Weaknesses of type CWE-434

3,091 results

Upload sem restrição de arquivo com tipo perigoso

Ocorre quando uma aplicação aceita upload de arquivos sem validar adequadamente seu tipo, extensão ou conteúdo. Um atacante pode enviar executáveis, scripts ou outros arquivos maliciosos, que serão armazenados ou executados no servidor, comprometendo sua integridade e segurança.

Example

Um formulário de perfil aceita qualquer arquivo como 'foto do usuário' sem checar extensão ou MIME type. Um atacante envia um arquivo .exe ou .php renomeado como .jpg, que é salvo no diretório web e posteriormente executado quando acessado, permitindo execução de código remoto.

How to mitigate

Valide uploads checando MIME type real (não apenas extensão), restrinja tipos permitidos de forma explícita, armazene arquivos fora da raiz web, desabilite execução de scripts no diretório de upload e considere usar vírus scanner. Implemente whitelist rigorosa, nunca blacklist.

CVE-2026-49972HIGHLaravel-Mediable < 7.0.0 File Upload RCE via Extension BypassEPSS 1.1%CVE-2024-37868HIGHFile Upload vulnerability in Itsourcecode Online Discussion Forum Project v.1.0 allows a remote attacker to execute arbitrary code via the "EPSS 1.1%CVE-2024-37869HIGHFile Upload vulnerability in Itsourcecode Online Discussion Forum Project v.1.0 allows a remote attacker to execute arbitrary code via the "EPSS 1.1%CVE-2025-1980HIGHRemote Code Execution via Unrestricted File Upload in Ready_EPSS 1.1%CVE-2022-40932HIGHIn Zoo Management System v1.0, there is an arbitrary file upload vulnerability in the picture upload point of the "gallery" file of the "GalEPSS 1.1%CVE-2025-0357CRITICALWPBookit <= 1.6.9 - Unauthenticated Arbitrary File UploadEPSS 1.1%CVE-2026-15282CRITICALInstant Appointment <= 1.2 - Unauthenticated Arbitrary File UploadEPSS 1.1%CVE-2026-6271CRITICALCareer Section <= 1.7 - Unauthenticated Arbitrary File UploadEPSS 1.1%CVE-2022-45009HIGHOnline Leave Management System v1.0 was discovered to contain an arbitrary file upload vulnerability at /leave_system/classes/SystemSettingsEPSS 1.1%CVE-2022-4506HIGHUnrestricted Upload of File with Dangerous Type in openemr/openemrEPSS 1.1%CVE-2026-9860HIGHOffload, AI & Optimize with Cloudflare Images <= 1.10.2 - Authenticated (Author+) Remote Code Execution via 'api-key' / 'account-id' Parameters in cf_images_do_setup AJAX ActionEPSS 1.1%CVE-2022-44054CRITICALThe d8s-xml for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code exeEPSS 1.1%CVE-2026-13352HIGHPaid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content <= 4.16.18 - Authenticated (Author+) Limited Unsafe File Upload via upload_mimes Filter ExpansionEPSS 1.1%CVE-2019-6839—A CWE-434: Unrestricted Upload of File with Dangerous Type vulnerability exists in U.motion Server (MEG6501-0001 - U.motion KNX server, MEG6EPSS 1.1%CVE-2023-42017HIGHIBM Planning Analytics file uploadEPSS 1.1%CVE-2024-42676HIGHFile Upload vulnerability in Huizhi enterprise resource management system v.1.0 and before allows a remote attacker to execute arbitrary codEPSS 1.1%CVE-2026-16610CRITICALAdmin and Site Enhancements (ASE) Pro <= 8.9.0 - Unauthenticated Remote Code Execution via PHP Code Injection via cfgroup[input] Repeater Row KeyEPSS 1.1%CVE-2022-47769CRITICALAn arbitrary file write vulnerability in Serenissima Informatica Fast Checkin v1.0 allows unauthenticated attackers to upload malicious fileEPSS 1.1%CVE-2022-42971CRITICALA CWE-434: Unrestricted Upload of File with Dangerous Type vulnerability exists that could cause remote code execution when the attacker uplEPSS 1.1%CVE-2023-24646CRITICALAn arbitrary file upload vulnerability in the component /fos/admin/ajax.php of Food Ordering System v2.0 allows attackers to execute arbitraEPSS 1.1%