Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2022-06-02 CVE-2021-45982 Unrestricted Upload of File with Dangerous Type vulnerability in Netscout Ngeniusone 6.3.2
NetScout nGeniusONE 6.3.2 allows Arbitrary File Upload by a privileged user.
network
low complexity
netscout CWE-434
6.5
2022-06-02 CVE-2022-32019 Unrestricted Upload of File with Dangerous Type vulnerability in CAR Rental Management System Project CAR Rental Management System 1.0
Car Rental Management System v1.0 is vulnerable to Arbitrary code execution via car-rental-management-system/admin/ajax.php?action=save_car.
7.5
2022-06-02 CVE-2021-26634 Unrestricted Upload of File with Dangerous Type vulnerability in Maxb Maxboard
SQL injection and file upload attacks are possible due to insufficient validation of input values in some parameters and variables of files compromising Maxboard, which may lead to arbitrary code execution or privilege escalation.
network
low complexity
maxb CWE-434
critical
9.8
2022-06-02 CVE-2021-33615 Unrestricted Upload of File with Dangerous Type vulnerability in RSA Archer
RSA Archer 6.8.00500.1003 P5 allows Unrestricted Upload of a File with a Dangerous Type.
network
rsa CWE-434
8.5
2022-06-02 CVE-2022-24239 Unrestricted Upload of File with Dangerous Type vulnerability in Aceware Aceweb Online Portal
ACEweb Online Portal 3.5.065 was discovered to contain an unrestricted file upload vulnerability via attachments.awp.
network
low complexity
aceware CWE-434
7.5
2022-06-02 CVE-2022-24581 Unrestricted Upload of File with Dangerous Type vulnerability in Aceware Aceweb Online Portal
ACEweb Online Portal 3.5.065 allows unauthenticated SMB hash capture via UNC.
network
low complexity
aceware CWE-434
5.0
2022-06-02 CVE-2022-29624 Unrestricted Upload of File with Dangerous Type vulnerability in Tpcms Project Tpcms 3.2
An arbitrary file upload vulnerability in the Add File function of TPCMS v3.2 allows attackers to execute arbitrary code via a crafted PHP file.
network
low complexity
tpcms-project CWE-434
6.5
2022-06-02 CVE-2022-29725 Unrestricted Upload of File with Dangerous Type vulnerability in Creatiwity Witycms 0.6.2
An arbitrary file upload in the image upload component of wityCMS v0.6.2 allows attackers to execute arbitrary code via a crafted PHP file.
network
low complexity
creatiwity CWE-434
6.5
2022-06-02 CVE-2022-30423 Unrestricted Upload of File with Dangerous Type vulnerability in Merchandise Online Store Project Merchandise Online Store 1.0
Merchandise Online Store v1.0 by oretnom23 has an arbitrary code execution (RCE) vulnerability in the user profile upload point in the system information.
network
low complexity
merchandise-online-store-project CWE-434
7.5
2022-06-02 CVE-2022-30506 Unrestricted Upload of File with Dangerous Type vulnerability in Mingsoft Mcms 5.2.7
An arbitrary file upload vulnerability was discovered in MCMS 5.2.7, allowing an attacker to execute arbitrary code through a crafted ZIP file.
network
low complexity
mingsoft CWE-434
7.5