Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2023-03-31 CVE-2023-26830 Unrestricted Upload of File with Dangerous Type vulnerability in Gladinet Centrestack
An unrestricted file upload vulnerability in the administrative portal branding component of Gladinet CentreStack before 13.5.9808 allows authenticated attackers to execute arbitrary code by uploading malicious files to the server.
network
low complexity
gladinet CWE-434
7.2
2023-03-30 CVE-2023-1744 Unrestricted Upload of File with Dangerous Type vulnerability in Ibos
A vulnerability classified as critical was found in IBOS 4.5.5.
network
low complexity
ibos CWE-434
8.8
2023-03-30 CVE-2023-1739 Unrestricted Upload of File with Dangerous Type vulnerability in Simple and Beautiful Shopping Cart System Project Simple and Beautiful Shopping Cart System 1.0
A vulnerability was found in SourceCodester Simple and Beautiful Shopping Cart System 1.0 and classified as critical.
9.8
2023-03-30 CVE-2023-28833 Unrestricted Upload of File with Dangerous Type vulnerability in Nextcloud Server
Nextcloud server is an open source home cloud implementation.
network
low complexity
nextcloud CWE-434
8.8
2023-03-30 CVE-2023-1734 Unrestricted Upload of File with Dangerous Type vulnerability in Young Entrepreneur E-Negosyo System Project Young Entrepreneur E-Negosyo System 1.0
A vulnerability classified as critical has been found in SourceCodester Young Entrepreneur E-Negosyo System 1.0.
network
low complexity
young-entrepreneur-e-negosyo-system-project CWE-434
critical
9.8
2023-03-30 CVE-2023-28731 Unrestricted Upload of File with Dangerous Type vulnerability in Acymailing
AnyMailing Joomla Plugin is vulnerable to unauthenticated remote code execution, when being granted access to the campaign's creation on front-office due to unrestricted file upload allowing PHP code to be injected.
network
low complexity
acymailing CWE-434
critical
9.8
2023-03-29 CVE-2023-26968 Unrestricted Upload of File with Dangerous Type vulnerability in Atrocore 1.5.25
In Atrocore 1.5.25, the Create Import Feed option with glyphicon-glyphicon-paperclip function is vulnerable to Unauthenticated File upload.
network
low complexity
atrocore CWE-434
critical
9.8
2023-03-29 CVE-2023-1684 Unrestricted Upload of File with Dangerous Type vulnerability in Hadsky 7.7.16
A vulnerability was found in HadSky 7.7.16.
network
low complexity
hadsky CWE-434
critical
9.8
2023-03-28 CVE-2023-27246 Unrestricted Upload of File with Dangerous Type vulnerability in Mk-Auth 19.01
An arbitrary file upload vulnerability in the Virtual Disk of MK-Auth 23.01K4.9 allows attackers to execute arbitrary code via uploading a crafted .htaccess file.
network
low complexity
mk-auth CWE-434
8.8
2023-03-28 CVE-2022-3682 Unrestricted Upload of File with Dangerous Type vulnerability in Hitachienergy Sdm600
A vulnerability exists in the SDM600 file permission validation.
network
low complexity
hitachienergy CWE-434
8.8