Weaknesses of type CWE-434

3,096 results

Upload sem restrição de arquivo com tipo perigoso

Ocorre quando uma aplicação aceita upload de arquivos sem validar adequadamente seu tipo, extensão ou conteúdo. Um atacante pode enviar executáveis, scripts ou outros arquivos maliciosos, que serão armazenados ou executados no servidor, comprometendo sua integridade e segurança.

Example

Um formulário de perfil aceita qualquer arquivo como 'foto do usuário' sem checar extensão ou MIME type. Um atacante envia um arquivo .exe ou .php renomeado como .jpg, que é salvo no diretório web e posteriormente executado quando acessado, permitindo execução de código remoto.

How to mitigate

Valide uploads checando MIME type real (não apenas extensão), restrinja tipos permitidos de forma explícita, armazene arquivos fora da raiz web, desabilite execução de scripts no diretório de upload e considere usar vírus scanner. Implemente whitelist rigorosa, nunca blacklist.

CVE-2025-25361CRITICALAn arbitrary file upload vulnerability in the component /cms/CmsWebFileAdminController.java of PublicCMS v4.0.202406 allows attackers to exeEPSS 0.7%CVE-2024-28890MEDIUMForminator prior to 1.29.0 contains an unrestricted upload of file with dangerous type vulnerability. If this vulnerability is exploited, a EPSS 0.7%CVE-2024-13418HIGHSmart Framework <= Multiple Plugins - Authenticated (Subscriber+) Arbitrary File UploadEPSS 0.7%CVE-2023-1391MEDIUMSourceCodester Online Tours & Travels Management System ab.php unrestricted uploadEPSS 0.7%CVE-2025-5322HIGHVikRentCar Car Rental Management System <= 1.4.3 - Authenticated (Administrator+) Arbitrary File UploadEPSS 0.7%CVE-2025-25783CRITICALAn arbitrary file upload vulnerability in the component admin\plugin.php of Emlog Pro v2.5.3 allows attackers to execute arbitrary code via EPSS 0.7%CVE-2025-1555MEDIUMhzmanyun Education and Training System saveImage unrestricted uploadEPSS 0.7%CVE-2025-70151HIGHcode-projects Scholars Tracking System 1.0 allows an authenticated attacker to achieve remote code execution via unrestricted file upload. TEPSS 0.7%CVE-2025-5061HIGHWP Import Export Lite <= 3.9.29 - Authenticated (Subscriber+) Arbitrary File UploadEPSS 0.7%CVE-2026-5573MEDIUMTechnostrobe HI-LED-WR120-G2 fs unrestricted uploadEPSS 0.7%CVE-2025-46193CRITICALSourceCodester Client Database Management System 1.0 is vulnerable to Remote code execution via Arbitrary file upload in user_proposal_updatEPSS 0.7%CVE-2025-13590CRITICALAuthenticated arbitrary file upload via a System REST API requiring administrator permission.EPSS 0.7%CVE-2025-26411HIGHAuthenticated Arbitrary Python File Upload via Plugin ManagerEPSS 0.7%CVE-2026-2684MEDIUMTsinghua Unigroup Electronic Archives System uploadFile.html unrestricted uploadEPSS 0.7%CVE-2025-0582MEDIUMitsourcecode Farm Management System add-pig.php unrestricted uploadEPSS 0.7%CVE-2023-24507HIGHAgilePoint NX v8.0 SU2.2 & SU2.3 – Insecure File UploadEPSS 0.7%CVE-2024-11391HIGHAdvanced File Manager <= 5.2.10 - Authenticated (Subscriber+) Arbitrary File UploadEPSS 0.7%CVE-2025-40625CRITICALMultiple vulnerabilities in TCMAN's GIMEPSS 0.7%CVE-2022-45427HIGHSome Dahua software products have a vulnerability of unrestricted upload of file. After obtaining the permissions of administrators, by sendEPSS 0.7%CVE-2021-47904HIGHPhreeBooks 5.2.3 - Remote Code ExecutionEPSS 0.7%