Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2024-01-31 CVE-2023-31505 Unrestricted Upload of File with Dangerous Type vulnerability in Schlix CMS 2.2.81
An arbitrary file upload vulnerability in Schlix CMS v2.2.8-1, allows remote authenticated attackers to execute arbitrary code and obtain sensitive information via a crafted .phtml file.
network
low complexity
schlix CWE-434
7.2
2024-01-31 CVE-2024-1069 Unrestricted Upload of File with Dangerous Type vulnerability in Crmperks Database for Contact Form 7, Wpforms, Elementor Forms
The Contact Form Entries plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file validation on the 'view_page' function in versions up to, and including, 1.3.2.
network
low complexity
crmperks CWE-434
7.2
2024-01-30 CVE-2024-1034 Unrestricted Upload of File with Dangerous Type vulnerability in Openbi Project Openbi
A vulnerability, which was classified as critical, was found in openBI up to 1.0.8.
network
low complexity
openbi-project CWE-434
critical
9.8
2024-01-26 CVE-2024-0933 Unrestricted Upload of File with Dangerous Type vulnerability in Niushop B2B2C Multi-Business 5.0
A vulnerability was found in Niushop B2B2C V5 and classified as critical.
network
low complexity
niushop CWE-434
critical
9.8
2024-01-26 CVE-2024-22550 Unrestricted Upload of File with Dangerous Type vulnerability in Shopsite 14.0
An arbitrary file upload vulnerability in the component /alsdemo/ss/mediam.cgi of ShopSite v14.0 allows attackers to execute arbitrary code via uploading a crafted SVG file.
network
low complexity
shopsite CWE-434
6.1
2024-01-26 CVE-2024-23630 Unrestricted Upload of File with Dangerous Type vulnerability in Motorola Mr2600 Firmware
An arbitrary firmware upload vulnerability exists in the Motorola MR2600.
network
low complexity
motorola CWE-434
8.8
2024-01-25 CVE-2024-24399 Unrestricted Upload of File with Dangerous Type vulnerability in Lepton-Cms Leptoncms 7.0.0
An arbitrary file upload vulnerability in LEPTON v7.0.0 allows authenticated attackers to execute arbitrary PHP code by uploading this code to the backend/languages/index.php languages area.
network
low complexity
lepton-cms CWE-434
7.2
2024-01-24 CVE-2023-52221 Unrestricted Upload of File with Dangerous Type vulnerability in Ukrsolution Barcode Scanner and Inventory Manager
Unrestricted Upload of File with Dangerous Type vulnerability in UkrSolution Barcode Scanner and Inventory manager.This issue affects Barcode Scanner and Inventory manager: from n/a through 1.5.1.
network
low complexity
ukrsolution CWE-434
critical
9.8
2024-01-23 CVE-2023-52324 Unrestricted Upload of File with Dangerous Type vulnerability in Trendmicro Apex Central 2019
An unrestricted file upload vulnerability in Trend Micro Apex Central could allow a remote attacker to create arbitrary files on affected installations. Please note: although authentication is required to exploit this vulnerability, this vulnerability could be exploited when the attacker has any valid set of credentials.
network
low complexity
trendmicro CWE-434
8.8
2024-01-22 CVE-2024-22895 Unrestricted Upload of File with Dangerous Type vulnerability in Dedecms 5.7.112
DedeCMS 5.7.112 has a File Upload vulnerability via uploads/dede/module_upload.php.
network
low complexity
dedecms CWE-434
8.8