Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2022-01-06 CVE-2021-46076 Unrestricted Upload of File with Dangerous Type vulnerability in Vehicle Service Management System Project Vehicle Service Management System 1.0
Sourcecodester Vehicle Service Management System 1.0 is vulnerable to File upload.
6.5
2021-12-22 CVE-2021-44031 Unrestricted Upload of File with Dangerous Type vulnerability in Quest Kace Desktop Authority
An issue was discovered in Quest KACE Desktop Authority before 11.2.
network
low complexity
quest CWE-434
7.5
2021-12-21 CVE-2021-24981 Unrestricted Upload of File with Dangerous Type vulnerability in Wpwax Directorist
The Directorist WordPress plugin before 7.0.6.2 was vulnerable to Cross-Site Request Forgery to Remote File Upload leading to arbitrary PHP shell uploads in the wp-content/plugins directory.
network
high complexity
wpwax CWE-434
5.1
2021-12-20 CVE-2021-35244 Unrestricted Upload of File with Dangerous Type vulnerability in Solarwinds Orion Platform
The "Log alert to a file" action within action management enables any Orion Platform user with Orion alert management rights to write to any file.
8.5
2021-12-20 CVE-2021-44159 Unrestricted Upload of File with Dangerous Type vulnerability in 4Mosan GCB Doctor 20210811
4MOSAn GCB Doctor’s file upload function has improper user privilege control.
network
low complexity
4mosan CWE-434
critical
10.0
2021-12-20 CVE-2021-44164 Unrestricted Upload of File with Dangerous Type vulnerability in Chinasea QB Smart Service Robot
Chain Sea ai chatbot system’s file upload function has insufficient filtering for special characters in URLs, which allows a remote attacker to by-pass file type validation, upload malicious script and execute arbitrary code without authentication, in order to take control of the system or terminate service.
network
low complexity
chinasea CWE-434
7.5
2021-12-17 CVE-2021-23814 Unrestricted Upload of File with Dangerous Type vulnerability in Unisharp Laravel-Filemanager
This affects the package unisharp/laravel-filemanager from 0.0.0.
network
low complexity
unisharp CWE-434
8.8
2021-12-15 CVE-2021-41560 Unrestricted Upload of File with Dangerous Type vulnerability in Opencats
OpenCATS through 0.9.6 allows remote attackers to execute arbitrary code by uploading an executable file via lib/FileUtility.php.
network
low complexity
opencats CWE-434
critical
10.0
2021-12-15 CVE-2021-41870 Unrestricted Upload of File with Dangerous Type vulnerability in Socomec Remote View PRO Firmware 2.0.41.4
An issue was discovered in the firmware update form in Socomec REMOTE VIEW PRO 2.0.41.4.
network
low complexity
socomec CWE-434
6.5
2021-12-14 CVE-2021-43829 Unrestricted Upload of File with Dangerous Type vulnerability in Patrowl Patrowlmanager
PatrOwl is a free and open-source solution for orchestrating Security Operations.
network
low complexity
patrowl CWE-434
6.5