Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2023-12-20 CVE-2023-47784 Unrestricted Upload of File with Dangerous Type vulnerability in Themepunch Slider Revolution
Unrestricted Upload of File with Dangerous Type vulnerability in ThemePunch OHG Slider Revolution.This issue affects Slider Revolution: from n/a through 6.6.15.
network
low complexity
themepunch CWE-434
8.8
2023-12-20 CVE-2023-49814 Unrestricted Upload of File with Dangerous Type vulnerability in Symbiostock 6.0.0
Unrestricted Upload of File with Dangerous Type vulnerability in Symbiostock symbiostock.This issue affects Symbiostock: from n/a through 6.0.0.
network
low complexity
symbiostock CWE-434
7.2
2023-12-20 CVE-2023-6562 Unrestricted Upload of File with Dangerous Type vulnerability in Kakadusoftware Kakadu SDK
JPX Fragment List (flst) box vulnerability in Kakadu 7.9 allows an attacker to exfiltrate local and remote files reachable by a server if the server allows the attacker to upload a specially-crafted the image that is displayed back to the attacker.
network
low complexity
kakadusoftware CWE-434
7.5
2023-12-20 CVE-2023-6976 Unrestricted Upload of File with Dangerous Type vulnerability in Lfprojects Mlflow
This vulnerability is capable of writing arbitrary files into arbitrary locations on the remote filesystem in the context of the server process.
network
low complexity
lfprojects CWE-434
8.8
2023-12-20 CVE-2023-47706 Unrestricted Upload of File with Dangerous Type vulnerability in IBM Security Guardium KEY Lifecycle Manager 4.2.0
IBM Security Guardium Key Lifecycle Manager 4.3 could allow an authenticated user to upload files of a dangerous file type.
network
low complexity
ibm CWE-434
8.8
2023-12-19 CVE-2023-46263 Unrestricted Upload of File with Dangerous Type vulnerability in Ivanti Avalanche
An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.4.1 and below that could allow an attacker to achieve a remote code execution.
network
low complexity
ivanti CWE-434
critical
9.8
2023-12-19 CVE-2023-46264 Unrestricted Upload of File with Dangerous Type vulnerability in Ivanti Avalanche
An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.4.1 and below that could allow an attacker to achieve a remove code execution.
network
low complexity
ivanti CWE-434
critical
9.8
2023-12-18 CVE-2023-4311 Unrestricted Upload of File with Dangerous Type vulnerability in Maurice Vrm360 1.2.1
The Vrm 360 3D Model Viewer WordPress plugin through 1.2.1 is vulnerable to arbitrary file upload due to insufficient checks in a plugin shortcode.
network
low complexity
maurice CWE-434
8.8
2023-12-17 CVE-2023-6902 Unrestricted Upload of File with Dangerous Type vulnerability in Codelyfe Stupid Simple CMS
A vulnerability has been found in codelyfe Stupid Simple CMS up to 1.2.4 and classified as critical.
network
low complexity
codelyfe CWE-434
critical
9.8
2023-12-17 CVE-2023-6887 Unrestricted Upload of File with Dangerous Type vulnerability in Forestblog Project Forestblog 20190404/20220630
A vulnerability classified as critical has been found in saysky ForestBlog up to 20220630.
network
low complexity
forestblog-project CWE-434
critical
9.8