Weaknesses of type CWE-434

3,091 results

Upload sem restrição de arquivo com tipo perigoso

Ocorre quando uma aplicação aceita upload de arquivos sem validar adequadamente seu tipo, extensão ou conteúdo. Um atacante pode enviar executáveis, scripts ou outros arquivos maliciosos, que serão armazenados ou executados no servidor, comprometendo sua integridade e segurança.

Example

Um formulário de perfil aceita qualquer arquivo como 'foto do usuário' sem checar extensão ou MIME type. Um atacante envia um arquivo .exe ou .php renomeado como .jpg, que é salvo no diretório web e posteriormente executado quando acessado, permitindo execução de código remoto.

How to mitigate

Valide uploads checando MIME type real (não apenas extensão), restrinja tipos permitidos de forma explícita, armazene arquivos fora da raiz web, desabilite execução de scripts no diretório de upload e considere usar vírus scanner. Implemente whitelist rigorosa, nunca blacklist.

CVE-2025-25784CRITICALAn arbitrary file upload vulnerability in the component \c\TemplateController.php of Jizhicms v2.5.4 allows attackers to execute arbitrary cEPSS 0.9%CVE-2022-42925CRITICALUnrestricted Upload of File with Dangerous Type in Forma LMSEPSS 0.9%CVE-2022-41681CRITICALFile Upload vulnerability in Forma LMSEPSS 0.9%CVE-2024-52429CRITICALWordPress WP Quick Setup plugin <= 2.0 - Arbitrary Plugin and Theme Installation to Remote Code Execution vulnerabilityEPSS 0.9%CVE-2024-23180HIGHImproper input validation vulnerability in a-blog cms Ver.3.1.x series versions prior to Ver.3.1.7, Ver.3.0.x series versions prior to Ver.3EPSS 0.9%CVE-2025-1355MEDIUMneedyamin Library Card System Add Picture signup.php unrestricted uploadEPSS 0.9%CVE-2025-67325CRITICALUnrestricted file upload in the hotel review feature in QloApps versions 1.7.0 and earlier allows remote unauthenticated attackers to achievEPSS 0.9%CVE-2024-3736MEDIUMcym1102 nginxWebUI upload unrestricted uploadEPSS 0.9%CVE-2025-70457CRITICALA Remote Code Execution (RCE) vulnerability exists in Sourcecodester Modern Image Gallery App v1.0 within the gallery/upload.php component. EPSS 0.9%CVE-2023-40265HIGHAn issue was discovered in Atos Unify OpenScape Xpressions WebAssistant V7 before V7R1 FR5 HF42 P911. It allows authenticated remote code exEPSS 0.9%CVE-2026-35573CRITICALChurchCRM has a Path traversal leads to RCEEPSS 0.9%CVE-2023-27397CRITICALUnrestricted upload of file with dangerous type exists in MicroEngine Mailform version 1.1.0 to 1.1.8. If the product's file upload functionEPSS 0.9%CVE-2026-32931HIGHChamilo LMS has Arbitrary File Upload via MIME-Only Validation in Exercise Sound Upload Leads to RCEEPSS 0.9%CVE-2024-37847CRITICALAn arbitrary file upload vulnerability in MangoOS before 5.1.4 and Mango API before 4.5.5 allows attackers to execute arbitrary code via a cEPSS 0.9%CVE-2024-2381HIGHAliExpress Dropshipping with AliNext Lite <= 3.3.5 - Authenticated (Subscriber+) Arbitrary File UploadEPSS 0.9%CVE-2026-87935HIGHPaid Downloads <= 3.15 - Unauthenticated Arbitrary File Upload via 'paiddownloads_update_file' ActionEPSS 0.9%CVE-2026-3459HIGHDrag and Drop Multiple File Upload for Contact Form 7 <= 1.3.9.5 - Unauthenticated Arbitrary File UploadEPSS 0.9%CVE-2024-3436MEDIUMSourceCodester Prison Management System Avatar edit-photo.php unrestricted uploadEPSS 0.9%CVE-2022-50936HIGHWBCE CMS 1.5.2 - Remote Code Execution (RCE) (Authenticated)EPSS 0.9%CVE-2024-1036HIGHopenBI Icon Screen.php uploadIcon unrestricted uploadEPSS 0.9%