Weaknesses of type CWE-434

3,113 results

Upload sem restrição de arquivo com tipo perigoso

Ocorre quando uma aplicação aceita upload de arquivos sem validar adequadamente seu tipo, extensão ou conteúdo. Um atacante pode enviar executáveis, scripts ou outros arquivos maliciosos, que serão armazenados ou executados no servidor, comprometendo sua integridade e segurança.

Example

Um formulário de perfil aceita qualquer arquivo como 'foto do usuário' sem checar extensão ou MIME type. Um atacante envia um arquivo .exe ou .php renomeado como .jpg, que é salvo no diretório web e posteriormente executado quando acessado, permitindo execução de código remoto.

How to mitigate

Valide uploads checando MIME type real (não apenas extensão), restrinja tipos permitidos de forma explícita, armazene arquivos fora da raiz web, desabilite execução de scripts no diretório de upload e considere usar vírus scanner. Implemente whitelist rigorosa, nunca blacklist.

CVE-2025-10741MEDIUMSelleo Mentingo Profile Picture unrestricted uploadEPSS 0.3%CVE-2025-50897MEDIUMA vulnerability exists in riscv-boom SonicBOOM 1.2 (BOOMv1.2) processor implementation, where valid virtual-to-physical address translationsEPSS 0.3%CVE-2022-43283MEDIUMwasm2c v1.0.29 was discovered to contain an abort in CWriter::Write.EPSS 0.3%CVE-2024-45644MEDIUMIBM Security ReaQta file uploadEPSS 0.3%CVE-2025-26497HIGHUnrestricted Upload of File with Dangerous Type vulnerability in Salesforce Tableau Server on Windows, Linux (Flow Editor modules) allows AbEPSS 0.3%CVE-2025-26498HIGHUnrestricted Upload of File with Dangerous Type vulnerability in Salesforce Tableau Server on Windows, Linux (establish-connection-no-undo mEPSS 0.3%CVE-2026-101071MEDIUMAcrel Electric Unet Web Service Upload Endpoint upload unrestricted uploadEPSS 0.3%CVE-2024-45263HIGHAn issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. The upload interface allowsEPSS 0.3%CVE-2024-45137HIGHInDesign Desktop | Unrestricted Upload of File with Dangerous Type (CWE-434)EPSS 0.3%CVE-2024-45136HIGHInCopy | Unrestricted Upload of File with Dangerous Type (CWE-434)EPSS 0.3%CVE-2025-49329MEDIUMWordPress Store Locator WordPress plugin <= 1.5.2 - Arbitrary File Upload VulnerabilityEPSS 0.3%CVE-2026-23499HIGHSaleor vulnerable to stored XSS via Unrestricted File UploadEPSS 0.3%CVE-2025-60731HIGHPerfreeBlog v4.0.11 has a File Upload vulnerability in the installTheme functionEPSS 0.3%CVE-2026-22789MEDIUMWebErpMesv2 has a File Upload Validation Bypass Leading to RCEEPSS 0.3%CVE-2025-60735HIGHPerfreeBlog v4.0.11 has a File Upload vulnerability in the installPlugin functionEPSS 0.3%CVE-2026-85134HIGHArbitrary File Upload Leading to Remote Command Execution in Bimser's eBA PlusEPSS 0.3%CVE-2025-65416MEDIUMdocuFORM Managed Print Service Client 11.11c is vulnerable to arbitrary file upload via pmupdate.php.EPSS 0.3%CVE-2025-62182MEDIUMPega Customer Service Framework versions 8.7.0 through 25.1.0 are affected by a Unrestricted file upload vulnerability, where a privileged user could potentially upload a malicious file.EPSS 0.3%CVE-2025-64176MEDIUMThinkDashboard: Arbitrary File Upload vulnerability in the Backup Import FeatureEPSS 0.3%CVE-2026-54179MEDIUMbackpack/crud: SingleBase64Image accepts any base64 payload behind a `data:image` prefix — SVG-with-script lands on the public diskEPSS 0.3%