Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2023-10-04 CVE-2023-43321 Unrestricted Upload of File with Dangerous Type vulnerability in Dcnetworks Dcfw-1800-Sdc Firmware 3.0
File Upload vulnerability in Digital China Networks DCFW-1800-SDC v.3.0 allows an authenticated attacker to execute arbitrary code via the wget function in the /sbin/cloudadmin.sh component.
network
low complexity
dcnetworks CWE-434
8.8
2023-10-04 CVE-2023-43838 Unrestricted Upload of File with Dangerous Type vulnerability in Personal-Management-System Personal Management System 1.4.64
An arbitrary file upload vulnerability in Personal Management System v1.4.64 allows attackers to execute arbitrary code via uploading a crafted SVG file into a user profile's avatar.
local
low complexity
personal-management-system CWE-434
7.8
2023-10-03 CVE-2023-44973 Unrestricted Upload of File with Dangerous Type vulnerability in Emlog 2.2.0
An arbitrary file upload vulnerability in the component /content/templates/ of Emlog Pro v2.2.0 allows attackers to execute arbitrary code via uploading a crafted PHP file.
network
low complexity
emlog CWE-434
critical
9.8
2023-10-03 CVE-2023-44974 Unrestricted Upload of File with Dangerous Type vulnerability in Emlog 2.2.0
An arbitrary file upload vulnerability in the component /admin/plugin.php of Emlog Pro v2.2.0 allows attackers to execute arbitrary code via uploading a crafted PHP file.
network
low complexity
emlog CWE-434
critical
9.8
2023-10-03 CVE-2023-4817 Unrestricted Upload of File with Dangerous Type vulnerability in Icpdas Et-7060 Firmware 3.00
This vulnerability allows an authenticated attacker to upload malicious files by bypassing the restrictions of the upload functionality, compromising the entire device.
network
low complexity
icpdas CWE-434
8.8
2023-10-03 CVE-2022-47893 Unrestricted Upload of File with Dangerous Type vulnerability in Riello-Ups Netman 204 Firmware
There is a remote code execution vulnerability that affects all versions of NetMan 204.
network
low complexity
riello-ups CWE-434
critical
9.8
2023-10-03 CVE-2023-4097 Unrestricted Upload of File with Dangerous Type vulnerability in Qsige 3.0.0.0
The file upload functionality is not implemented correctly and allows uploading of any type of file.
network
low complexity
qsige CWE-434
8.8
2023-10-02 CVE-2023-44008 Unrestricted Upload of File with Dangerous Type vulnerability in Mojoportal 2.7.0.0
File Upload vulnerability in mojoPortal v.2.7.0.0 allows a remote attacker to execute arbitrary code via the File Manager function.
network
low complexity
mojoportal CWE-434
critical
9.8
2023-10-02 CVE-2023-44009 Unrestricted Upload of File with Dangerous Type vulnerability in Mojoportal 2.7.0.0
File Upload vulnerability in mojoPortal v.2.7.0.0 allows a remote attacker to execute arbitrary code via the Skin Management function.
network
low complexity
mojoportal CWE-434
critical
9.8
2023-09-30 CVE-2023-5227 Unrestricted Upload of File with Dangerous Type vulnerability in PHPmyfaq
Unrestricted Upload of File with Dangerous Type in GitHub repository thorsten/phpmyfaq prior to 3.1.8.
network
low complexity
phpmyfaq CWE-434
critical
9.8