Weaknesses of type CWE-434

3,099 results

Upload sem restrição de arquivo com tipo perigoso

Ocorre quando uma aplicação aceita upload de arquivos sem validar adequadamente seu tipo, extensão ou conteúdo. Um atacante pode enviar executáveis, scripts ou outros arquivos maliciosos, que serão armazenados ou executados no servidor, comprometendo sua integridade e segurança.

Example

Um formulário de perfil aceita qualquer arquivo como 'foto do usuário' sem checar extensão ou MIME type. Um atacante envia um arquivo .exe ou .php renomeado como .jpg, que é salvo no diretório web e posteriormente executado quando acessado, permitindo execução de código remoto.

How to mitigate

Valide uploads checando MIME type real (não apenas extensão), restrinja tipos permitidos de forma explícita, armazene arquivos fora da raiz web, desabilite execução de scripts no diretório de upload e considere usar vírus scanner. Implemente whitelist rigorosa, nunca blacklist.

CVE-2026-45797MEDIUMHeyForm Vulnerable to Stored XSS via Unauthenticated SVG File UploadEPSS 0.6%CVE-2023-20195MEDIUMTwo vulnerabilities in Cisco ISE could allow an authenticated, remote attacker to upload arbitrary files to an affected device. To exploit tEPSS 0.6%CVE-2025-12201MEDIUMajayrandhawa User-Management-PHP-MYSQL User Management edit-user.php unrestricted uploadEPSS 0.6%CVE-2025-3585MEDIUMwestboy CicadasCMS JSP Parser upload unrestricted uploadEPSS 0.6%CVE-2025-3123MEDIUMWonderCMS Theme Installation/Plugin Installation installUpdateModuleAction unrestricted uploadEPSS 0.6%CVE-2025-3558MEDIUMghostxbh uzy-ssm-mall uploadUserHeadImage unrestricted uploadEPSS 0.6%CVE-2024-1532MEDIUMA vulnerability exists in the stb-language file handling that affects the RTU500 series product versions listed below. A malicious actor couEPSS 0.6%CVE-2024-53619MEDIUMAn authenticated arbitrary file upload vulnerability in the Documents module of SPIP v4.3.3 allows attackers to execute arbitrary code via uEPSS 0.6%CVE-2025-63227HIGHThe Mozart FM Transmitter web management interface on version WEBMOZZI-00287, contains an unrestricted file upload vulnerability in the /patEPSS 0.6%CVE-2024-2268MEDIUMkeerti1924 Online-Book-Store-Website unrestricted uploadEPSS 0.6%CVE-2024-56829CRITICALHuang Yaoshi Pharmaceutical Management Software through 16.0 allows arbitrary file upload via a .asp filename in the fileName element of theEPSS 0.6%CVE-2024-37424CRITICALWordPress Newspack Blocks plugin <= 3.0.8 - Arbitrary File Upload vulnerabilityEPSS 0.6%CVE-2024-28425HIGHgreykite v1.0.0 was discovered to contain an arbitrary file upload vulnerability in the load_obj function at /templates/pickle_utils.py. ThiEPSS 0.6%CVE-2024-2394MEDIUMSourceCodester Employee Management System add-admin.php unrestricted uploadEPSS 0.6%CVE-2025-10049HIGHResponsive Filterable Portfolio <= 1.0.24 - Authenticated (Admin+) Arbitrary File UploadEPSS 0.6%CVE-2024-46210HIGHAn arbitrary file upload vulnerability in the MediaPool module of Redaxo CMS v5.17.1 allows attackers to execute arbitrary code via uploadinEPSS 0.6%CVE-2026-28274HIGHInitiative Vulnerable to Token Theft via Stored XSS in Document UploadsEPSS 0.6%CVE-2025-10001HIGHImport any XML, CSV or Excel File to WordPress <= 3.9.3 - Authenticated (Admin+) Limited Unsafe File UploadEPSS 0.6%CVE-2024-25802CRITICALSKINsoft S-Museum 7.02.3 allows Unrestricted File Upload via the Add Media function. Unlike in CVE-2024-25801, the attack payload is the filEPSS 0.6%CVE-2023-43269CRITICALpigcms up to 7.0 was discovered to contain an arbitrary file upload vulnerability.EPSS 0.6%