Weaknesses of type CWE-434

3,097 results

Upload sem restrição de arquivo com tipo perigoso

Ocorre quando uma aplicação aceita upload de arquivos sem validar adequadamente seu tipo, extensão ou conteúdo. Um atacante pode enviar executáveis, scripts ou outros arquivos maliciosos, que serão armazenados ou executados no servidor, comprometendo sua integridade e segurança.

Example

Um formulário de perfil aceita qualquer arquivo como 'foto do usuário' sem checar extensão ou MIME type. Um atacante envia um arquivo .exe ou .php renomeado como .jpg, que é salvo no diretório web e posteriormente executado quando acessado, permitindo execução de código remoto.

How to mitigate

Valide uploads checando MIME type real (não apenas extensão), restrinja tipos permitidos de forma explícita, armazene arquivos fora da raiz web, desabilite execução de scripts no diretório de upload e considere usar vírus scanner. Implemente whitelist rigorosa, nunca blacklist.

CVE-2024-30500CRITICALWordPress CubeWP plugin <= 1.1.12 - Arbitrary File Upload vulnerabilityEPSS 0.6%CVE-2026-50873CRITICALAn arbitrary file upload vulnerability in the attachment handling component of flatnotes v5.5.4 allows attackers to execute arbitrary code vEPSS 0.6%CVE-2024-25909CRITICALWordPress WP Media folder Plugin <= 5.7.2 is vulnerable to Arbitrary File UploadEPSS 0.6%CVE-2024-8342MEDIUMSourceCodester Petshop Management System add_client.php unrestricted uploadEPSS 0.6%CVE-2025-5831HIGHDroip < 2.5.2 - Authenticated (Subscriber+) Arbitrary File UploadEPSS 0.6%CVE-2026-77991CRITICALJoomla Extension - joomlaeventmanager.net - Privileged remote code execution in Joomla Event Manager < 5.0.1EPSS 0.6%CVE-2026-88857CRITICALJoomla Extension - OrdaSoft.com - Authenticated, Privileged Remote Code Execution in OrdaSoft Joomla Gallery extension for Joomla < 6.2.7EPSS 0.6%CVE-2025-4413HIGHPixabay Images <= 3.4 - Authenticated (Author+) Arbitrary File UploadEPSS 0.6%CVE-2024-3778HIGHAi3 QbiBot - Unrestricted File UploadEPSS 0.6%CVE-2024-52677CRITICALHkCms <= v2.3.2.240702 is vulnerable to file upload in the getFileName method in /app/common/library/Upload.php.EPSS 0.6%CVE-2023-49814CRITICALWordPress Symbiostock Lite Plugin <= 6.0.0 is vulnerable to Arbitrary File UploadEPSS 0.6%CVE-2024-24000CRITICALjshERP v3.3 is vulnerable to Arbitrary File Upload. The jshERP-boot/systemConfig/upload interface does not check the uploaded file type, andEPSS 0.6%CVE-2023-32689MEDIUMParse Server vulnerable to phishing attack vulnerability that involves uploading malicious HTML fileEPSS 0.6%CVE-2025-6086HIGHCSV Me <= 2.0 - Authenticated (Administrator+) Arbitrary File UploadEPSS 0.6%CVE-2023-5262MEDIUMOpenRapid RapidCMS uploadicon.php isImg unrestricted uploadEPSS 0.6%CVE-2025-26892CRITICALWordPress Celestial Aura plugin <= 2.2 - Arbitrary File Upload vulnerabilityEPSS 0.6%CVE-2025-24650CRITICALWordPress Tourfic plugin <= 2.15.3 - Arbitrary File Upload vulnerabilityEPSS 0.6%CVE-2024-7910MEDIUMCodeAstro Online Railway Reservation System Profile Photo Update emp-profile-avatar.php unrestricted uploadEPSS 0.6%CVE-2023-53871MEDIUMSoosyze 2.0.0 Unrestricted File Upload via Broken Upload LogicEPSS 0.6%CVE-2024-48202CRITICALicecms <=3.4.7 has a File Upload vulnerability in FileUtils.java,uploadFile.EPSS 0.6%