Weaknesses of type CWE-434

3,091 results

Upload sem restrição de arquivo com tipo perigoso

Ocorre quando uma aplicação aceita upload de arquivos sem validar adequadamente seu tipo, extensão ou conteúdo. Um atacante pode enviar executáveis, scripts ou outros arquivos maliciosos, que serão armazenados ou executados no servidor, comprometendo sua integridade e segurança.

Example

Um formulário de perfil aceita qualquer arquivo como 'foto do usuário' sem checar extensão ou MIME type. Um atacante envia um arquivo .exe ou .php renomeado como .jpg, que é salvo no diretório web e posteriormente executado quando acessado, permitindo execução de código remoto.

How to mitigate

Valide uploads checando MIME type real (não apenas extensão), restrinja tipos permitidos de forma explícita, armazene arquivos fora da raiz web, desabilite execução de scripts no diretório de upload e considere usar vírus scanner. Implemente whitelist rigorosa, nunca blacklist.

CVE-2023-1313HIGHUnrestricted Upload of File with Dangerous Type in cockpit-hq/cockpitEPSS 1.0%CVE-2023-29627HIGHOnline Pizza Ordering v1.0 was discovered to contain an arbitrary file upload vulnerability which allows attackers to execute arbitrary codeEPSS 1.0%CVE-2023-29621HIGHPurchase Order Management v1.0 was discovered to contain an arbitrary file upload vulnerability which allows attackers to execute arbitrary EPSS 1.0%CVE-2026-1555CRITICALWebStack <= 1.2024 - Unauthenticated Arbitrary File UploadEPSS 1.0%CVE-2023-30122CRITICALAn arbitrary file upload vulnerability in the component /admin/ajax.php?action=save_menu of Online Food Ordering System v2.0 allows attackerEPSS 1.0%CVE-2022-45968HIGHAlist v3.4.0 is vulnerable to File Upload. A user with only file upload permission can upload any file to any folder (even a password protecEPSS 1.0%CVE-2024-3483HIGHRemote Code Execution vulnerability in the iManagerEPSS 1.0%CVE-2022-2356MEDIUMUser Private Files < 1.1.3 - Subscriber+ Arbitrary File UploadEPSS 1.0%CVE-2023-42286CRITICALThere is a PHP file inclusion vulnerability in the template configuration of eyoucms v1.6.4, allowing attackers to execute code or system coEPSS 1.0%CVE-2026-92980HIGHHortusFox-Web < 6.1 Remote Code Execution via Import/ExportEPSS 1.0%CVE-2025-7443HIGHBerqWP <= 2.2.42 - Unauthenticated Arbitrary File UploadEPSS 1.0%CVE-2026-75496HIGHWebkul QloApps improper file upload validationEPSS 1.0%CVE-2023-26968CRITICALIn Atrocore 1.5.25, the Create Import Feed option with glyphicon-glyphicon-paperclip function is vulnerable to Unauthenticated File upload.EPSS 1.0%CVE-2025-13597CRITICALAI Feeds <= 1.0.11 - Unauthenticated Arbitrary File UploadEPSS 1.0%CVE-2025-13595CRITICALCIBELES AI <= 1.10.8 - Unauthenticated Arbitrary File UploadEPSS 1.0%CVE-2021-47788HIGHWebsiteBaker 2.13.0 - Remote Code Execution (RCE) (Authenticated)EPSS 1.0%CVE-2024-4681MEDIUMCampcodes Legal Case Management System Setting general-setting unrestricted uploadEPSS 1.0%CVE-2026-40412CRITICALAzure Orbital Spatio Remote Code Execution VulnerabilityEPSS 1.0%CVE-2026-50006CRITICALAnyquery: Arbitrary File Write (AFW) which could lead to Remote Code Execution (RCE) via Unrestricted ATTACH DATABASE in Server ModeEPSS 1.0%CVE-2021-27280HIGHOS Command injection vulnerability in mblog 3.5.0 allows attackers to execute arbitrary code via crafted theme when it gets selected.EPSS 1.0%