Weaknesses of type CWE-434

3,112 results

Upload sem restrição de arquivo com tipo perigoso

Ocorre quando uma aplicação aceita upload de arquivos sem validar adequadamente seu tipo, extensão ou conteúdo. Um atacante pode enviar executáveis, scripts ou outros arquivos maliciosos, que serão armazenados ou executados no servidor, comprometendo sua integridade e segurança.

Example

Um formulário de perfil aceita qualquer arquivo como 'foto do usuário' sem checar extensão ou MIME type. Um atacante envia um arquivo .exe ou .php renomeado como .jpg, que é salvo no diretório web e posteriormente executado quando acessado, permitindo execução de código remoto.

How to mitigate

Valide uploads checando MIME type real (não apenas extensão), restrinja tipos permitidos de forma explícita, armazene arquivos fora da raiz web, desabilite execução de scripts no diretório de upload e considere usar vírus scanner. Implemente whitelist rigorosa, nunca blacklist.

CVE-2026-4505MEDIUMeosphoros-ai DB-GPT FastAPI Endpoint controller.py module_plugin.refresh_plugins unrestricted uploadEPSS 0.3%CVE-2026-95820MEDIUManirbandutta9 College-Notes-Gallery userprofile.php admin1 unrestricted uploadEPSS 0.3%CVE-2026-90500MEDIUMlenve vhr Avatar Upload userface FastDFSUtils.upload unrestricted uploadEPSS 0.3%CVE-2026-5181MEDIUMSourceCodester Simple Doctors Appointment System ajax.php unrestricted uploadEPSS 0.3%CVE-2026-1152MEDIUMtechnical-laohu mpay QR Code Image unrestricted uploadEPSS 0.3%CVE-2026-5472MEDIUMProjectsAndPrograms School Management System Profile Picture settings.php unrestricted uploadEPSS 0.3%CVE-2026-7732MEDIUMcode-projects BloodBank Managing System request_blood.php unrestricted uploadEPSS 0.3%CVE-2024-7705MEDIUMFujian mwcms Image Upload uploadeditor.html uploadeditor unrestricted uploadEPSS 0.3%CVE-2026-24815CRITICALA XStream Security Vulnerability in XML Deserialization in datavane/tisEPSS 0.3%CVE-2025-9099MEDIUMAcrel Environmental Monitoring Cloud Platform UploadNewsImg unrestricted uploadEPSS 0.3%CVE-2024-28166LOWMultiple Unrestricted File Upload vulnerabilities in SAP BusinessObjects Business Intelligence PlatformEPSS 0.3%CVE-2023-23851MEDIUMSAP Business Planning and Consolidation - versions 200, 300, allows an attacker with business authorization to upload any files (including wEPSS 0.3%CVE-2025-4310MEDIUMitsourcecode Content Management System add_topic.php unrestricted uploadEPSS 0.3%CVE-2025-41347HIGHStored Cross-Site Scripting (XSS) in WinPlus by Informática del EsteEPSS 0.3%CVE-2025-25016MEDIUMKibana Unrestricted Upload of FileEPSS 0.3%CVE-2025-51489MEDIUMA Stored Cross-Site Scripting (XSS) vulnerability exists in MoonShine version < 3.12.5, allowing remote attackers to upload a malicious SVG EPSS 0.3%CVE-2025-58819CRITICALWordPress Bulk Featured Image plugin <= 1.2.4 - Arbitrary File Upload vulnerabilityEPSS 0.3%CVE-2025-36074MEDIUMSecurity vulnerability has been detected in IBM Security Verify DirectoryEPSS 0.3%CVE-2025-10480MEDIUMSourceCodester Online Student File Management System save_file.php unrestricted uploadEPSS 0.3%CVE-2025-12500MEDIUMCheckout Field Manager (Checkout Manager) for WooCommerce <= 7.8.1 - Unauthenticated Limited File UploadEPSS 0.3%