Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2023-08-17 CVE-2023-31941 Unrestricted Upload of File with Dangerous Type vulnerability in Online Travel Agency System Project Online Travel Agency System 1.0
File Upload vulnerability found in Online Travel Agency System v.1.0 allows a remote attacker to execute arbitrary code via a crafted PHP file to the employee_insert.php.
7.2
2023-08-17 CVE-2023-31946 Unrestricted Upload of File with Dangerous Type vulnerability in Online Travel Agency System Project Online Travel Agency System 1.0
File Upload vulnerability found in Online Travel Agency System v.1.0 allows a remote attacker to execute arbitrary code via a crafted PHP file to the artical.php.
7.2
2023-08-16 CVE-2023-39115 Unrestricted Upload of File with Dangerous Type vulnerability in Campcodes Complete Online Matrimonial Website System Script 3.3
install/aiz-uploader/upload in Campcodes Online Matrimonial Website System Script 3.3 allows XSS via a crafted SVG document.
network
low complexity
campcodes CWE-434
critical
9.8
2023-08-15 CVE-2023-38915 Unrestricted Upload of File with Dangerous Type vulnerability in Wolf18 Easyadmin8 1.0
File Upload vulnerability in Wolf-leo EasyAdmin8 v.1.0 allows a remote attacker to execute arbtirary code via the upload type function.
network
low complexity
wolf18 CWE-434
critical
9.8
2023-08-14 CVE-2023-28480 Unrestricted Upload of File with Dangerous Type vulnerability in Tigergraph 3.7.0
An issue was discovered in Tigergraph Enterprise 3.7.0.
network
low complexity
tigergraph CWE-434
6.5
2023-08-14 CVE-2023-28482 Unrestricted Upload of File with Dangerous Type vulnerability in Tigergraph 3.7.0
An issue was discovered in Tigergraph Enterprise 3.7.0.
network
low complexity
tigergraph CWE-434
6.5
2023-08-11 CVE-2020-36082 Unrestricted Upload of File with Dangerous Type vulnerability in Bloofox Bloofoxcms 0.5.2.1
File Upload vulnerability in bloofoxCMS version 0.5.2.1, allows remote attackers to execute arbitrary code and escalate privileges via crafted webshell file to upload module.
network
low complexity
bloofox CWE-434
critical
9.8
2023-08-10 CVE-2023-32562 Unrestricted Upload of File with Dangerous Type vulnerability in Ivanti Avalanche
An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.3.x and below that could allow an attacker to achieve a remove code execution.
network
low complexity
ivanti CWE-434
critical
9.8
2023-08-10 CVE-2023-32564 Unrestricted Upload of File with Dangerous Type vulnerability in Ivanti Avalanche
An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.4.1 and below that could allow an attacker to achieve a remove code execution.
network
low complexity
ivanti CWE-434
critical
9.8
2023-08-10 CVE-2023-39776 Unrestricted Upload of File with Dangerous Type vulnerability in PHPjabbers Ticket Support Script 3.2
A File Upload vulnerability in PHPJabbers Ticket Support Script v3.2 allows attackers to execute arbitrary code via uploading a crafted file.
network
low complexity
phpjabbers CWE-434
critical
9.8