Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-59

45
CRITICAL
691
HIGH
425
MEDIUM
43
LOW
1,232 CVEs · Page 12/25
7.3
CVE-2024-38081

.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability

7.3
CVE-2024-43470

Azure Network Watcher VM Agent Elevation of Privilege Vulnerability

7.3
CVE-2024-51721

A code injection vulnerability in the SecuSUITE Server Web Administration Portal of SecuSUITE versions 5.0.420 and earli

7.3
CVE-2024-22038

Various problems in obs-scm-bridge allows attackers that create specially crafted git repositories to leak information o

7.3
CVE-2024-49107

WmsRepair Service Elevation of Privilege Vulnerability

7.3
CVE-2024-12753

Foxit PDF Reader Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to e

7.2
CVE-2023-6336

Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Workforce Access on MacOS allows Us

7.1
CVE-2024-0206

A symbolic link manipulation vulnerability in Trellix Anti-Malware Engine prior to the January 2024 release allows an a

7.1
CVE-2024-23459

An Improper Link Resolution Before File Access ('Link Following') vulnerability in Zscaler Client Connector on Mac allow

7.1
CVE-2024-35254

Azure Monitor Agent Elevation of Privilege Vulnerability

7.1
CVE-2024-38188

Azure Network Watcher VM Agent Elevation of Privilege Vulnerability

7.1
CVE-2024-38097

Azure Monitor Agent Elevation of Privilege Vulnerability

7.1
CVE-2024-44258

This issue was addressed with improved handling of symlinks. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18

7.1
CVE-2024-52535

Dell SupportAssist for Home PCs versions 4.6.1 and prior and Dell SupportAssist for Business PCs versions 4.5.0 and prio

7.0
CVE-2024-21432

Windows Update Stack Elevation of Privilege Vulnerability

7.0
CVE-2024-30033

Windows Search Service Elevation of Privilege Vulnerability

7.0
CVE-2024-5102

A sym-linked file accessed via the repair function in Avast Antivirus <24.2 on Windows may allow user to elevate privile

7.0
CVE-2024-38022

Windows Image Acquisition Elevation of Privilege Vulnerability

7.0
CVE-2024-49059

Microsoft Office Elevation of Privilege Vulnerability

6.8
CVE-2024-30076

Windows Container Manager Service Elevation of Privilege Vulnerability

6.7
CVE-2024-31952

An issue was discovered in Samsung Magician 8.0.0 on macOS. Because symlinks are used during the installation process, a

6.7
CVE-2024-5742

A vulnerability was found in GNU Nano that allows a possible privilege escalation through an insecure temporary file. If

6.7
CVE-2024-38013

Microsoft Windows Server Backup Elevation of Privilege Vulnerability

6.7
CVE-2023-43078

Dell Dock Firmware and Dell Client Platform contain an Improper Link Resolution vulnerability during installation result

6.6
CVE-2023-32474

Dell Display Manager application, version 2.1.1.17 and prior, contain an insecure operation on windows junction/mount p

6.5
CVE-2021-1491

A vulnerability in the web-based management interface of Cisco&nbsp;SD-WAN vManage Software could allow an authenticated

6.4
CVE-2023-6335

Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Workforce Access on Windows allows

6.3
CVE-2023-32454

DUP framework version 4.9.4.36 and prior contains insecure operation on Windows junction/Mount point vulnerability. A l

6.3
CVE-2024-27885

This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Monterey 12.7.5, macOS Sonom

6.3
CVE-2024-39578

Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.1 contains a UNIX symbolic link (symlink) following vulnerability.

6.3
CVE-2024-52537

Dell Client Platform Firmware Update Utility contains an Improper Link Resolution vulnerability. A high privileged attac

6.1
CVE-2024-36306

A link following vulnerability in the Trend Micro Apex One and Apex One as a Service Damage Cleanup Engine could allow a

6.0
CVE-2024-25952

Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability.

6.0
CVE-2024-25953

Dell PowerScale OneFS versions 9.4.0.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability.

5.5
CVE-2024-0068

Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Workforce Access on MacOS allows Fi

5.5
CVE-2024-23285

This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sonoma 14.4. An app may be abl

5.5
CVE-2024-30065

Windows Themes Denial of Service Vulnerability

5.5
CVE-2024-44131

This issue was addressed with improved validation of symlinks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoi

5.5
CVE-2024-44178

This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.

5.5
CVE-2024-43603

Visual Studio Collector Service Denial of Service Vulnerability

5.5
CVE-2024-45315

The Improper link resolution before file access ('Link Following') vulnerability in SonicWall Connect Tunnel (version 12

5.5
CVE-2024-44175

This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.

5.5
CVE-2024-44264

This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.1, macOS Sonoma 1

5.5
CVE-2024-44273

This issue was addressed with improved handling of symlinks. This issue is fixed in iOS 18.1 and iPadOS 18.1, macOS Sequ

5.5
CVE-2024-7228

Avast Free Antivirus Link Following Denial-of-Service Vulnerability. This vulnerability allows local attackers to create

5.5
CVE-2024-7235

AVG AntiVirus Free Link Following Denial-of-Service Vulnerability. This vulnerability allows local attackers to create a

5.5
CVE-2024-7236

AVG AntiVirus Free icarus Arbitrary File Creation Denial of Service Vulnerability. This vulnerability allows local attac

5.5
CVE-2024-56074

gitingest before 9996a06 mishandles symbolic links that point outside of the base directory.

5.5
CVE-2024-44211

This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.1. An app may be

5.5
CVE-2024-12754

AnyDesk Link Following Information Disclosure Vulnerability. This vulnerability allows local attackers to disclose sensi

Frequently Asked Questions

What is CWE-59?

CWE-59 (CWE-59) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-59?

There are 1,879 CVE records associated with CWE-59 in our database. Of these, 45 are critical severity, 691 are high severity, and 425 are medium severity.

How can I protect against CWE-59 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-59 using AI-powered security agents.

Detect CWE-59 Vulnerabilities

CyberStrike's AI agents automatically detect cwe-59 vulnerabilities across your infrastructure.

Get Started