Fallos del tipo CWE-434

3088 resultados

Upload irrestrito de arquivo com tipo perigoso

Ocorre quando a aplicação aceita upload de arquivos sem validar adequadamente o tipo ou extensão, permitindo que um atacante envie executáveis, scripts ou outros arquivos maliciosos. O risco é grave: o arquivo pode ser armazenado em local acessível pela web, executado pelo servidor, ou baixado e executado pela vítima.

Ejemplo

Um formulário de perfil aceita qualquer arquivo como 'foto', sem verificação. Alguém faz upload de um .exe ou .php; se salvo em pasta pública e com permissões erradas, o arquivo pode ser executado pelo servidor ou baixado por outros usuários.

Cómo mitigar

Valide a extensão e o tipo MIME no servidor (nunca apenas no cliente), rejeite extensões perigosas explicitamente, armazene uploads fora da raiz web ou sem permissão de execução, e considere renomear arquivos removendo extensão original. Idealmente, converta imagens para formatos seguros (PNG/JPG) após upload.

CVE-2021-24499—Workreap theme < 2.2.2 - Unauthenticated Upload Leading to Remote Code ExecutionEPSS 60.1%CVE-2023-0587CRITICALA file upload vulnerability in exists in Trend Micro Apex One server build 11110. Using a malformed Content-Length header in an HTTP PUT mesEPSS 59.6%CVE-2021-43829HIGHUnrestricted Upload of Files in PatrowlEPSS 59.2%CVE-2021-39352HIGHCatch Themes Demo Import <= 1.7 Admin+ Arbitrary File UploadEPSS 56.3%CVE-2025-26319CRITICALFlowiseAI Flowise v2.2.6 was discovered to contain an arbitrary file upload vulnerability in /api/v1/attachments.EPSS 55.9%CVE-2024-24809HIGHTraccar vulnerable to Path Traversal: 'dir/../../filename' and Unrestricted Upload of File with Dangerous TypeEPSS 54.4%CVE-2023-6187HIGHPaid Memberships Pro <= 2.12.3 - Authenticated (Subscriber+) Arbitrary File UploadEPSS 51.3%CVE-2024-5084CRITICALHash Form – Drag & Drop Form Builder <= 1.1.0 - Unauthenticated Arbitrary File Upload to Remote Code ExecutionEPSS 50.7%CVE-2021-24370—Fancy Product Designer < 4.6.9 - Unauthenticated Arbitrary File Upload and RCEEPSS 47.4%CVE-2024-44849CRITICALQualitor up to 8.24 is vulnerable to Remote Code Execution (RCE) via Arbitrary File Upload in checkAcesso.php.EPSS 46.3%CVE-2023-32562MEDIUMAn unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.3.x and below that could allow an attacker tEPSS 45.6%CVE-2024-48760CRITICALAn issue in GestioIP v3.5.7 allows a remote attacker to execute arbitrary code via the file upload function. The attacker can upload a malicEPSS 45.1%CVE-2024-42640CRITICALangular-base64-upload prior to v0.1.21 is vulnerable to unauthenticated remote code execution via demo/server.php. Exploiting this vulnerabiEPSS 45.1%CVE-2025-64095CRITICALDNN Insufficient Access Control - Image Upload allows for Site Content OverwriteEPSS 44.7%CVE-2020-36847CRITICALSimple File List < 4.2.3 - Remote Code ExecutionEPSS 44.2%CVE-2022-3552HIGHUnrestricted Upload of File with Dangerous Type in boxbilling/boxbillingEPSS 44.0%CVE-2024-0939MEDIUMByzoro Smart S210 Management Platform uploadfile.php unrestricted uploadEPSS 43.8%CVE-2025-61678HIGHFreePBX Endpoint Manager vulnerable to authenticated arbitrary file upload via fwbrand parameterEPSS 43.7%CVE-2021-24284—Kaswara Modern VC Addons <= 3.0.1 - Unauthenticated Arbitrary File UploadEPSS 42.1%CVE-2021-27860CRITICALArbitrary file upload vulnerability in FatPipe softwareEPSS 39.8%KEV