Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2022-10-28 CVE-2022-33859 Unrestricted Upload of File with Dangerous Type vulnerability in Eaton Foreseer Electrical Power Monitoring System 4.0/7.0/7.5
A security vulnerability was discovered in the Eaton Foreseer EPMS software.
network
low complexity
eaton CWE-434
critical
9.8
2022-10-27 CVE-2022-39977 Unrestricted Upload of File with Dangerous Type vulnerability in Online PET Shop WE APP Project Online PET Shop WE APP 1.0
Online Pet Shop We App v1.0 was discovered to contain an arbitrary file upload vulnerability via the Editing function in the User module.
network
low complexity
online-pet-shop-we-app-project CWE-434
7.2
2022-10-27 CVE-2022-39978 Unrestricted Upload of File with Dangerous Type vulnerability in Online PET Shop WE APP Project Online PET Shop WE APP 1.0
Online Pet Shop We App v1.0 was discovered to contain an arbitrary file upload vulnerability via the Editing function in the Product List module.
network
low complexity
online-pet-shop-we-app-project CWE-434
7.2
2022-10-25 CVE-2022-41711 Unrestricted Upload of File with Dangerous Type vulnerability in Uatech Badaso 2.6.0
Badaso version 2.6.0 allows an unauthenticated remote attacker to execute arbitrary code remotely on the server.
network
low complexity
uatech CWE-434
critical
9.8
2022-10-25 CVE-2022-36452 Unrestricted Upload of File with Dangerous Type vulnerability in Mitel Micollab
A vulnerability in the web conferencing component of Mitel MiCollab through 9.5.0.101 could allow an unauthenticated attacker to upload malicious files.
network
low complexity
mitel CWE-434
critical
9.8
2022-10-24 CVE-2022-39305 Unrestricted Upload of File with Dangerous Type vulnerability in Gin-Vue-Admin Project Gin-Vue-Admin
Gin-vue-admin is a backstage management system based on vue and gin, which separates the front and rear of the full stack.
network
low complexity
gin-vue-admin-project CWE-434
critical
9.8
2022-10-21 CVE-2022-42189 Unrestricted Upload of File with Dangerous Type vulnerability in Emlog 1.6.0
Emlog Pro 1.6.0 plugins upload suffers from a remote code execution (RCE) vulnerability.
network
low complexity
emlog CWE-434
7.2
2022-10-20 CVE-2022-42198 Unrestricted Upload of File with Dangerous Type vulnerability in Simple Exam Reviewer Management System Project Simple Exam Reviewer Management System 1.0
In Simple Exam Reviewer Management System v1.0 the User List function suffers from insecure file upload.
8.8
2022-10-20 CVE-2022-42201 Unrestricted Upload of File with Dangerous Type vulnerability in Simple Exam Reviewer Management System Project Simple Exam Reviewer Management System 1.0
Simple Exam Reviewer Management System v1.0 is vulnerable to Insecure file upload.
7.2
2022-10-20 CVE-2022-31366 Unrestricted Upload of File with Dangerous Type vulnerability in Eve-Ng 2.0.3112
An arbitrary file upload vulnerability in the apiImportLabs function in api_labs.php of EVE-NG 2.0.3-112 Community allows attackers to execute arbitrary code via a crafted UNL file.
network
low complexity
eve-ng CWE-434
7.2