Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.8
CVE-2023-4121
A vulnerability was found in Byzoro Smart S85F Management Platform up to 20230722. It has been classified as critical. Affected is an unknown functio…
Smart S85f
after 20230722
HIGH 8.8
CVE-2023-36212EPSS 26%
File Upload vulnerability in Total CMS v.1.7.4 allows a remote attacker to execute arbitrary code via a crafted PHP file to the edit page function.
Total Cms
No fix yet
MEDIUM 5.3
CVE-2023-38330
OXID eShop Enterprise Edition 6.5.0 – 6.5.2 before 6.5.3 allows uploading files with modified headers in the administration area. An attacker can upl…
Eshop
6.5.3+
MEDIUM 5.5
CVE-2023-31428
Brocade Fabric OS before Brocade Fabric OS v9.1.1c, v9.2.0 contains a vulnerability in the command line that could allow a local user to dump files u…
Brocade Fabric Operating System
9.1.1c+
HIGH 7.8
CVE-2023-39147
An arbitrary file upload vulnerability in Uvdesk 1.1.3 allows attackers to execute arbitrary code via uploading a crafted image file.
Uvdesk
No fix yet
CRITICAL 9.8
CVE-2023-33493
An Unrestricted Upload of File with Dangerous Type vulnerability in the Ajaxmanager File and Database explorer (ajaxmanager) module for PrestaShop th…
Ajaxmanager
after 2.3.0
HIGH 7.2
CVE-2023-32225
Sysaid - CWE-434: Unrestricted Upload of File with Dangerous Type -
A malicious user with administrative privileges may be able to upload a dangero…
Sysaid On Premises
23.2.14+
CRITICAL 9.8
CVE-2023-34798
An arbitrary file upload vulnerability in eoffice before v9.5 allows attackers to execute arbitrary code via uploading a crafted file.
E Office
9.5+
CRITICAL 9.8
CVE-2023-37677
Pligg CMS v2.0.2 (also known as Kliqqi) was discovered to contain a remote code execution (RCE) vulnerability in the component admin_editor.php.
Pligg Cms
No fix yet
HIGH 7.5
CVE-2022-46899
An issue was discovered in Vocera Report Server and Voice Server 5.x through 5.8. There is Arbitrary File Upload. The BaseController class, that each…
Report Server
after 5.8.0.135
HIGH 7.5
CVE-2023-3486EPSS 79%
An authentication bypass exists in PaperCut NG versions 22.0.12 and prior that could allow a remote, unauthenticated attacker to upload arbitrary fil…
Papercut Mf
22.1.3+
CRITICAL 9.8
CVE-2023-32637
GBrowse accepts files with any formats uploaded and places them in the area accessible through unauthenticated web requests. Therefore, anyone who ca…
Gbrowse
Mitigation only
HIGH 8.8
CVE-2022-28863
An issue was discovered in Nokia NetAct 22. A remote user, authenticated to the website, can visit the Site Configuration Tool section and arbitraril…
Netact
No fix yet
HIGH 7.2
CVE-2023-3852EPSS 25%
A vulnerability was found in OpenRapid RapidCMS up to 1.3.1. It has been declared as critical. This vulnerability affects unknown code of the file /a…
Rapidcms
after 1.3.1
CRITICAL 9.8
CVE-2023-3836EPSS 74%
A vulnerability classified as critical was found in Dahua Smart Park Management up to 20230713. This vulnerability affects unknown code of the file /…
Smart Parking Management
after 20230713
CRITICAL 9.8
CVE-2023-3806
A vulnerability, which was classified as critical, was found in SourceCodester House Rental and Property Listing System 1.0. Affected is an unknown f…
House Rental And Property Listing Php
No fix yet
CRITICAL 9.8
CVE-2023-3804
A vulnerability classified as problematic was found in Chengdu Flash Flood Disaster Monitoring and Warning System 2.0. This vulnerability affects unk…
Flash Flood Disaster Monitoring And Warning System
No fix yet
CRITICAL 9.8
CVE-2023-3802
A vulnerability was found in Chengdu Flash Flood Disaster Monitoring and Warning System 2.0. It has been rated as problematic. Affected by this issue…
Flash Flood Disaster Monitoring And Warning System
No fix yet
MEDIUM 6.6
CVE-2023-3800
A vulnerability was found in EasyAdmin8 2.0.2.2. It has been classified as problematic. Affected is an unknown function of the file /admin/index/inde…
Easyadmin8
Mitigation only
HIGH 8.8
CVE-2023-3797
A vulnerability, which was classified as critical, was found in Gen Technology Four Mountain Torrent Disaster Prevention and Control of Monitoring an…
Four Mountain Torrent Disaster Prevention\, Control Monitoring And Early Warning System
No fix yet
CRITICAL 9.8
CVE-2023-3798
A vulnerability has been found in Chengdu Flash Flood Disaster Monitoring and Warning System 2.0 and classified as critical. This vulnerability affec…
Flash Flood Disaster Monitoring And Warning System
No fix yet
HIGH 8.8
CVE-2023-3796
A vulnerability, which was classified as problematic, has been found in Bug Finder Foody Friend 1.0. Affected by this issue is some unknown functiona…
Foody Friend
Mitigation only
CRITICAL 9.8
CVE-2023-37289
It is identified a vulnerability of Unrestricted Upload of File with Dangerous Type in the file uploading function in InfoDoc Document On-line Submi…
Document On Line Submission And Approval System
Mitigation only
HIGH 7.8
CVE-2023-34394
In Keysight Geolocation Server v2.4.2 and prior, an attacker could upload a specially crafted malicious file or delete any file or directory with SYS…
Geolocation Server
after 2.4.2
CRITICAL 9.8
CVE-2023-3722
An OS command injection vulnerability was found in the Avaya Aura Device Services Web application which could allow remote code execution as the Web …
Aura Device Services
after 8.1.4.0
MEDIUM 5.5
CVE-2022-40896
A ReDoS issue was discovered in pygments/lexers/smithy.py in pygments through 2.15.0 via SmithyLexer.
Pygments
after 2.15.0
CRITICAL 9.8
CVE-2023-35189
Iagona ScrutisWeb versions 2.1.37 and prior are vulnerable to a remote
code execution vulnerability that could allow an unauthenticated user to
upl…
Scrutisweb
after 2.1.37
HIGH 8.8
CVE-2020-22159
EVERTZ devices 3080IPX exe-guest-v1.2-r26125, 7801FC 1.3 Build 27, and 7890IXG V494 are vulnerable to Arbitrary File Upload, allowing an authenticate…
3080ipx Firmware
No fix yet
HIGH 8.8
CVE-2023-38404
The XPRTLD web application in Veritas InfoScale Operations Manager (VIOM) before 8.0.0.410 allows an authenticated attacker to upload all types of fi…
Infoscale Operations Manager
8.0.0.410+
HIGH 7.2
CVE-2023-3692
Unrestricted Upload of File with Dangerous Type in GitHub repository admidio/admidio prior to 4.2.10.
Admidio
4.2.10+