Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2024-08-22 CVE-2024-39717 Unrestricted Upload of File with Dangerous Type vulnerability in Versa-Networks Versa Director
The Versa Director GUI provides an option to customize the look and feel of the user interface.
network
low complexity
versa-networks CWE-434
7.2
2024-08-22 CVE-2024-7384 Unrestricted Upload of File with Dangerous Type vulnerability in Acymailing
The AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the acym_extractArchive function in all versions up to, and including, 9.7.2.
network
low complexity
acymailing CWE-434
8.8
2024-08-21 CVE-2024-42777 Unrestricted Upload of File with Dangerous Type vulnerability in Lopalopa Music Management System 1.0
An Unrestricted file upload vulnerability was found in "/music/ajax.php?action=signup" of Kashipara Music Management System v1.0, which allows attackers to execute arbitrary code via uploading a crafted PHP file.
network
low complexity
lopalopa CWE-434
critical
9.8
2024-08-21 CVE-2024-42778 Unrestricted Upload of File with Dangerous Type vulnerability in Lopalopa Music Management System 1.0
An Unrestricted file upload vulnerability was found in "/music/ajax.php?action=save_playlist" in Kashipara Music Management System v1.0.
network
low complexity
lopalopa CWE-434
8.8
2024-08-21 CVE-2024-42779 Unrestricted Upload of File with Dangerous Type vulnerability in Lopalopa Music Management System 1.0
An Unrestricted file upload vulnerability was found in "/music/ajax.php?action=save_music" in Kashipara Music Management System v1.0.
network
low complexity
lopalopa CWE-434
8.8
2024-08-21 CVE-2024-42780 Unrestricted Upload of File with Dangerous Type vulnerability in Lopalopa Music Management System 1.0
An Unrestricted file upload vulnerability was found in "/music/ajax.php?action=save_genre" in Kashipara Music Management System v1.0.
network
low complexity
lopalopa CWE-434
8.8
2024-08-20 CVE-2024-7944 Unrestricted Upload of File with Dangerous Type vulnerability in Adonesevangelista Laravel Property Management System 1.0
A vulnerability was found in itsourcecode Laravel Property Management System 1.0.
network
low complexity
adonesevangelista CWE-434
8.8
2024-08-20 CVE-2024-7943 Unrestricted Upload of File with Dangerous Type vulnerability in Adonesevangelista Laravel Property Management System 1.0
A vulnerability was found in itsourcecode Laravel Property Management System 1.0 and classified as critical.
network
low complexity
adonesevangelista CWE-434
8.8
2024-08-19 CVE-2024-43249 Unrestricted Upload of File with Dangerous Type vulnerability in Bitapps BIT Form
Unrestricted Upload of File with Dangerous Type vulnerability in Bit Apps Bit Form Pro allows Command Injection.This issue affects Bit Form Pro: from n/a through 2.6.4.
network
low complexity
bitapps CWE-434
8.8
2024-08-18 CVE-2024-7917 Unrestricted Upload of File with Dangerous Type vulnerability in Douco Douphp 1.7
A vulnerability, which was classified as critical, has been found in DouPHP 1.7 Release 20220822.
network
low complexity
douco CWE-434
7.2