Total
3867 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2020-5577 | 1 Sixapart | 1 Movable Type | 2024-11-21 | 6.5 MEDIUM | 8.8 HIGH |
|
Movable Type series (Movable Type 7 r.4606 (7.2.1) and earlier (Movable Type 7), Movable Type Advanced 7 r.4606 (7.2.1) and earlier (Movable Type Advanced 7), Movable Type for AWS 7 r.4606 (7.2.1) and earlier (Movable Type for AWS 7), Movable Type 6.5.3 and earlier (Movable Type 6.5), Movable Type Advanced 6.5.3 and earlier (Movable Type Advanced 6.5), Movable Type 6.3.11 and earlier (Movable Type 6.3), Movable Type Advanced 6.3.11 and earlier (Movable Type 6.3), Movable Type Premium 1.29 and ea ...
Show More |
|||||
| CVE-2020-5514 | 1 Gilacms | 1 Gila Cms | 2024-11-21 | 9.0 HIGH | 9.1 CRITICAL |
|
Gila CMS 1.11.8 allows Unrestricted Upload of a File with a Dangerous Type via .phar or .phtml to the lzld/thumb?src= URI.
|
|||||
| CVE-2020-5509 | 1 Phpgurukul | 1 Car Rental Portal | 2024-11-21 | 6.5 MEDIUM | 7.2 HIGH |
|
PHPGurukul Car Rental Project v1.0 allows Remote Code Execution via an executable file in an upload of a new profile image.
|
|||||
| CVE-2020-5256 | 1 Bookstackapp | 1 Bookstack | 2024-11-21 | 9.0 HIGH | 7.9 HIGH |
|
BookStack before version 0.25.5 has a vulnerability where a user could upload PHP files through image upload functions, which would allow them to execute code on the host system remotely. They would then have the permissions of the PHP process. This most impacts scenarios where non-trusted users are given permission to upload images in any area of the application. The issue was addressed in a series of patches in versions 0.25.3, 0.25.4 and 0.25.5. Users should upgrade to at least v0.25.5 to avo ...
Show More |
|||||
| CVE-2020-5188 | 1 Dnnsoftware | 1 Dotnetnuke | 2024-11-21 | 4.0 MEDIUM | 6.5 MEDIUM |
|
DNN (formerly DotNetNuke) through 9.4.4 has Insecure Permissions.
|
|||||
| CVE-2020-4955 | 1 Ibm | 1 Spectrum Protect Operations Center | 2024-11-21 | 5.2 MEDIUM | 8.0 HIGH |
|
IBM Spectrum Protect Operations Center 7.1 and 8.1could allow a remote attacker to execute arbitrary code on the system, caused by improper parameter validation. By creating an unspecified servlet request with specially crafted input parameters, an attacker could exploit this vulnerability to load a malicious .dll with elevated privileges. IBM X-Force ID: 192155.
|
|||||
| CVE-2020-4928 | 1 Ibm | 1 Cloud Pak System | 2024-11-21 | 4.6 MEDIUM | 6.7 MEDIUM |
|
IBM Cloud Pak System 2.3 could allow a local privileged attacker to upload arbitrary files. By intercepting the request and modifying the file extention, the attacker could execute arbitrary code on the server. IBM X-Force ID: 191705.
|
|||||
| CVE-2020-4703 | 1 Ibm | 1 Spectrum Protect Plus | 2024-11-21 | 6.0 MEDIUM | 8.0 HIGH |
|
IBM Spectrum Protect Plus 10.1.0 through 10.1.6 Administrative Console could allow an authenticated attacker to upload arbitrary files which could be execute arbitrary code on the vulnerable server. This vulnerability is due to an incomplete fix for CVE-2020-4470. IBM X-Force ID: 187188.
|
|||||
| CVE-2020-4620 | 1 Ibm | 1 Data Risk Manager | 2024-11-21 | 9.0 HIGH | 8.8 HIGH |
|
IBM Data Risk Manager (iDNA) 2.0.6 could allow a remote authenticated attacker to upload arbitrary files, caused by the improper validation of file extensions. By sending a specially-crafted HTTP request, a remote attacker could exploit this vulnerability to upload a malicious file, which could allow the attacker to execute arbitrary code on the vulnerable system. IBM X-Force ID: 184979.
|
|||||
| CVE-2020-4588 | 2 Ibm, Microsoft | 2 I2 Ibase, Windows | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
|
IBM i2 iBase 8.9.13 could allow an attacker to upload arbitrary executable files which, when executed by an unsuspecting victim could result in code execution. IBM X-Force ID: 184579.
|
|||||
| CVE-2020-4470 | 1 Ibm | 1 Spectrum Protect Plus | 2024-11-21 | 6.0 MEDIUM | 8.0 HIGH |
|
IBM Spectrum Protect Plus 10.1.0 through 10.1.5 Administrative Console could allow an authenticated attacker to upload arbitrary files which could be execute arbitrary code on the vulnerable server. IBM X-Force ID: 181725.
|
|||||
| CVE-2020-3436 | 1 Cisco | 3 Adaptive Security Appliance, Adaptive Security Appliance Software, Firepower Threat Defense | 2024-11-21 | 7.8 HIGH | 8.6 HIGH |
|
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to upload arbitrary-sized files to specific folders on an affected device, which could lead to an unexpected device reload. The vulnerability exists because the affected software does not efficiently handle the writing of large files to specific folders on the local file system. An attacker could exploit this vu ...
Show More |
|||||
| CVE-2020-36825 | 2024-11-21 | 6.5 MEDIUM | 6.3 MEDIUM | ||
|
** UNSUPPORTED WHEN ASSIGNED ** ** DISPUTED ** A vulnerability has been found in cyberaz0r WebRAT up to 20191222 and classified as critical. This vulnerability affects the function download_file of the file Server/api.php. The manipulation of the argument name leads to unrestricted upload. The attack can be initiated remotely. The real existence of this vulnerability is still doubted at the moment. The patch is identified as 0c394a795b9c10c07085361e6fcea286ee793701. It is recommended to apply a ...
Show More |
|||||
| CVE-2020-36706 | 1 Simple-press | 1 Simple\ | 2024-11-21 | N/A | 9.8 CRITICAL |
|
The Simple:Press – WordPress Forum Plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the ~/admin/resources/jscript/ajaxupload/sf-uploader.php file in versions up to, and including, 6.6.0. This makes it possible for attackers to upload arbitrary files on the affected sites server which may make remote code execution possible.
|
|||||
| CVE-2020-36701 | 1 King-theme | 1 Page Builder King Composer | 2024-11-21 | N/A | 8.8 HIGH |
|
The Page Builder: KingComposer plugin for WordPress is vulnerable to Arbitrary File Uploads in versions up to, and including, 2.9.3 via the 'process_bulk_action' function in the 'kingcomposer/includes/kc.extensions.php' file. This makes it possible for authenticated users with author level permissions and above to upload arbitrary files onto the server which can be used to execute code on the server.
|
|||||
| CVE-2020-36485 | 1 Madeportable | 1 Playable | 2024-11-21 | 4.6 MEDIUM | 7.8 HIGH |
|
Portable Ltd Playable v9.18 was discovered to contain an arbitrary file upload vulnerability in the filename parameter of the upload module. This vulnerability allows attackers to execute arbitrary code via a crafted JPEG file.
|
|||||
| CVE-2020-36388 | 1 Civicrm | 1 Civicrm | 2024-11-21 | 6.5 MEDIUM | 8.8 HIGH |
|
In CiviCRM before 5.21.3 and 5.22.x through 5.24.x before 5.24.3, users may be able to upload and execute a crafted PHAR archive.
|
|||||
| CVE-2020-36167 | 1 Veritas | 1 Backup Exec | 2024-11-21 | 7.2 HIGH | 9.3 CRITICAL |
|
An issue was discovered in the server in Veritas Backup Exec through 16.2, 20.6 before hotfix 298543, and 21.1 before hotfix 657517. On start-up, it loads the OpenSSL library from the Installation folder. This library in turn attempts to load the /usr/local/ssl/openssl.cnf configuration file, which may not exist. On Windows systems, this path could translate to <drive>:\usr\local\ssl\openssl.cnf. A low privileged user can create a :\usr\local\ssl\openssl.cnf configuration file to load a maliciou ...
Show More |
|||||
| CVE-2020-36141 | 1 Bloofox | 1 Bloofoxcms | 2024-11-21 | 6.5 MEDIUM | 8.8 HIGH |
|
BloofoxCMS 0.5.2.1 allows Unrestricted File Upload vulnerability via bypass MIME Type validation by inserting 'image/jpeg' within the 'Content-Type' header.
|
|||||
| CVE-2020-36082 | 1 Bloofox | 1 Bloofoxcms | 2024-11-21 | N/A | 9.8 CRITICAL |
|
File Upload vulnerability in bloofoxCMS version 0.5.2.1, allows remote attackers to execute arbitrary code and escalate privileges via crafted webshell file to upload module.
|
|||||
| CVE-2020-36079 | 1 Zenphoto | 1 Zenphoto | 2024-11-21 | 6.5 MEDIUM | 7.2 HIGH |
|
Zenphoto through 1.5.7 is affected by authenticated arbitrary file upload, leading to remote code execution. The attacker must navigate to the uploader plugin, check the elFinder box, and then drag and drop files into the Files(elFinder) portion of the UI. This can, for example, place a .php file in the server's uploaded/ directory. NOTE: the vendor disputes this because exploitation can only be performed by an admin who has "lots of other possibilities to harm a site.
|
|||||
| CVE-2020-35949 | 1 Expresstech | 1 Quiz And Survey Master | 2024-11-21 | 7.5 HIGH | 10.0 CRITICAL |
|
An issue was discovered in the Quiz and Survey Master plugin before 7.0.1 for WordPress. It made it possible for unauthenticated attackers to upload arbitrary files and achieve remote code execution. If a quiz question could be answered by uploading a file, only the Content-Type header was checked during the upload, and thus the attacker could use text/plain for a .php file.
|
|||||
| CVE-2020-35797 | 1 Netgear | 2 Nms300, Nms300 Firmware | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
|
NETGEAR NMS300 devices before 1.6.0.27 are affected by command injection by an unauthenticated attacker.
|
|||||
| CVE-2020-35760 | 1 Bloofox | 1 Bloofoxcms | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
|
bloofoxCMS 0.5.2.1 is infected with Unrestricted File Upload that allows attackers to upload malicious files (ex: php files).
|
|||||
| CVE-2020-35657 | 1 Jaws Project | 1 Jaws | 2024-11-21 | 6.5 MEDIUM | 7.2 HIGH |
|
Jaws through 1.8.0 allows remote authenticated administrators to execute arbitrary code via crafted use of UploadTheme to upload a theme ZIP archive containing a .php file that is able to execute OS commands. NOTE: this is unrelated to the JAWS (aka Job Access With Speech) product.
|
|||||
| CVE-2020-35656 | 1 Jaws Project | 1 Jaws | 2024-11-21 | 6.5 MEDIUM | 7.2 HIGH |
|
Jaws through 1.8.0 allows remote authenticated administrators to execute arbitrary code via crafted use of admin.php?reqGadget=Components&reqAction=InstallGadget&comp=FileBrowser and admin.php?reqGadget=FileBrowser&reqAction=Files to upload a .php file. NOTE: this is unrelated to the JAWS (aka Job Access With Speech) product.
|
|||||
| CVE-2020-35627 | 1 Woocommerce | 1 Gift Cards | 2024-11-21 | 7.5 HIGH | 8.8 HIGH |
|
Ultimate WooCommerce Gift Cards 3.0.2 is affected by a file upload vulnerability in the Custom GiftCard Template that can remotely execute arbitrary code. Once it contains the function "Custom Gift Card Template", the function of uploading a custom image is used, changing the name of the image extension to PHP and executing PHP code on the server.
|
|||||
| CVE-2020-35489 | 1 Rocklobster | 1 Contact Form 7 | 2024-11-21 | 10.0 HIGH | 10.0 CRITICAL |
|
The contact-form-7 (aka Contact Form 7) plugin before 5.3.2 for WordPress allows Unrestricted File Upload and remote code execution because a filename may contain special characters.
|
|||||
| CVE-2020-35442 | 1 Fangfa | 1 Fdcms | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
|
FDCMS (also known as Fangfa Content Management System) 4.0 allows remote attackers to get a webshell in the background via Front/lib/Action/FindexAction.class.php.
|
|||||
| CVE-2020-35133 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 5.0 MEDIUM | 7.5 HIGH |
|
irfanView 4.56 contains an error processing parsing files of type .pcx. Which leads to out-of-bounds writing at i_view32+0xdb60.
|
|||||
| CVE-2020-2730 | 1 Oracle | 1 Revenue Management And Billing | 2024-11-21 | 4.9 MEDIUM | 5.4 MEDIUM |
|
Vulnerability in the Oracle Financial Services Revenue Management and Billing product of Oracle Financial Services Applications (component: File Upload). Supported versions that are affected are 2.7.0.0, 2.7.0.1 and 2.8.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Financial Services Revenue Management and Billing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability ...
Show More |
|||||
| CVE-2020-29597 | 1 Incomcms Project | 1 Incomcms | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
|
IncomCMS 2.0 has a modules/uploader/showcase/script.php insecure file upload vulnerability. This vulnerability allows unauthenticated attackers to upload files into the server.
|
|||||
| CVE-2020-29592 | 1 Orchardproject | 1 Orchard | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
|
An issue was discovered in Orchard before 1.10. A broken access control issue in Orchard components that use the TinyMCE HTML editor's file upload allows an attacker to upload dangerous executables that bypass the file types allowed (regardless of the file types allowed list in Media settings).
|
|||||
| CVE-2020-29450 | 1 Atlassian | 2 Confluence Data Center, Confluence Server | 2024-11-21 | 4.0 MEDIUM | 6.5 MEDIUM |
|
Affected versions of Atlassian Confluence Server and Data Center allow remote attackers to impact the application's availability via a Denial of Service (DoS) vulnerability in the avatar upload feature. The affected versions are before version 7.2.0.
|
|||||
| CVE-2020-29447 | 1 Atlassian | 1 Crucible | 2024-11-21 | 4.0 MEDIUM | 4.3 MEDIUM |
|
Affected versions of Atlassian Crucible allow remote attackers to impact the application's availability via a Denial of Service (DoS) vulnerability in the file upload request feature of code reviews. The affected versions are before version 4.7.4, and from version 4.8.0 before 4.8.5.
|
|||||
| CVE-2020-29441 | 1 Outsystems | 1 Outsystems | 2024-11-21 | 6.4 MEDIUM | 7.2 HIGH |
|
An issue was discovered in the Upload Widget in OutSystems Platform 10 before 10.0.1019.0. An unauthenticated attacker can upload arbitrary files. In some cases, this attack may consume the available database space (Denial of Service), corrupt legitimate data if files are being processed asynchronously, or deny access to legitimate uploaded files.
|
|||||
| CVE-2020-29176 | 1 Zblogcn | 1 Z-blogphp | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
|
An arbitrary file upload vulnerability in Z-BlogPHP v1.6.1.2100 allows attackers to execute arbitrary code via a crafted JPG file.
|
|||||
| CVE-2020-29032 | 1 Secomea | 2 Gatemanager 8250, Gatemanager 8250 Firmware | 2024-11-21 | 6.5 MEDIUM | 8.4 HIGH |
|
Upload of Code Without Integrity Check vulnerability in firmware archive of Secomea GateManager allows authenticated attacker to execute malicious code on server. This issue affects: Secomea GateManager all versions prior to 9.4.621054022
|
|||||
| CVE-2020-28939 | 1 Openclinic Project | 1 Openclinic | 2024-11-21 | 6.5 MEDIUM | 7.2 HIGH |
|
OpenClinic version 0.8.2 is affected by a medical/test_new.php insecure file upload vulnerability. This vulnerability allows authenticated users (with substantial privileges) to upload malicious files, such as PHP web shells, which can lead to arbitrary code execution on the application server.
|
|||||
| CVE-2020-28871 | 1 Monitorr | 1 Monitorr | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
|
Remote code execution in Monitorr v1.7.6m in upload.php allows an unauthorized person to execute arbitrary code on the server-side via an insecure file upload.
|
|||||