Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2022-06-02 CVE-2021-33615 Unrestricted Upload of File with Dangerous Type vulnerability in RSA Archer
RSA Archer 6.8.00500.1003 P5 allows Unrestricted Upload of a File with a Dangerous Type.
network
high complexity
rsa CWE-434
7.5
2022-06-02 CVE-2022-24239 Unrestricted Upload of File with Dangerous Type vulnerability in Aceware Aceweb Online Portal 3.5.065
ACEweb Online Portal 3.5.065 was discovered to contain an unrestricted file upload vulnerability via attachments.awp.
network
low complexity
aceware CWE-434
critical
9.8
2022-06-02 CVE-2022-24581 Unrestricted Upload of File with Dangerous Type vulnerability in Aceware Aceweb Online Portal
ACEweb Online Portal 3.5.065 allows unauthenticated SMB hash capture via UNC.
network
low complexity
aceware CWE-434
7.5
2022-06-02 CVE-2022-29624 Unrestricted Upload of File with Dangerous Type vulnerability in Tpcms Project Tpcms 3.2
An arbitrary file upload vulnerability in the Add File function of TPCMS v3.2 allows attackers to execute arbitrary code via a crafted PHP file.
network
low complexity
tpcms-project CWE-434
8.8
2022-06-02 CVE-2022-29725 Unrestricted Upload of File with Dangerous Type vulnerability in Creatiwity Witycms 0.6.2
An arbitrary file upload in the image upload component of wityCMS v0.6.2 allows attackers to execute arbitrary code via a crafted PHP file.
network
low complexity
creatiwity CWE-434
8.8
2022-06-02 CVE-2022-30423 Unrestricted Upload of File with Dangerous Type vulnerability in Merchandise Online Store Project Merchandise Online Store 1.0
Merchandise Online Store v1.0 by oretnom23 has an arbitrary code execution (RCE) vulnerability in the user profile upload point in the system information.
network
low complexity
merchandise-online-store-project CWE-434
critical
9.8
2022-06-02 CVE-2022-30506 Unrestricted Upload of File with Dangerous Type vulnerability in Mingsoft Mcms 5.2.7
An arbitrary file upload vulnerability was discovered in MCMS 5.2.7, allowing an attacker to execute arbitrary code through a crafted ZIP file.
network
low complexity
mingsoft CWE-434
critical
9.8
2022-06-02 CVE-2022-30808 Unrestricted Upload of File with Dangerous Type vulnerability in Elitecms Elite CMS 1.01
elitecms 1.0.1 is vulnerable to Arbitrary code execution via admin/manage_uploads.php.
network
low complexity
elitecms CWE-434
critical
9.8
2022-06-02 CVE-2022-30819 Unrestricted Upload of File with Dangerous Type vulnerability in Wedding Management System Project Wedding Management System 1.0
In Wedding Management System v1.0, there is an arbitrary file upload vulnerability in the picture upload point of "photos_edit.php" file.
8.8
2022-06-02 CVE-2022-30820 Unrestricted Upload of File with Dangerous Type vulnerability in Wedding Management System Project Wedding Management System 1.0
In Wedding Management v1.0, there is an arbitrary file upload vulnerability in the picture upload point of "users_edit.php" file.
8.8