Vulnerabilities > Unrestricted Upload of File with Dangerous Type
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-06-02 | CVE-2021-45982 | Unrestricted Upload of File with Dangerous Type vulnerability in Netscout Ngeniusone 6.3.2 NetScout nGeniusONE 6.3.2 allows Arbitrary File Upload by a privileged user. | 8.8 |
2022-06-02 | CVE-2022-32019 | Unrestricted Upload of File with Dangerous Type vulnerability in CAR Rental Management System Project CAR Rental Management System 1.0 Car Rental Management System v1.0 is vulnerable to Arbitrary code execution via car-rental-management-system/admin/ajax.php?action=save_car. | 9.8 |
2022-06-02 | CVE-2021-26634 | Unrestricted Upload of File with Dangerous Type vulnerability in Maxb Maxboard SQL injection and file upload attacks are possible due to insufficient validation of input values in some parameters and variables of files compromising Maxboard, which may lead to arbitrary code execution or privilege escalation. | 9.8 |
2022-06-02 | CVE-2021-33615 | Unrestricted Upload of File with Dangerous Type vulnerability in RSA Archer RSA Archer 6.8.00500.1003 P5 allows Unrestricted Upload of a File with a Dangerous Type. | 7.5 |
2022-06-02 | CVE-2022-24239 | Unrestricted Upload of File with Dangerous Type vulnerability in Aceware Aceweb Online Portal 3.5.065 ACEweb Online Portal 3.5.065 was discovered to contain an unrestricted file upload vulnerability via attachments.awp. | 9.8 |
2022-06-02 | CVE-2022-24581 | Unrestricted Upload of File with Dangerous Type vulnerability in Aceware Aceweb Online Portal ACEweb Online Portal 3.5.065 allows unauthenticated SMB hash capture via UNC. | 7.5 |
2022-06-02 | CVE-2022-29624 | Unrestricted Upload of File with Dangerous Type vulnerability in Tpcms Project Tpcms 3.2 An arbitrary file upload vulnerability in the Add File function of TPCMS v3.2 allows attackers to execute arbitrary code via a crafted PHP file. | 8.8 |
2022-06-02 | CVE-2022-29725 | Unrestricted Upload of File with Dangerous Type vulnerability in Creatiwity Witycms 0.6.2 An arbitrary file upload in the image upload component of wityCMS v0.6.2 allows attackers to execute arbitrary code via a crafted PHP file. | 8.8 |
2022-06-02 | CVE-2022-30423 | Unrestricted Upload of File with Dangerous Type vulnerability in Merchandise Online Store Project Merchandise Online Store 1.0 Merchandise Online Store v1.0 by oretnom23 has an arbitrary code execution (RCE) vulnerability in the user profile upload point in the system information. | 9.8 |
2022-06-02 | CVE-2022-30506 | Unrestricted Upload of File with Dangerous Type vulnerability in Mingsoft Mcms 5.2.7 An arbitrary file upload vulnerability was discovered in MCMS 5.2.7, allowing an attacker to execute arbitrary code through a crafted ZIP file. | 9.8 |