Vulnerabilities > Slub Dresden

DATE CVE VULNERABILITY TITLE RISK
2019-10-16 CVE-2019-16700 Unrestricted Upload of File with Dangerous Type vulnerability in Slub-Dresden Slub Events
The slub_events (aka SLUB: Event Registration) extension through 3.0.2 for TYPO3 allows uploading of arbitrary files to the webserver.
network
low complexity
slub-dresden CWE-434
critical
9.8