Falhas do tipo CWE-434

3.096 resultados

Upload irrestrito de arquivo com tipo perigoso

A aplicação aceita upload de arquivos sem validar adequadamente o tipo ou extensão, permitindo que um atacante envie executáveis, scripts ou outros arquivos maliciosos que serão armazenados ou executados no servidor. O risco aumenta se o arquivo for salvo em diretório acessível pela web ou em local onde será processado automaticamente.

Exemplo

Um sistema de upload de 'fotos de perfil' verifica apenas o tamanho do arquivo, mas não valida a extensão. Um atacante envia um arquivo .php disfarçado de imagem; se salvo em /uploads/ acessível via web, ele consegue executar código PHP no servidor ao acessar a URL direta.

Como mitigar

Valide extensões contra uma lista branca (whitelist) de tipos permitidos, verifique a assinatura do arquivo (magic bytes) e não confie apenas no Content-Type do cliente. Armazene uploads fora do diretório web ou configure o servidor para não executar scripts no diretório de uploads.

CVE-2025-68554CRITICALWordPress Keenarch theme < 2.0.1 - Arbitrary File Upload vulnerabilityEPSS 0.4%CVE-2025-8775MEDIUMQiyuesuo Eelectronic Signature Platform Scheduled Task upload execute unrestricted uploadEPSS 0.4%CVE-2025-32202CRITICALWordPress Insert or Embed Articulate Content into WordPress plugin <= 4.3000000025 - Arbitrary File Upload vulnerabilityEPSS 0.4%CVE-2024-37179HIGHInsecure File Operations vulnerability in SAP BusinessObjects Business Intelligence Platform (Web Intelligence)EPSS 0.4%CVE-2025-2687MEDIUMPHPGurukul eLearning System Image index.php unrestricted uploadEPSS 0.4%CVE-2025-67079CRITICALFile upload vulnerability in Omnispace Agora Project before 25.10 allowing attackers to execute code through the MSL engine of the Imagick lEPSS 0.4%CVE-2021-47819CRITICALProjeQtOr Project Management 9.1.4 - Remote Code ExecutionEPSS 0.4%CVE-2025-52239CRITICALAn arbitrary file upload vulnerability in ZKEACMS v4.1 allows attackers to execute arbitrary code via a crafted file.EPSS 0.4%CVE-2023-6127MEDIUMUnrestricted Upload of File with Dangerous Type in salesagility/suitecrmEPSS 0.4%CVE-2025-69129CRITICALWordPress WordPress & WooCommerce Scraper Plugin, Import Data from Any Site plugin <= 1.0.7 - Arbitrary File Upload vulnerabilityEPSS 0.4%CVE-2026-16548MEDIUMBit Assist < 1.8.2 - Unauthenticated Arbitrary File Upload via Response EndpointEPSS 0.4%CVE-2023-32686HIGHkiwitcms vulnerable to stored XSS via unrestricted files uploadEPSS 0.4%CVE-2026-82629MEDIUMjeecgboot jeewx-boot doUpload Endpoint MyJwWebJwid3Controller.java MyJwWebJwid3Controller.doUpload unrestricted uploadEPSS 0.4%CVE-2025-7898MEDIUMCodecanyon iDentSoft Account Setting Page updateSetting unrestricted uploadEPSS 0.4%CVE-2024-25627LOWCross-Site Scripting (XSS) via File Upload in Alf.ioEPSS 0.4%CVE-2026-9053MEDIUMMothra would respect a default value given by a website for HTML file upload forms. An attacker could craft a website with a malicious defauEPSS 0.4%CVE-2026-74803CRITICALJoomla Extension - yootheme.com - Unauthenticated arbitrary file upload in Zoo < 4.1.64EPSS 0.4%CVE-2026-75949CRITICALJoomla Extension - cmsjunkie.com - Arbitrary file upload / deletion (path traversal) in J-BusinessDirectory < 6.2.3EPSS 0.4%CVE-2026-41517NONEEmlog: Remote Code Execution via Malicious Plugin UploadEPSS 0.4%CVE-2026-74767HIGHUnbounded DAA Decompression in Pandora Allows Denial of Service via Decompression BombEPSS 0.4%