Falhas do tipo CWE-434

3.091 resultados

Upload irrestrito de arquivo com tipo perigoso

A aplicação aceita upload de arquivos sem validar adequadamente o tipo ou extensão, permitindo que um atacante envie executáveis, scripts ou outros arquivos maliciosos que serão armazenados ou executados no servidor. O risco aumenta se o arquivo for salvo em diretório acessível pela web ou em local onde será processado automaticamente.

Exemplo

Um sistema de upload de 'fotos de perfil' verifica apenas o tamanho do arquivo, mas não valida a extensão. Um atacante envia um arquivo .php disfarçado de imagem; se salvo em /uploads/ acessível via web, ele consegue executar código PHP no servidor ao acessar a URL direta.

Como mitigar

Valide extensões contra uma lista branca (whitelist) de tipos permitidos, verifique a assinatura do arquivo (magic bytes) e não confie apenas no Content-Type do cliente. Armazene uploads fora do diretório web ou configure o servidor para não executar scripts no diretório de uploads.

CVE-2026-39931HIGHOpenEMR Authenticated SQL Injection via backup.php Import FeatureEPSS 0.6%CVE-2023-7150MEDIUMCampcodes Chic Beauty Salon Product product-list.php unrestricted uploadEPSS 0.6%CVE-2025-30131CRITICALAn issue was discovered on IROAD Dashcam FX2 devices. An unauthenticated file upload endpoint can be leveraged to execute arbitrary commandsEPSS 0.6%CVE-2025-68001CRITICALWordPress g-FFL Checkout plugin <= 2.1.0 - Arbitrary File Upload vulnerabilityEPSS 0.6%CVE-2024-1113MEDIUMopenBI Unity.php uploadUnity unrestricted uploadEPSS 0.6%CVE-2024-6958MEDIUMitsourcecode University Management System Avatar File st_update.php unrestricted uploadEPSS 0.6%CVE-2022-0950MEDIUMUnrestricted Upload of File with Dangerous Type in star7th/showdocEPSS 0.6%CVE-2022-47186HIGHUnrestricted Upload of File vulnerability in Generex CS141EPSS 0.6%CVE-2023-5637HIGHPlaintext Storage of a Password in ArslanSoft's Education PortalEPSS 0.6%CVE-2026-64960HIGHRemote Code Execution via Unrestricted File Upload in ATutorEPSS 0.6%CVE-2026-57311MEDIUMUnrestricted Upload of File with Dangerous Type in Windu CMSEPSS 0.6%CVE-2024-7189MEDIUMitsourcecode Online Food Ordering System editproduct.php unrestricted uploadEPSS 0.6%CVE-2025-56218CRITICALAn arbitrary file upload vulnerability in SigningHub v8.6.8 allows attackers to execute arbitrary code via uploading a crafted PDF file.EPSS 0.6%CVE-2021-24620—Simple eCommerce <= 2.2.5 - Arbitrary File UploadEPSS 0.6%CVE-2025-3040MEDIUMProject Worlds Online Time Table Generator add_student.php unrestricted uploadEPSS 0.6%CVE-2025-9561HIGHAP Background 3.8.1 - 3.8.2 - Missing Authorization to Authenticated (Subscriber+) Arbitrary File Upload via advParallaxBackAdminSaveSlider FunctionEPSS 0.6%CVE-2026-82793HIGHUnrestricted upload of file with dangerous type issue exists in Contec CAN 2.0B Communication Wireless LAN / USB Converter Unit. If a speciaEPSS 0.6%CVE-2024-31115CRITICALWordPress Chauffeur Taxi Booking System for WordPress plugin <= 7.2 - Arbitrary File Upload vulnerabilityEPSS 0.6%CVE-2025-12867HIGHHundred Plus|EIP Plus - Arbitrary File UplaodEPSS 0.6%CVE-2023-52221CRITICALWordPress Barcode Scanner with Inventory & Order Manager Plugin <= 1.5.1 is vulnerable to Arbitrary File UploadEPSS 0.6%