Fallos del tipo CWE-434

3088 resultados

Upload irrestrito de arquivo com tipo perigoso

Ocorre quando a aplicação aceita upload de arquivos sem validar adequadamente o tipo ou extensão, permitindo que um atacante envie executáveis, scripts ou outros arquivos maliciosos. O risco é grave: o arquivo pode ser armazenado em local acessível pela web, executado pelo servidor, ou baixado e executado pela vítima.

Ejemplo

Um formulário de perfil aceita qualquer arquivo como 'foto', sem verificação. Alguém faz upload de um .exe ou .php; se salvo em pasta pública e com permissões erradas, o arquivo pode ser executado pelo servidor ou baixado por outros usuários.

Cómo mitigar

Valide a extensão e o tipo MIME no servidor (nunca apenas no cliente), rejeite extensões perigosas explicitamente, armazene uploads fora da raiz web ou sem permissão de execução, e considere renomear arquivos removendo extensão original. Idealmente, converta imagens para formatos seguros (PNG/JPG) após upload.

CVE-2021-42362HIGHWordPress Popular Posts <= 5.3.2 Authenticated Arbitrary File UploadEPSS 79.8%CVE-2023-3486HIGHPaperCut NG Unauthenticated File UploadEPSS 79.2%CVE-2017-11357CRITICALProgress Telerik UI for ASP.NET AJAX before R2 2017 SP2 does not properly restrict user input to RadAsyncUpload, which allows remote attackeEPSS 77.7%KEVCVE-2021-21346MEDIUMXStream is vulnerable to an Arbitrary Code Execution attackEPSS 76.4%CVE-2023-4220HIGHChamilo LMS Unauthenticated Big Upload File Remote Code ExecutionEPSS 76.1%CVE-2021-21344MEDIUMXStream is vulnerable to an Arbitrary Code Execution attackEPSS 76.0%CVE-2023-3836MEDIUMDahua Smart Park Management unrestricted uploadEPSS 73.7%CVE-2024-0352HIGHLikeshop HTTP POST Request File.php userFormImage unrestricted uploadEPSS 72.9%CVE-2025-34299CRITICALMonsta FTP <= 2.11 Unauthenticated Arbitrary File UploadEPSS 72.9%CVE-2023-2034CRITICALUnrestricted Upload of File with Dangerous Type in froxlor/froxlorEPSS 71.4%CVE-2024-53677CRITICALApache Struts: Mixing setters for uploaded files and normal fields can allow bypass file upload checksEPSS 70.1%CVE-2021-34995HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of Commvault CommCell 11.22.22. Although authEPSS 68.9%CVE-2023-38095HIGHNETGEAR ProSAFE Network Management System MFileUploadController Unrestricted File Upload Remote Code Execution VulnerabilityEPSS 65.5%CVE-2024-29848HIGHAn unrestricted file upload vulnerability in web component of Ivanti Avalanche before 6.4.x allows an authenticated, privileged user to execEPSS 64.4%CVE-2019-8394HIGHZoho ManageEngine ServiceDesk Plus (SDP) before 10.0 build 10012 allows remote attackers to upload arbitrary files via login page customizatEPSS 63.3%KEVCVE-2023-51409CRITICALWordPress AI Engine plugin <= 1.9.98 - Unauthenticated Arbitrary File Upload vulnerabilityEPSS 63.1%CVE-2026-0740CRITICALNinja Forms - File Upload <= 3.3.26 - Unauthenticated Arbitrary File UploadEPSS 62.9%CVE-2023-27179HIGHGDidees CMS v3.9.1 and lower was discovered to contain an arbitrary file download vulenrability via the filename parameter at /_admin/imgdowEPSS 60.8%CVE-2025-2748MEDIUMKentico Xperience stored cross-site scripting in multiple-file upload functionalityEPSS 60.6%CVE-2025-5961HIGHMigration, Backup, Staging – WPvivid Backup & Migration <= 0.9.116 - Authenticated (Administrator+) Arbitrary File UploadEPSS 60.4%