Falhas do tipo CWE-434

3.088 resultados

Upload irrestrito de arquivo com tipo perigoso

A aplicação aceita upload de arquivos sem validar adequadamente o tipo ou extensão, permitindo que um atacante envie executáveis, scripts ou outros arquivos maliciosos que serão armazenados ou executados no servidor. O risco aumenta se o arquivo for salvo em diretório acessível pela web ou em local onde será processado automaticamente.

Exemplo

Um sistema de upload de 'fotos de perfil' verifica apenas o tamanho do arquivo, mas não valida a extensão. Um atacante envia um arquivo .php disfarçado de imagem; se salvo em /uploads/ acessível via web, ele consegue executar código PHP no servidor ao acessar a URL direta.

Como mitigar

Valide extensões contra uma lista branca (whitelist) de tipos permitidos, verifique a assinatura do arquivo (magic bytes) e não confie apenas no Content-Type do cliente. Armazene uploads fora do diretório web ou configure o servidor para não executar scripts no diretório de uploads.

CVE-2026-81236HIGHDell Wyse Management Suite, versions prior to 2605.0.3.683, contain an Unrestricted Upload of File with Dangerous Type vulnerability. An unaEPSS 0.7%CVE-2026-81240HIGHDell Wyse Management Suite, versions prior to 2605.0.3.683, contain an Unrestricted Upload of File with Dangerous Type vulnerability. An unaEPSS 0.7%CVE-2025-69906HIGHMonstra CMS v3.0.4 contains an arbitrary file upload vulnerability in the Files Manager plugin. The application relies on blacklist-based fiEPSS 0.7%CVE-2024-7903MEDIUMDedeBIZ File Extension media_add.php unrestricted uploadEPSS 0.7%CVE-2024-36774HIGHAn arbitrary file upload vulnerability in Monstra CMS v3.0.4 allows attackers to execute arbitrary code via uploading a crafted PHP file.EPSS 0.7%CVE-2022-34482HIGHAn attacker who could have convinced a user to drag and drop an image to a filesystem could have manipulated the resulting filename to contaEPSS 0.7%CVE-2024-8341MEDIUMSourceCodester Petshop Management System add_user.php unrestricted uploadEPSS 0.7%CVE-2022-34483HIGHAn attacker who could have convinced a user to drag and drop an image to a filesystem could have manipulated the resulting filename to contaEPSS 0.7%CVE-2021-27771HIGHHCL Sametime is susceptible a file transfer service vulnerabilityEPSS 0.7%CVE-2023-2776MEDIUMcode-projects Simple Photo Gallery unrestricted uploadEPSS 0.7%CVE-2023-1497MEDIUMSourceCodester Simple and Nice Shopping Cart Script uploaderm.php unrestricted uploadEPSS 0.7%CVE-2024-52769HIGHAn arbitrary file upload vulnerability in the component /admin/friendlink_edit of DedeBIZ v6.3.0 allows attackers to execute arbitrary code EPSS 0.7%CVE-2023-0918MEDIUMcodeprojects Pharmacy Management System Avatar Image add.php unrestricted uploadEPSS 0.7%CVE-2012-10064CRITICALOmni Secure Files < 0.1.14 Unauthenticated Arbitrary File UploadEPSS 0.7%CVE-2026-2334CRITICAL) Missing Server-Side File Extension Validation in vsDeskEPSS 0.7%CVE-2025-27683HIGHVasion Print (formerly PrinterLogic) before Virtual Appliance Host 1.0.735 Application 20.0.1330 allows Driver Unrestricted Upload of File wEPSS 0.7%CVE-2025-39436CRITICALWordPress I Draw <= 1.0 - Arbitrary File Upload VulnerabilityEPSS 0.7%CVE-2024-4825CRITICALUnrestricted Upload of File with Dangerous Type vulnerability on Cockpit CMS from AgentejoEPSS 0.7%CVE-2021-34619HIGHCross-Site Request Forgery in WooCommerce Stock Manager WordPress PluginEPSS 0.7%CVE-2024-51366CRITICALAn arbitrary file upload vulnerability in the component \Roaming\Omega of OmegaT v6.0.1 allows attackers to execute arbitrary code via uploaEPSS 0.7%