Vulnerabilities > Unrestricted Upload of File with Dangerous Type
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-04-23 | CVE-2023-2246 | Unrestricted Upload of File with Dangerous Type vulnerability in Online Pizza Ordering System Project Online Pizza Ordering System 1.0 A vulnerability has been found in SourceCodester Online Pizza Ordering System 1.0 and classified as critical. | 9.8 |
2023-04-22 | CVE-2023-2245 | Unrestricted Upload of File with Dangerous Type vulnerability in Hansuncms Project Hansuncms 1.4.3 A vulnerability was found in hansunCMS 1.4.3. | 6.3 |
2023-04-17 | CVE-2023-28962 | Unrestricted Upload of File with Dangerous Type vulnerability in Juniper Junos An Improper Authentication vulnerability in upload-file.php, used by the J-Web component of Juniper Networks Junos OS allows an unauthenticated, network-based attacker to upload arbitrary files to temporary folders on the device. | 9.8 |
2023-04-17 | CVE-2023-27755 | Unrestricted Upload of File with Dangerous Type vulnerability in 71Note Go-Bbs 1.0 go-bbs v1 was discovered to contain an arbitrary file download vulnerability via the component /api/v1/download. | 8.8 |
2023-04-16 | CVE-2022-34128 | Unrestricted Upload of File with Dangerous Type vulnerability in Glpi-Project Positions The Cartography (aka positions) plugin before 6.0.1 for GLPI allows remote code execution via PHP code in the POST data to front/upload.php. | 9.8 |
2023-04-14 | CVE-2023-29621 | Unrestricted Upload of File with Dangerous Type vulnerability in Purchase Order Management Project Purchase Order Management 1.0 Purchase Order Management v1.0 was discovered to contain an arbitrary file upload vulnerability which allows attackers to execute arbitrary code via a crafted file uploaded to the server. | 8.8 |
2023-04-14 | CVE-2023-29625 | Unrestricted Upload of File with Dangerous Type vulnerability in Employee Performance Evaluation System Project Employee Performance Evaluation System 1.0 Employee Performance Evaluation System v1.0 was discovered to contain an arbitrary file upload vulnerability which allows attackers to execute arbitrary code via a crafted file uploaded to the server. | 8.8 |
2023-04-14 | CVE-2023-29627 | Unrestricted Upload of File with Dangerous Type vulnerability in Online Pizza Ordering Project Online Pizza Ordering 1.0 Online Pizza Ordering v1.0 was discovered to contain an arbitrary file upload vulnerability which allows attackers to execute arbitrary code via a crafted file uploaded to the server. | 8.8 |
2023-04-14 | CVE-2023-2034 | Unrestricted Upload of File with Dangerous Type vulnerability in Froxlor Unrestricted Upload of File with Dangerous Type in GitHub repository froxlor/froxlor prior to 2.0.14. | 8.8 |
2023-04-12 | CVE-2023-26852 | Unrestricted Upload of File with Dangerous Type vulnerability in Textpattern An arbitrary file upload vulnerability in the upload plugin of Textpattern v4.8.8 and below allows attackers to execute arbitrary code by uploading a crafted PHP file. | 7.2 |