Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2020-03-19 CVE-2019-16066 Unrestricted Upload of File with Dangerous Type vulnerability in Netsas Enigma Network Management Solution
An unrestricted file upload vulnerability exists in user and system file upload functions in NETSAS Enigma NMS 65.0.0 and prior.
network
low complexity
netsas CWE-434
8.8
2020-03-18 CVE-2020-9423 Unrestricted Upload of File with Dangerous Type vulnerability in Logicaldoc
LogicalDoc before 8.3.3 could allow an attacker to upload arbitrary files, leading to command execution or retrieval of data from the database.
network
low complexity
logicaldoc CWE-434
critical
9.8
2020-03-17 CVE-2019-11074 Unrestricted Upload of File with Dangerous Type vulnerability in Paessler Prtg Network Monitor
A Write to Arbitrary Location in Disk vulnerability exists in PRTG Network Monitor 19.1.49 and below that allows attackers to place files in arbitrary locations with SYSTEM privileges (although not controlling the contents of such files) due to insufficient sanitisation when passing arguments to the phantomjs.exe binary.
network
low complexity
paessler CWE-434
7.2
2020-03-16 CVE-2020-9472 Unrestricted Upload of File with Dangerous Type vulnerability in Umbraco CMS 8.5.3
Umbraco CMS 8.5.3 allows an authenticated file upload (and consequently Remote Code Execution) via the Install Package functionality.
network
low complexity
umbraco CWE-434
6.5
2020-03-16 CVE-2020-9471 Unrestricted Upload of File with Dangerous Type vulnerability in Umbraco CMS 8.5.3
Umbraco Cloud 8.5.3 allows an authenticated file upload (and consequently Remote Code Execution) via the Install Packages functionality.
network
low complexity
umbraco CWE-434
8.8
2020-03-16 CVE-2020-5844 Unrestricted Upload of File with Dangerous Type vulnerability in Artica Pandora FMS 7.0Ng
index.php?sec=godmode/extensions&sec2=extensions/files_repo in Pandora FMS v7.0 NG allows authenticated administrators to upload malicious PHP scripts, and execute them via base64 decoding of the file location.
network
low complexity
artica CWE-434
7.2
2020-03-16 CVE-2020-10557 Unrestricted Upload of File with Dangerous Type vulnerability in Atutor Acontent
An issue was discovered in AContent through 1.4.
network
low complexity
atutor CWE-434
8.8
2020-03-13 CVE-2020-10562 Unrestricted Upload of File with Dangerous Type vulnerability in Devome GRR
An issue was discovered in DEVOME GRR before 3.4.1c.
network
low complexity
devome CWE-434
7.2
2020-03-12 CVE-2020-10386 Unrestricted Upload of File with Dangerous Type vulnerability in Chadhaajay PHPkb 9.0
admin/imagepaster/image-upload.php in Chadha PHPKB Standard Multi-Language 9 allows remote attackers to achieve Code Execution by uploading a .php file in the admin/js/ directory.
network
low complexity
chadhaajay CWE-434
7.2
2020-03-09 CVE-2016-6918 Unrestricted Upload of File with Dangerous Type vulnerability in Lexmark Markvision Enterprise 2.1/2.3.0
Lexmark Markvision Enterprise (MVE) before 2.4.1 allows remote attackers to execute arbitrary commands by uploading files.
network
low complexity
lexmark CWE-434
critical
9.8