Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2024-06-10 CVE-2024-36415 Unrestricted Upload of File with Dangerous Type vulnerability in Salesagility Suitecrm
SuiteCRM is an open-source Customer Relationship Management (CRM) software application.
network
low complexity
salesagility CWE-434
8.8
2024-06-06 CVE-2024-36774 Unrestricted Upload of File with Dangerous Type vulnerability in Monstra 3.0.4
An arbitrary file upload vulnerability in Monstra CMS v3.0.4 allows attackers to execute arbitrary code via uploading a crafted PHP file.
network
low complexity
monstra CWE-434
7.2
2024-06-04 CVE-2024-36858 Unrestricted Upload of File with Dangerous Type vulnerability in Homebrew JAN 0.4.12
An arbitrary file upload vulnerability in the /v1/app/writeFileSync interface of Jan v0.4.12 allows attackers to execute arbitrary code via uploading a crafted file.
network
low complexity
homebrew CWE-434
critical
9.8
2024-06-04 CVE-2024-37273 Unrestricted Upload of File with Dangerous Type vulnerability in Homebrew JAN 0.4.12
An arbitrary file upload vulnerability in the /v1/app/appendFileSync interface of Jan v0.4.12 allows attackers to execute arbitrary code via uploading a crafted file.
network
low complexity
homebrew CWE-434
critical
9.8
2024-05-28 CVE-2022-45171 Unrestricted Upload of File with Dangerous Type vulnerability in Liveboxcloud Vdesk
An issue was discovered in LIVEBOX Collaboration vDesk through v018.
network
low complexity
liveboxcloud CWE-434
8.8
2024-05-23 CVE-2024-5247 Unrestricted Upload of File with Dangerous Type vulnerability in Netgear Prosafe Network Management System
NETGEAR ProSAFE Network Management System UpLoadServlet Unrestricted File Upload Remote Code Execution Vulnerability.
network
low complexity
netgear CWE-434
8.8
2024-05-15 CVE-2024-34906 Unrestricted Upload of File with Dangerous Type vulnerability in Dootask 0.30.13
An arbitrary file upload vulnerability in dootask v0.30.13 allows attackers to execute arbitrary code via uploading a crafted PDF file.
network
low complexity
dootask CWE-434
5.4
2024-05-15 CVE-2024-34909 Unrestricted Upload of File with Dangerous Type vulnerability in Kykms
An arbitrary file upload vulnerability in KYKMS v1.0.1 and below allows attackers to execute arbitrary code via uploading a crafted PDF file.
network
low complexity
kykms CWE-434
5.4
2024-05-15 CVE-2024-34913 Unrestricted Upload of File with Dangerous Type vulnerability in Technocking R-Pan-Scaffolding
An arbitrary file upload vulnerability in r-pan-scaffolding v5.0 and below allows attackers to execute arbitrary code via uploading a crafted PDF file.
network
low complexity
technocking CWE-434
5.4
2024-05-15 CVE-2024-3488 Unrestricted Upload of File with Dangerous Type vulnerability in Microfocus Imanager
File Upload vulnerability in unauthenticated session found in OpenText™ iManager 3.2.6.0200. The vulnerability could allow ant attacker to upload a file without authentication.
network
low complexity
microfocus CWE-434
critical
9.8