Vulnerabilities > Unrestricted Upload of File with Dangerous Type
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-09-10 | CVE-2024-44871 | Unrestricted Upload of File with Dangerous Type vulnerability in Mozilo Mozilocms 3.0 An arbitrary file upload vulnerability in the component /admin/index.php of moziloCMS v3.0 allows attackers to execute arbitrary code via uploading a crafted file. | 7.2 |
2024-09-10 | CVE-2024-7770 | Unrestricted Upload of File with Dangerous Type vulnerability in Bitapps File Manager The Bit File Manager – 100% Free & Open Source File Manager and Code Editor for WordPress plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'upload' function in all versions up to, and including, 6.5.5. | 8.8 |
2024-09-07 | CVE-2024-7620 | The Customizer Export/Import plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the '_import' function in all versions up to, and including, 0.9.7. | 6.6 |
2024-09-05 | CVE-2024-8463 | Unrestricted Upload of File with Dangerous Type vulnerability in PHPgurukul JOB Portal 1.0 File upload restriction bypass vulnerability in PHPGurukul Job Portal 1.0, the exploitation of which could allow an authenticated user to execute an RCE via webshell. | 8.8 |
2024-09-04 | CVE-2024-45076 | Unrestricted Upload of File with Dangerous Type vulnerability in IBM Webmethods Integration 10.15 IBM webMethods Integration 10.15 could allow an authenticated user to upload and execute arbitrary files which could be executed on the underlying operating system. | 9.9 |
2024-08-30 | CVE-2024-8342 | Unrestricted Upload of File with Dangerous Type vulnerability in Nelzkie15 Petshop Management System 1.0 A vulnerability, which was classified as critical, has been found in SourceCodester Petshop Management System 1.0. | 8.8 |
2024-08-30 | CVE-2024-8338 | Unrestricted Upload of File with Dangerous Type vulnerability in Hfo4 Shudong-Share 2.4.7 A vulnerability was found in HFO4 shudong-share 2.4.7. | 8.8 |
2024-08-30 | CVE-2024-8341 | Unrestricted Upload of File with Dangerous Type vulnerability in Nelzkie15 PET Shop Management System 1.0 A vulnerability classified as critical was found in SourceCodester Petshop Management System 1.0. | 9.8 |
2024-08-30 | CVE-2024-8330 | Unrestricted Upload of File with Dangerous Type vulnerability in 6Shr System Project 6Shr System 6SHR system from Gether Technology does not properly validate uploaded file types, allowing remote attackers with regular privileges to upload web shell scripts and use them to execute arbitrary system commands on the server. | 8.8 |
2024-08-29 | CVE-2024-8296 | Unrestricted Upload of File with Dangerous Type vulnerability in Feehi Feehicms A vulnerability was found in FeehiCMS up to 2.1.1 and classified as critical. | 9.8 |