Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2024-09-05 CVE-2024-8463 Unrestricted Upload of File with Dangerous Type vulnerability in PHPgurukul JOB Portal 1.0
File upload restriction bypass vulnerability in PHPGurukul Job Portal 1.0, the exploitation of which could allow an authenticated user to execute an RCE via webshell.
network
low complexity
phpgurukul CWE-434
8.8
2024-09-04 CVE-2024-45076 Unrestricted Upload of File with Dangerous Type vulnerability in IBM Webmethods Integration 10.15
IBM webMethods Integration 10.15 could allow an authenticated user to upload and execute arbitrary files which could be executed on the underlying operating system.
network
low complexity
ibm CWE-434
critical
9.9
2024-08-30 CVE-2024-8342 Unrestricted Upload of File with Dangerous Type vulnerability in Nelzkie15 Petshop Management System 1.0
A vulnerability, which was classified as critical, has been found in SourceCodester Petshop Management System 1.0.
network
low complexity
nelzkie15 CWE-434
8.8
2024-08-30 CVE-2024-8338 Unrestricted Upload of File with Dangerous Type vulnerability in Hfo4 Shudong-Share 2.4.7
A vulnerability was found in HFO4 shudong-share 2.4.7.
network
low complexity
hfo4 CWE-434
8.8
2024-08-30 CVE-2024-8341 Unrestricted Upload of File with Dangerous Type vulnerability in Nelzkie15 PET Shop Management System 1.0
A vulnerability classified as critical was found in SourceCodester Petshop Management System 1.0.
network
low complexity
nelzkie15 CWE-434
critical
9.8
2024-08-30 CVE-2024-8330 Unrestricted Upload of File with Dangerous Type vulnerability in 6Shr System Project 6Shr System
6SHR system from Gether Technology does not properly validate uploaded file types, allowing remote attackers with regular privileges to upload web shell scripts and use them to execute arbitrary system commands on the server.
network
low complexity
6shr-system-project CWE-434
8.8
2024-08-29 CVE-2024-8296 Unrestricted Upload of File with Dangerous Type vulnerability in Feehi Feehicms
A vulnerability was found in FeehiCMS up to 2.1.1 and classified as critical.
network
low complexity
feehi CWE-434
critical
9.8
2024-08-29 CVE-2024-8295 Unrestricted Upload of File with Dangerous Type vulnerability in Feehi Feehicms
A vulnerability has been found in FeehiCMS up to 2.1.1 and classified as critical.
network
low complexity
feehi CWE-434
critical
9.8
2024-08-29 CVE-2024-8294 Unrestricted Upload of File with Dangerous Type vulnerability in Feehi Feehicms
A vulnerability, which was classified as critical, was found in FeehiCMS up to 2.1.1.
network
low complexity
feehi CWE-434
critical
9.8
2024-08-28 CVE-2024-6311 Unrestricted Upload of File with Dangerous Type vulnerability in Funnelforms Free
The Funnelforms Free plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'af2_add_font' function in all versions up to, and including, 3.7.3.2.
network
low complexity
funnelforms CWE-434
7.2