Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2021-10-07 CVE-2021-37930 Unrestricted Upload of File with Dangerous Type vulnerability in Zohocorp Manageengine Admanager Plus
Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execution.
network
low complexity
zohocorp CWE-434
critical
9.8
2021-10-07 CVE-2021-37931 Unrestricted Upload of File with Dangerous Type vulnerability in Zohocorp Manageengine Admanager Plus
Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execution.
network
low complexity
zohocorp CWE-434
critical
9.8
2021-10-07 CVE-2021-3832 Unrestricted Upload of File with Dangerous Type vulnerability in Artica Integria IMS 5.0.92
Integria IMS in its 5.0.92 version is vulnerable to a Remote Code Execution attack through file uploading.
network
low complexity
artica CWE-434
critical
9.8
2021-10-04 CVE-2021-40324 Unrestricted Upload of File with Dangerous Type vulnerability in Cobbler Project Cobbler
Cobbler before 3.3.0 allows arbitrary file write operations via upload_log_data.
network
low complexity
cobbler-project CWE-434
7.5
2021-09-28 CVE-2021-37105 Unrestricted Upload of File with Dangerous Type vulnerability in Huawei Fusioncompute 6.5.0/6.5.1/8.0.0
There is an improper file upload control vulnerability in FusionCompute 6.5.0, 6.5.1 and 8.0.0.
network
low complexity
huawei CWE-434
7.5
2021-09-27 CVE-2020-20691 Unrestricted Upload of File with Dangerous Type vulnerability in Monstra CMS 3.0.4
An issue in Monstra CMS v3.0.4 allows attackers to execute arbitrary web scripts or HTML via bypassing the file extension filter and uploading crafted HTML files.
network
low complexity
monstra CWE-434
6.5
2021-09-27 CVE-2021-37761 Unrestricted Upload of File with Dangerous Type vulnerability in Zohocorp Manageengine Admanager Plus
Zoho ManageEngine ADManager Plus version 7110 and prior is vulnerable to unrestricted file upload, leading to remote code execution.
network
low complexity
zohocorp CWE-434
critical
9.8
2021-09-27 CVE-2021-37539 Unrestricted Upload of File with Dangerous Type vulnerability in Zohocorp Manageengine Admanager Plus
Zoho ManageEngine ADManager Plus before 7111 is vulnerable to unrestricted file which leads to Remote code execution.
network
low complexity
zohocorp CWE-434
critical
9.8
2021-09-23 CVE-2021-26794 Unrestricted Upload of File with Dangerous Type vulnerability in Frogcms Project Frogcms 0.9.5
Privilege escalation in 'upload.php' in FrogCMS SentCMS v0.9.5 allows attacker to execute arbitrary code via crafted php file.
network
low complexity
frogcms-project CWE-434
critical
9.8
2021-09-21 CVE-2021-37741 Unrestricted Upload of File with Dangerous Type vulnerability in Zohocorp Manageengine Admanager Plus
ManageEngine ADManager Plus before 7111 has Pre-authentication RCE vulnerabilities.
network
low complexity
zohocorp CWE-434
8.8