CWE-434

Medium likelihood

Unrestricted Upload of File with Dangerous Type

Parent: CWE-669 - Incorrect Resource Transfer Between Spheres

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

4,018 vulnerabilities with CWE-434
CVE-2023-25132 CRITICAL
Cyberpower Powerpanel < 4.8.6 - Unrestricted File Upload
CVSS 9.1
CVE-2023-2246 MEDIUM
Online Pizza Ordering System - Unrestricted File Upload
CVSS 6.3
CVE-2023-2245 MEDIUM
Hansuncms - Unrestricted File Upload
CVSS 6.3
CVE-2023-28962 MEDIUM
Juniper Networks Junos OS <19.4R3-S11, <20.1R1, <20.2R3-S7, <20.3R1...
CVSS 5.3
CVE-2023-27755 HIGH
71note Go-bbs - Unrestricted File Upload
CVSS 8.8
CVE-2023-29627 HIGH
Online Pizza Ordering - Unrestricted File Upload
CVSS 8.8
CVE-2023-29625 HIGH
Employee Performance Evaluation System - Unrestricted File Upload
CVSS 8.8
CVE-2023-29621 HIGH
Purchase Order Management - Unrestricted File Upload
CVSS 8.8
CVE-2023-2034 HIGH
Froxlor < 2.0.14 - Unrestricted File Upload
CVSS 8.8
CVE-2023-26852 HIGH
Textpattern <4.8.8 - RCE
CVSS 7.2
CVE-2023-27179 HIGH
GDidees CMS <3.9.1 - Info Disclosure
CVSS 7.5
CVE-2023-27178 CRITICAL
GDidees CMS 3.9.1 - Code Injection
CVSS 9.8
CVE-2023-1970 MEDIUM
yuan1994 tpAdmin 1.3.12 - Unrestricted Upload
CVSS 6.3
CVE-2023-29375 CRITICAL
Progress Sitefinity <14.3.8025 - File Upload
CVSS 9.8
CVE-2023-1406 HIGH
JetEngine <3.1.3.1 - RCE
CVSS 8.8
CVE-2023-27602 CRITICAL
Apache Linkis < 1.3.1 - Unrestricted File Upload
CVSS 9.8
CVE-2023-27033 CRITICAL
Prestashop cdesigner <3.1.8 - Code Injection
CVSS 9.8
CVE-2023-1942 MEDIUM
SourceCodester Online Computer and Laptop Store 1.0 - Unrestricted ...
CVSS 6.3
CVE-2023-24720 CRITICAL
readium-js <0.32.0 - RCE
CVSS 9.8
CVE-2023-0670 HIGH
Ulearn - Unrestricted File Upload
CVSS 7.2
CVE-2023-20134 MEDIUM
Cisco Webex Meetings - XSS
CVSS 5.4
CVE-2023-20073 MEDIUM
Cisco RV340-345 - File Upload
CVSS 5.3
CVE-2023-26857 HIGH
Dynamic Transaction Queuing System v1.0 - RCE
CVSS 7.2
CVE-2023-0265 HIGH
Uvdesk 1.1.1 - RCE
CVSS 8.8
CVE-2023-26775 HIGH
Monitorr <1.7.6 - RCE
CVSS 7.8
Details
Vulnerabilities 4,018
Exploit Likelihood Medium