Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2022-05-23 CVE-2022-1811 Unrestricted Upload of File with Dangerous Type vulnerability in Publify Project Publify
Unrestricted Upload of File with Dangerous Type in GitHub repository publify/publify prior to 9.2.9.
network
low complexity
publify-project CWE-434
5.4
2022-05-21 CVE-2022-1752 Unrestricted Upload of File with Dangerous Type vulnerability in Trudesk Project Trudesk
Unrestricted Upload of File with Dangerous Type in GitHub repository polonel/trudesk prior to 1.2.2.
network
low complexity
trudesk-project CWE-434
8.0
2022-05-20 CVE-2022-28104 Unrestricted Upload of File with Dangerous Type vulnerability in Foxit PDF Editor 11.3.1
Foxit PDF Editor v11.3.1 was discovered to contain an arbitrary file upload vulnerability.
network
low complexity
foxit CWE-434
critical
9.8
2022-05-20 CVE-2022-30887 Unrestricted Upload of File with Dangerous Type vulnerability in Pharmacy Management System Project Pharmacy Management System 1.0
Pharmacy Management System v1.0 was discovered to contain a remote code execution (RCE) vulnerability via the component /php_action/editProductImage.php.
network
low complexity
pharmacy-management-system-project CWE-434
critical
9.8
2022-05-19 CVE-2022-28927 Unrestricted Upload of File with Dangerous Type vulnerability in Subconverter Project Subconverter 0.7.2
A remote code execution (RCE) vulnerability in Subconverter v0.7.2 allows attackers to execute arbitrary code via crafted config and url parameters.
network
low complexity
subconverter-project CWE-434
critical
9.8
2022-05-19 CVE-2021-41938 Unrestricted Upload of File with Dangerous Type vulnerability in Shopxo 2.2.0
An issue was discovered in ShopXO CMS 2.2.0.
network
low complexity
shopxo CWE-434
7.2
2022-05-17 CVE-2022-22482 Unrestricted Upload of File with Dangerous Type vulnerability in IBM Sterling B2B Integrator
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.5 and 6.1.0.0 through 6.1.1.0 could allow an authenticated user to upload files that could fill up the filesystem and cause a denial of service.
network
low complexity
ibm CWE-434
6.5
2022-05-17 CVE-2022-30007 Unrestricted Upload of File with Dangerous Type vulnerability in Gxcms Project Gxcms 1.5
GXCMS V1.5 has a file upload vulnerability in the background.
network
low complexity
gxcms-project CWE-434
7.2
2022-05-16 CVE-2022-29351 Unrestricted Upload of File with Dangerous Type vulnerability in Tiddlywiki Tiddlywiki5 5.2.2
An arbitrary file upload vulnerability in the file upload module of Tiddlywiki5 v5.2.2 allows attackers to execute arbitrary code via a crafted SVG file.
network
low complexity
tiddlywiki CWE-434
critical
9.8
2022-05-16 CVE-2022-29353 Unrestricted Upload of File with Dangerous Type vulnerability in Graphql-Upload Project Graphql-Upload 13.0.0
An arbitrary file upload vulnerability in the file upload module of Graphql-upload v13.0.0 allows attackers to execute arbitrary code via a crafted filename.
network
low complexity
graphql-upload-project CWE-434
critical
9.8