Common Weakness Enumeration

    CWE Definition / CWE-434

    CWE-434: Unrestricted Upload of File with Dangerous Type

    The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

    Published:19 Jul 2006
    Organization:MITRE
    Modified:30 Apr 2026

    Related Weakness

    CWE-669: Incorrect Resource Transfer Between Spheres

    CWE-669: Incorrect Resource Transfer Between Spheres

    CWE-351: Insufficient Type Distinction

    CWE-436: Interpretation Conflict

    CWE-430: Deployment of Wrong Handler