Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2022-08-08 CVE-2022-36264 Unrestricted Upload of File with Dangerous Type vulnerability in Airspan Airspot 5410 Firmware 0.3.4.14
In Airspan AirSpot 5410 version 0.3.4.1-4 and under there exists an Unauthenticated remote Arbitrary File Upload vulnerability which allows overwriting arbitrary files.
network
low complexity
airspan CWE-434
critical
9.1
2022-08-04 CVE-2022-2647 Unrestricted Upload of File with Dangerous Type vulnerability in Jeecg Boot
A vulnerability was found in jeecg-boot.
network
low complexity
jeecg CWE-434
critical
9.8
2022-08-02 CVE-2022-34613 Unrestricted Upload of File with Dangerous Type vulnerability in Mealie Project Mealie 1.0.0
Mealie 1.0.0beta3 contains an arbitrary file upload vulnerability which allows attackers to execute arbitrary code via a crafted file.
network
low complexity
mealie-project CWE-434
critical
9.8
2022-08-01 CVE-2022-34154 Unrestricted Upload of File with Dangerous Type vulnerability in Ideastocode Enable Svg, Webp & ICO Upload 1.0.0/1.0.1
Authenticated (author or higher user role) Arbitrary File Upload vulnerability in ideasToCode Enable SVG, WebP & ICO Upload plugin <= 1.0.1 at WordPress.
network
low complexity
ideastocode CWE-434
8.8
2022-07-29 CVE-2022-34496 Unrestricted Upload of File with Dangerous Type vulnerability in Hiby R3 PRO Firmware and Hiby R3 PRO Saber Firmware
Hiby R3 PRO firmware v1.5 to v1.7 was discovered to contain a file upload vulnerability via the file upload feature.
network
low complexity
hiby CWE-434
critical
9.8
2022-07-28 CVE-2022-34578 Unrestricted Upload of File with Dangerous Type vulnerability in Opensourcepos Open Source Point of Sale 3.3.7
Open Source Point of Sale v3.3.7 was discovered to contain an arbitrary file upload vulnerability via the Update Branding Settings page.
network
low complexity
opensourcepos CWE-434
7.2
2022-07-27 CVE-2022-34120 Unrestricted Upload of File with Dangerous Type vulnerability in Barangay Management System Project Barangay Management System 1.0
Barangay Management System v1.0 was discovered to contain a remote code execution (RCE) vulnerability via the module editing function at /pages/activity/activity.php.
7.2
2022-07-27 CVE-2022-34549 Unrestricted Upload of File with Dangerous Type vulnerability in Sims Project Sims 1.0
Sims v1.0 was discovered to contain an arbitrary file upload vulnerability via the component /uploadServlet.
network
low complexity
sims-project CWE-434
8.8
2022-07-27 CVE-2022-34971 Unrestricted Upload of File with Dangerous Type vulnerability in Feehi CMS 2.1.1
An arbitrary file upload vulnerability in the Advertising Management module of Feehi CMS v2.1.1 allows attackers to execute arbitrary code via a crafted PHP file.
network
low complexity
feehi CWE-434
8.8
2022-07-25 CVE-2022-34965 Unrestricted Upload of File with Dangerous Type vulnerability in Openteknik Open Source Social Network 6.3
OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain an arbitrary file upload vulnerability via the component /ossn/administrator/com_installer.
network
low complexity
openteknik CWE-434
7.2