Weaknesses of type CWE-434

3,091 results

Upload sem restrição de arquivo com tipo perigoso

Ocorre quando uma aplicação aceita upload de arquivos sem validar adequadamente seu tipo, extensão ou conteúdo. Um atacante pode enviar executáveis, scripts ou outros arquivos maliciosos, que serão armazenados ou executados no servidor, comprometendo sua integridade e segurança.

Example

Um formulário de perfil aceita qualquer arquivo como 'foto do usuário' sem checar extensão ou MIME type. Um atacante envia um arquivo .exe ou .php renomeado como .jpg, que é salvo no diretório web e posteriormente executado quando acessado, permitindo execução de código remoto.

How to mitigate

Valide uploads checando MIME type real (não apenas extensão), restrinja tipos permitidos de forma explícita, armazene arquivos fora da raiz web, desabilite execução de scripts no diretório de upload e considere usar vírus scanner. Implemente whitelist rigorosa, nunca blacklist.

CVE-2024-58279HIGHappRain CMF 4.0.5 Authenticated Remote Code Execution via Filemanager UploadEPSS 1.0%CVE-2023-29625HIGHEmployee Performance Evaluation System v1.0 was discovered to contain an arbitrary file upload vulnerability which allows attackers to execuEPSS 1.0%CVE-2024-13714HIGHAll-Images.ai – IA Image Bank and Custom Image creation <= 1.0.4 - Authenticated (Subscriber+) Arbitrary File UploadEPSS 1.0%CVE-2021-47758HIGHChikitsa Patient Management System 2.0.2 - Remote Code Execution (RCE) (Authenticated)EPSS 1.0%CVE-2023-3802MEDIUMChengdu Flash Flood Disaster Monitoring and Warning System Ajaxfileupload.ashx unrestricted uploadEPSS 1.0%CVE-2026-6147HIGHLightSync Pro <= 2.1.6 - Authenticated (Author+) Arbitrary File UploadEPSS 1.0%CVE-2026-14158HIGHWidget Logic Visual <= 1.52 - Authenticated (Subscriber+) Remote Code Execution via 'nwlv[cod-tag]' ParameterEPSS 1.0%CVE-2026-3533HIGHJupiterX Core <= 4.14.1 - Authenticated (Subscriber+) Missing Authorization To Limited File Upload via Popup Template ImportEPSS 1.0%CVE-2026-6518HIGHCMP – Coming Soon & Maintenance Plugin by NiteoThemes <= 4.1.16 - Missing Authorization to Authenticated (Administrator+) Arbitrary File Upload and Remote Code ExecutionEPSS 1.0%CVE-2016-20052CRITICALSnews CMS 1.7 Unrestricted File Upload via snews_filesEPSS 1.0%CVE-2026-32756HIGHAdmidio: Unrestricted File Upload via CSRF Token Validation Bypass in Documents & Files ModuleEPSS 1.0%CVE-2024-28269HIGHReCrystallize Server 5.10.0.0 allows administrators to upload files to the server. The file upload is not restricted, leading to the abilityEPSS 1.0%CVE-2023-26857HIGHAn arbitrary file upload vulnerability in /admin/ajax.php?action=save_uploads of Dynamic Transaction Queuing System v1.0 allows attackers toEPSS 0.9%CVE-2022-2046—Directorist - Business Directory Plugin < 7.2.3 - Admin+ Arbitrary File UploadEPSS 0.9%CVE-2024-5047MEDIUMSourceCodester Student Management System controller.php unrestricted uploadEPSS 0.9%CVE-2023-53980HIGHProjectSend r1605 Remote Code Execution via File Extension ManipulationEPSS 0.9%CVE-2024-8126HIGHAdvanced File Manager <= 5.2.8 - Authenticated (Subscriber+) Arbitrary File UploadEPSS 0.9%CVE-2021-38397CRITICALHoneywell Experion PKS and ACE Controllers Unrestricted Upload of File with Dangerous TypeEPSS 0.9%CVE-2026-2550CRITICALEFM iptime A6004MX timepro.cgi commit_vpncli_file_upload unrestricted uploadEPSS 0.9%CVE-2024-31210HIGHPHP file upload bypass via Plugin installerEPSS 0.9%