CWE-434

Medium likelihood

Unrestricted Upload of File with Dangerous Type

Parent: CWE-669 - Incorrect Resource Transfer Between Spheres

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

4,018 vulnerabilities with CWE-434
CVE-2023-31903 CRITICAL
GuppY CMS 6.00.10 - RCE
CVSS 9.8
CVE-2023-31857 CRITICAL
Sourcecodester Online Computer and Laptop Store 1.0 - RCE
CVSS 9.8
CVE-2023-2738 MEDIUM
Tongda2000 Tongda Office Anywhere - Unrestricted File Upload
CVSS 6.3
CVE-2023-31576 HIGH
Serendipity 2.4-beta1 - RCE
CVSS 8.8
CVE-2023-30247 CRITICAL
Storage Unit Rental Management System - Unrestricted File Upload
CVSS 9.8
CVE-2023-29657 HIGH
Extplorer - Unrestricted File Upload
CVSS 8.8
CVE-2023-2648 MEDIUM
Weaver E-Office 9.5 - Unrestricted Upload
CVSS 6.3
CVE-2023-29930 HIGH
Genesys Tftp Server - Unrestricted File Upload
CVSS 8.8
CVE-2023-28128 HIGH
Ivanti Avalanche < 6.3.4.153 - Unrestricted File Upload
CVSS 7.2
CVE-2023-24507 HIGH
AgilePoint NX <8.0 SU2.3 - Insecure File Upload
CVSS 8.8
CVE-2023-30185 CRITICAL
Crmeb < 4.6.0 - Unrestricted File Upload
CVSS 9.8
CVE-2023-30090 CRITICAL
Sem-cms Semcms - Unrestricted File Upload
CVSS 9.8
CVE-2023-30122 CRITICAL
Online Food Ordering System - Unrestricted File Upload
CVSS 9.8
CVE-2023-30264 CRITICAL
Cltphp < 6.0 - Unrestricted File Upload
CVSS 9.8
CVE-2023-2523 HIGH
E-office - Unrestricted File Upload
CVSS 7.3
CVE-2023-0924 HIGH
Zyrex Popup < 1.1 - Unrestricted File Upload
CVSS 7.2
CVE-2023-29635 CRITICAL
Antabot White-jotter - Unrestricted File Upload
CVSS 9.8
CVE-2023-2424 MEDIUM
Dedecms - Unrestricted File Upload
CVSS 6.3
CVE-2023-2419 MEDIUM
Crmeb - Unrestricted File Upload
CVSS 4.7
CVE-2023-24269 HIGH
Textpattern 4.8.8 - RCE
CVSS 8.8
CVE-2023-29268 CRITICAL
TIBCO Spotfire Statistics Services <12.0 - File Upload
CVSS 9.8
CVE-2023-30266 HIGH
Cltphp < 6.0 - Unrestricted File Upload
CVSS 8.8
CVE-2023-26098 HIGH
Telindus Apsal <3.14.2022.235 - RCE
CVSS 8.2
CVE-2023-30613 HIGH
Kiwitcms Kiwi Tcms < 12.2 - Unrestricted File Upload
CVSS 8.1
CVE-2023-1731 HIGH
Meinbergs LTOS <V7.06.013 - Command Injection
CVSS 7.2
Details
Vulnerabilities 4,018
Exploit Likelihood Medium