Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2024-12-05 CVE-2024-12233 Unrestricted Upload of File with Dangerous Type vulnerability in Fabianros Online Notice Board 1.0
A vulnerability was found in code-projects Online Notice Board up to 1.0 and classified as critical.
network
low complexity
fabianros CWE-434
critical
9.8
2024-12-03 CVE-2024-25020 Unrestricted Upload of File with Dangerous Type vulnerability in IBM Cognos Controller 11.0.0/11.0.1
IBM Cognos Controller 11.0.0 and 11.0.1 is vulnerable to malicious file upload by allowing unrestricted filetype attachments in the Journal entry page.
network
low complexity
ibm CWE-434
critical
9.8
2024-12-03 CVE-2024-25019 Unrestricted Upload of File with Dangerous Type vulnerability in IBM Cognos Controller 11.0.0/11.0.1
IBM Cognos Controller 11.0.0 and 11.0.1 could be vulnerable to malicious file upload by not validating the type of file uploaded to Journal entry attachments.
network
low complexity
ibm CWE-434
critical
9.8
2024-12-03 CVE-2024-40691 Unrestricted Upload of File with Dangerous Type vulnerability in IBM Cognos Controller 11.0.0/11.0.1
IBM Cognos Controller 11.0.0 and 11.0.1 could be vulnerable to malicious file upload by not validating the content of the file uploaded to the web interface.
network
low complexity
ibm CWE-434
critical
9.8
2024-11-28 CVE-2024-11971 Unrestricted Upload of File with Dangerous Type vulnerability in Jpress 5.1.2
A vulnerability classified as problematic was found in Guizhou Xiaoma Technology jpress 5.1.2.
network
low complexity
jpress CWE-434
5.4
2024-11-26 CVE-2024-11674 Unrestricted Upload of File with Dangerous Type vulnerability in Hospital Management System Project Hospital Management System 1.0
A vulnerability, which was classified as critical, was found in CodeAstro Hospital Management System 1.0.
8.8
2024-11-25 CVE-2024-11661 Unrestricted Upload of File with Dangerous Type vulnerability in Codezips Free Exam Hall Seating Management System 1.0
A vulnerability was found in Codezips Free Exam Hall Seating Management System 1.0.
network
low complexity
codezips CWE-434
critical
9.8
2024-11-20 CVE-2024-52677 Unrestricted Upload of File with Dangerous Type vulnerability in Hkcms
HkCms <= v2.3.2.240702 is vulnerable to file upload in the getFileName method in /app/common/library/Upload.php.
network
low complexity
hkcms CWE-434
critical
9.8
2024-11-20 CVE-2024-51208 Unrestricted Upload of File with Dangerous Type vulnerability in PHPgurukul Boat Booking System 1.0
File Upload vulnerability in change-image.php in Anuj Kumar's Boat Booking System version 1.0 allows local attackers to upload a malicious PHP script via the Image Upload Mechanism parameter.
network
low complexity
phpgurukul CWE-434
7.2
2024-11-15 CVE-2024-50652 Unrestricted Upload of File with Dangerous Type vulnerability in Geeeeeeeek Java Shop 1.0
A file upload vulnerability in java_shop 1.0 allows attackers to upload arbitrary files by modifying the avatar function.
network
low complexity
geeeeeeeek CWE-434
4.3