Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2023-08-09 CVE-2023-4243 Unrestricted Upload of File with Dangerous Type vulnerability in Full - Customer
The FULL - Customer plugin for WordPress is vulnerable to Arbitrary File Upload via the /install-plugin REST route in versions up to, and including, 2.2.3 due to improper authorization.
network
low complexity
full CWE-434
8.8
2023-08-06 CVE-2023-4186 Unrestricted Upload of File with Dangerous Type vulnerability in Pharmacy Management System Project Pharmacy Management System 1.0
A vulnerability was found in SourceCodester Pharmacy Management System 1.0.
network
low complexity
pharmacy-management-system-project CWE-434
critical
9.8
2023-08-05 CVE-2020-23564 Unrestricted Upload of File with Dangerous Type vulnerability in Sem-Cms Semcms 3.9
File Upload vulnerability in SEMCMS 3.9 allows remote attackers to run arbitrary code via SEMCMS_Upfile.php.
network
low complexity
sem-cms CWE-434
7.2
2023-08-04 CVE-2023-39346 Unrestricted Upload of File with Dangerous Type vulnerability in Renjikai Linuxasmcallgraph
LinuxASMCallGraph is software for drawing the call graph of the programming code.
network
low complexity
renjikai CWE-434
critical
9.8
2023-08-04 CVE-2023-4159 Unrestricted Upload of File with Dangerous Type vulnerability in Omeka S
Unrestricted Upload of File with Dangerous Type in GitHub repository omeka/omeka-s prior to 4.0.3.
network
low complexity
omeka CWE-434
8.8
2023-08-03 CVE-2023-38947 Unrestricted Upload of File with Dangerous Type vulnerability in Wbce CMS 1.6.1
An arbitrary file upload vulnerability in the /languages/install.php component of WBCE CMS v1.6.1 allows attackers to execute arbitrary code via a crafted PHP file.
network
low complexity
wbce CWE-434
7.2
2023-08-03 CVE-2023-36298 Unrestricted Upload of File with Dangerous Type vulnerability in Dedecms 5.7.109
DedeCMS v5.7.109 has a File Upload vulnerability, leading to remote code execution (RCE).
network
low complexity
dedecms CWE-434
8.8
2023-08-03 CVE-2023-36299 Unrestricted Upload of File with Dangerous Type vulnerability in Typecho 1.2.1
A File Upload vulnerability in typecho v.1.2.1 allows a remote attacker to execute arbitrary code via the upload and options-general parameters in index.php.
network
low complexity
typecho CWE-434
8.8
2023-08-03 CVE-2023-4121 Unrestricted Upload of File with Dangerous Type vulnerability in Byzoro Smart S85F
A vulnerability was found in Byzoro Smart S85F Management Platform up to 20230722.
network
low complexity
byzoro CWE-434
critical
9.8
2023-08-03 CVE-2023-36212 Unrestricted Upload of File with Dangerous Type vulnerability in Totalcms Total CMS 1.7.4
File Upload vulnerability in Total CMS v.1.7.4 allows a remote attacker to execute arbitrary code via a crafted PHP file to the edit page function.
network
low complexity
totalcms CWE-434
8.8