Weaknesses of type CWE-434

3,096 results

Upload sem restrição de arquivo com tipo perigoso

Ocorre quando uma aplicação aceita upload de arquivos sem validar adequadamente seu tipo, extensão ou conteúdo. Um atacante pode enviar executáveis, scripts ou outros arquivos maliciosos, que serão armazenados ou executados no servidor, comprometendo sua integridade e segurança.

Example

Um formulário de perfil aceita qualquer arquivo como 'foto do usuário' sem checar extensão ou MIME type. Um atacante envia um arquivo .exe ou .php renomeado como .jpg, que é salvo no diretório web e posteriormente executado quando acessado, permitindo execução de código remoto.

How to mitigate

Valide uploads checando MIME type real (não apenas extensão), restrinja tipos permitidos de forma explícita, armazene arquivos fora da raiz web, desabilite execução de scripts no diretório de upload e considere usar vírus scanner. Implemente whitelist rigorosa, nunca blacklist.

CVE-2021-47888HIGHTextpattern 4.8.3 - Remote code executionEPSS 0.7%CVE-2020-37023HIGHKoken CMS 0.22.24 - Arbitrary File UploadEPSS 0.7%CVE-2024-57668HIGHIn Code-projects Shopping Portal v1.0, the insert-product.php page has an arbitrary file upload vulnerability.EPSS 0.7%CVE-2015-1785—In nextgen-galery wordpress plugin before 2.0.77.3 there are two vulnerabilities which can allow an attacker to gain full access over the weEPSS 0.7%CVE-2024-8089MEDIUMSourceCodester E-Commerce System controller.php unrestricted uploadEPSS 0.7%CVE-2024-7943MEDIUMitsourcecode Laravel Property Management System PropertiesController.php upload unrestricted uploadEPSS 0.7%CVE-2020-7302MEDIUMDLP ePO extension - Unrestricted Upload of File with Dangerous TypeEPSS 0.7%CVE-2025-2396HIGHe-Excellence U-Office Force - Arbitrary File UploadEPSS 0.7%CVE-2023-41725HIGHIvanti Avalanche EnterpriseServer Service Unrestricted File Upload Local Privilege Escalation VulnerabilityEPSS 0.7%CVE-2025-10754HIGHDocoDoco Store Locator <= 1.0.1 - Authenticated (Editor+) Arbitrary File UploadEPSS 0.7%CVE-2020-36942HIGHVictor CMS 1.0 - File Upload To RCEEPSS 0.7%CVE-2025-10051HIGHDemo Import Kit <= 1.1.0 - Authenticated (Admin+) Arbitrary File UploadEPSS 0.7%CVE-2023-2888MEDIUMPHPOK unrestricted uploadEPSS 0.7%CVE-2024-4306CRITICALUnrestricted Upload of File with Dangerous Type vulnerability in HubBankEPSS 0.7%CVE-2024-24026CRITICALAn arbitrary File upload vulnerability exists in Novel-Plus v4.3.0-RC1 and prior versions at com.java2nb.system.controller.SysUserControllerEPSS 0.7%CVE-2024-2531MEDIUMMAGESH-K21 Online-College-Event-Hall-Reservation-System update-rooms.php unrestricted uploadEPSS 0.7%CVE-2026-14494CRITICALSigma Forms Pro <= 1.4.5 - Unauthenticated Unauthenticated Arbitrary File Upload Leading to Remote Code Execution via Pre-built Template File Upload FieldEPSS 0.7%CVE-2023-5812MEDIUMflusity CMS upload.php handleFileUpload unrestricted uploadEPSS 0.7%CVE-2023-36809HIGHKiwi TCMS's misconfigured HTTP headers allow stored XSS execution with FirefoxEPSS 0.7%CVE-2026-41269HIGHFlowise: File Upload Validation Bypass in createAttachmentEPSS 0.7%