Weaknesses of type CWE-434

3,090 results

Upload sem restrição de arquivo com tipo perigoso

Ocorre quando uma aplicação aceita upload de arquivos sem validar adequadamente seu tipo, extensão ou conteúdo. Um atacante pode enviar executáveis, scripts ou outros arquivos maliciosos, que serão armazenados ou executados no servidor, comprometendo sua integridade e segurança.

Example

Um formulário de perfil aceita qualquer arquivo como 'foto do usuário' sem checar extensão ou MIME type. Um atacante envia um arquivo .exe ou .php renomeado como .jpg, que é salvo no diretório web e posteriormente executado quando acessado, permitindo execução de código remoto.

How to mitigate

Valide uploads checando MIME type real (não apenas extensão), restrinja tipos permitidos de forma explícita, armazene arquivos fora da raiz web, desabilite execução de scripts no diretório de upload e considere usar vírus scanner. Implemente whitelist rigorosa, nunca blacklist.

CVE-2022-4949HIGHAdSanity < 1.8.2 - Authenticated Arbitrary File UploadEPSS 2.2%CVE-2026-67206HIGHWolf CMS 0.8.3.1 Authenticated RCE via FileManagerController File UploadEPSS 2.1%CVE-2019-1010209—GoUrl.io GoURL Wordpress Plugin 1.4.13 and earlier is affected by: CWE-434. The impact is: unauthenticated/unzuthorized Attacker can upload EPSS 2.1%CVE-2025-4403CRITICALDrag and Drop Multiple File Upload for WooCommerce <= 1.1.6 - Unauthenticated Arbitrary File Upload via upload FunctionEPSS 2.1%CVE-2023-24610HIGHNOSH 4a5cfdb allows remote authenticated users to execute PHP arbitrary code via the "practice logo" upload feature. The client-side checks EPSS 2.1%CVE-2022-28700CRITICALWordPress GiveWP plugin <= 2.20.2 - Authenticated Arbitrary File Creation via Export function vulnerabilityEPSS 2.1%CVE-2026-27636HIGHFreeScout: Missing .htaccess in Restricted File Extensions Allows Remote Code Execution on ApacheEPSS 2.1%CVE-2022-34965HIGHOpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain an arbitrary file upload vulnerability via the component /EPSS 2.1%CVE-2021-34623CRITICALProfilePress 3.0 - 3.1.3 - Arbitrary File Upload in Image Uploader ComponentEPSS 2.1%CVE-2023-31903CRITICALGuppY CMS 6.00.10 is vulnerable to Unrestricted File Upload which allows remote attackers to execute arbitrary code by uploading a php file.EPSS 2.1%CVE-2025-15503MEDIUMSangfor Operation and Maintenance Management System common.jsp unrestricted uploadEPSS 2.1%CVE-2026-28270MEDIUMKiteworks Core has an Unrestricted Upload of File with Dangerous TypeEPSS 2.1%CVE-2022-24387CRITICALFile upload and overwrite to app_data/Config in SmarterTrack v100.0.8019.14010EPSS 2.1%CVE-2020-26252HIGHLayout XML RCE Vulnerability in OpenMageEPSS 2.1%CVE-2021-44164CRITICALChain Sea Information Integration Co., Ltd ai chatbot system - Arbitrary File UploadEPSS 2.1%CVE-2023-32525—Trend Micro Mobile Security (Enterprise) 9.8 SP5 contains widget vulnerabilities that could allow a remote attacker to create arbitrary fileEPSS 2.0%CVE-2023-32526—Trend Micro Mobile Security (Enterprise) 9.8 SP5 contains widget vulnerabilities that could allow a remote attacker to create arbitrary fileEPSS 2.0%CVE-2023-29930HIGHAn issue was found in Genesys CIC Polycom phone provisioning TFTP Server all version allows a remote attacker to execute arbitrary code via EPSS 2.0%CVE-2021-41566CRITICALTad TadTools - Arbitrary File UploadEPSS 2.0%CVE-2021-32538CRITICALARTWARE CMS - Unrestricted Upload of FileEPSS 2.0%