Trustindex.Io Widgets - Unrestricted Upload
CVSS 8.0
CVE-2023-47873 CRITICAL
Wensolutions WP Child Theme Generator - Unrestricted File Upload
CVSS 9.1
CVE-2023-47846 CRITICAL
Terryl WP Githuber MD < 1.16.3 - Unrestricted File Upload
CVSS 9.1
CVE-2023-47842 CRITICAL
CataBlog <1.7.0 - Unrestricted Upload
CVSS 9.1
CVE-2023-39307 HIGH
Theme-fusion Avada < 7.11.2 - Unrestricted File Upload
CVSS 8.5
CVE-2023-38388 CRITICAL
Artbees JupiterX Core <3.3.5 - Unrestricted Upload
CVSS 9.0
CVE-2023-29386 CRITICAL
Julien Crego Manager <2.0 - Unrestricted Upload
CVSS 9.1
CVE-2023-6091 HIGH
mndpsingh287 Theme Editor <2.7.1 - Unrestricted Upload of File with...
CVSS 7.2
CVE-2023-27440 HIGH
OnTheGoSystems Types <3.4.17 - Unrestricted Upload
CVSS 7.2
CVE-2023-23656 CRITICAL
MainWP File Uploader Extension <4.1 - Unrestricted Upload
CVSS 10.0
CVE-2023-51444 HIGH
GeoServer <2.23.4, 2.24.1 - RCE
CVSS 7.2
CVE-2023-39933 MEDIUM
A.K.I Software PMailServer/PMailServer2 - Code Injection
CVSS 4.3
CVE-2023-42286 CRITICAL
Eyoucms - Unrestricted File Upload
CVSS 9.8
CVE-2023-41505 CRITICAL
Student Enrollment In PHP v1.0 - RCE
CVSS 9.8
CVE-2023-30968 MEDIUM
Gotham Gaia - XSS
CVSS 6.8
CVE-2023-45599 MEDIUM
AiLux imx6 <imx6_1.0.7-2 - File Upload
CVSS 5.5
CVE-2023-45595 MEDIUM
Ailux Imx6 < 1.0.7-2 - Unrestricted File Upload
CVSS 5.9
CVE-2023-6090 CRITICAL
Mollie Mollie Payments for WooCommerce <7.3.11 - Unrestricted Upload
CVSS 9.1
CVE-2023-25921 HIGH
IBM Security Guardium Key Lifecycle Manager - Unrestricted File Upload
CVSS 8.5
CVE-2023-25922 MEDIUM
IBM Security Guardium Key Lifecycle Manager - Unrestricted File Upload
CVSS 4.3
CVE-2023-41506 CRITICAL
Student Enrollment In PHP v1.0 - RCE
CVSS 9.8
CVE-2023-52154 HIGH
Sigb Pmb < 7.4.7 - Unrestricted File Upload
CVSS 7.2
CVE-2023-50386 HIGH
Apache Solr Backup/Restore APIs RCE
CVSS 8.8
CVE-2023-40265 HIGH
Mitel Unify Openscape Xpressions Weba... - Unrestricted File Upload
CVSS 8.8
CVE-2023-25365 HIGH
October - XSS
CVSS 7.8
Details
Vulnerabilities 4,016
Exploit Likelihood Medium