Weaknesses of type CWE-434

3,091 results

Upload sem restrição de arquivo com tipo perigoso

Ocorre quando uma aplicação aceita upload de arquivos sem validar adequadamente seu tipo, extensão ou conteúdo. Um atacante pode enviar executáveis, scripts ou outros arquivos maliciosos, que serão armazenados ou executados no servidor, comprometendo sua integridade e segurança.

Example

Um formulário de perfil aceita qualquer arquivo como 'foto do usuário' sem checar extensão ou MIME type. Um atacante envia um arquivo .exe ou .php renomeado como .jpg, que é salvo no diretório web e posteriormente executado quando acessado, permitindo execução de código remoto.

How to mitigate

Valide uploads checando MIME type real (não apenas extensão), restrinja tipos permitidos de forma explícita, armazene arquivos fora da raiz web, desabilite execução de scripts no diretório de upload e considere usar vírus scanner. Implemente whitelist rigorosa, nunca blacklist.

CVE-2023-28409CRITICALUnrestricted upload of file with dangerous type exists in MW WP Form versions v4.4.2 and earlier, which may allow a remote unauthenticated aEPSS 1.2%CVE-2009-20006CRITICALosCommerce <= 2.2 Admin File Manager Arbitrary PHP Code ExecutionEPSS 1.2%CVE-2022-22375HIGHIBM Security Verify Privilege command executionEPSS 1.2%CVE-2024-9849HIGHReal3D Flipbook Lite – 3D FlipBook, PDF Viewer, PDF Embedder <= 4.8 - Authenticated (Author+) Arbitrary File UploadEPSS 1.2%CVE-2023-6219HIGHBookingPress <= 1.0.76 - Authenticated (Administrator+) Arbitrary File UploadEPSS 1.2%CVE-2025-8297HIGHIncomplete restriction of configuration in Ivanti Avalanche before version 6.4.8.8008 allows a remote authenticated attacker with admin privEPSS 1.2%CVE-2024-1069HIGHContact Form Entries <= 1.3.2 - Authenticated (Administrator+) Arbitrary File UploadEPSS 1.2%CVE-2022-50907HIGHe107 CMS v3.2.1 - Admin Upload Restriction Bypass + RCEEPSS 1.2%CVE-2024-34555CRITICALWordPress Z-Downloads plugin <= 1.11.3 - Auth. Arbitrary File Upload vulnerabilityEPSS 1.2%CVE-2022-3125—Frontend File Manager < 21.3 - Subscriber+ Arbitrary File UploadEPSS 1.2%CVE-2025-2008HIGHImport Export Suite for CSV and XML Datafeed <= 7.19 - Authenticated (Subscriber+) Arbitrary File UploadEPSS 1.2%CVE-2023-50760HIGHOnline Notice Board System v1.0 - Insecure File UploadEPSS 1.2%CVE-2024-46377CRITICALBest House Rental Management System 1.0 contains an arbitrary file upload vulnerability in the save_settings() function of the file rental/aEPSS 1.2%CVE-2023-43740HIGHOnline Book Store Project v1.0 - Insecure File UploadEPSS 1.2%CVE-2022-41573CRITICALAn issue was discovered in Ovidentia 8.3. The file upload feature does not prevent the uploading of executable files. A user can upload a .pEPSS 1.2%CVE-2024-0699MEDIUMAI Engine <= 2.1.4 - Authenticated(Editor+) Arbitrary File Upload via add_image_from_urlEPSS 1.2%CVE-2021-27428CRITICALGE UR family Unrestricted Upload of File with Dangerous TypeEPSS 1.2%CVE-2024-10820CRITICALWooCommerce Upload Files <= 84.3 - Unauthenticated Arbitrary File UploadEPSS 1.2%CVE-2023-5185CRITICALGym Management System Project v1.0 - Insecure File UploadEPSS 1.2%CVE-2026-16236HIGHRealtyna Organic IDX plugin + WPL Real Estate <= 5.3.0 - Authenticated (Subscriber+) Arbitrary File UploadEPSS 1.2%