CWE-434

Medium likelihood

Unrestricted Upload of File with Dangerous Type

Parent: CWE-669 - Incorrect Resource Transfer Between Spheres

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

4,017 vulnerabilities with CWE-434
CVE-2023-6102 MEDIUM
Maiwei Safety Production Control Platform 4.1 - Unrestricted Upload
CVSS 5.3
CVE-2023-47129 HIGH
Statamic < 3.4.13 - Unrestricted File Upload
CVSS 8.3
CVE-2023-42659 CRITICAL
Progress WS FTP Server < 8.7.6 - Unrestricted File Upload
CVSS 9.1
CVE-2023-33480 HIGH
RemoteClinic 2.0 - Privilege Escalation
CVSS 8.8
CVE-2023-5601 CRITICAL
Atomicwebstrategy Woocommerce Ninja F... - Unrestricted File Upload
CVSS 9.8
CVE-2023-41725 HIGH
Ivanti Avalanche < 6.4.1.236 - Unrestricted File Upload
CVSS 7.8
CVE-2023-41357 HIGH
Galaxy Software Services Corporation Vitals ESP - RCE
CVSS 8.8
CVE-2023-5919 MEDIUM
Company Website Cms - Unrestricted File Upload
CVSS 4.7
CVE-2023-42802 CRITICAL
Glpi < 10.0.10 - Improper Input Validation
CVSS 10.0
CVE-2023-5860 HIGH
Bplugins Icons Font Loader < 1.1.3 - Unrestricted File Upload
CVSS 7.2
CVE-2023-46428 HIGH
HadSky <7.12.10 - RCE
CVSS 8.8
CVE-2023-20196 MEDIUM
Cisco ISE - RCE
CVSS 4.7
CVE-2023-20195 MEDIUM
Cisco ISE - RCE
CVSS 4.7
CVE-2023-1720 CRITICAL
Bitrix24 22.0.300 - XSS
CVSS 9.6
CVE-2023-1713 HIGH
Bitrix24 <22.0.300 - RCE
CVSS 8.8
CVE-2023-40050 CRITICAL
Chef Automate < 4.10.29 - Code Injection
CVSS 9.9
CVE-2023-5360 CRITICAL
WordPress Royal Elementor Addons RCE
CVSS 9.8
CVE-2023-42803 MEDIUM
Bigbluebutton < 2.5.18 - Unrestricted File Upload
CVSS 5.3
CVE-2023-5829 MEDIUM
Admission Management System - Unrestricted File Upload
CVSS 6.3
CVE-2023-46815 HIGH
SugarCRM <12.0.4-13.0.2 - Unrestricted File Upload
CVSS 8.8
CVE-2023-5812 MEDIUM
Flusity < 2.304 - Unrestricted File Upload
CVSS 4.7
CVE-2023-5796 MEDIUM
Martmbithi Pos System - Unrestricted File Upload
CVSS 6.3
CVE-2023-5795 MEDIUM
Martmbithi Pos System - Unrestricted File Upload
CVSS 6.3
CVE-2023-5790 MEDIUM
Remyandrade File Manager App - Unrestricted File Upload
CVSS 6.3
CVE-2023-45555 HIGH
Zzzcms - Unrestricted File Upload
CVSS 7.8
Details
Vulnerabilities 4,017
Exploit Likelihood Medium