.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
Azure Network Watcher VM Agent Elevation of Privilege Vulnerability
A code injection vulnerability in the SecuSUITE Server Web Administration Portal of SecuSUITE versions 5.0.420 and earli
Various problems in obs-scm-bridge allows attackers that create specially crafted git repositories to leak information o
WmsRepair Service Elevation of Privilege Vulnerability
Foxit PDF Reader Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to e
Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Workforce Access on MacOS allows Us
A symbolic link manipulation vulnerability in Trellix Anti-Malware Engine prior to the January 2024 release allows an a
An Improper Link Resolution Before File Access ('Link Following') vulnerability in Zscaler Client Connector on Mac allow
Azure Monitor Agent Elevation of Privilege Vulnerability
Azure Network Watcher VM Agent Elevation of Privilege Vulnerability
Azure Monitor Agent Elevation of Privilege Vulnerability
This issue was addressed with improved handling of symlinks. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18
Dell SupportAssist for Home PCs versions 4.6.1 and prior and Dell SupportAssist for Business PCs versions 4.5.0 and prio
Windows Update Stack Elevation of Privilege Vulnerability
Windows Search Service Elevation of Privilege Vulnerability
A sym-linked file accessed via the repair function in Avast Antivirus <24.2 on Windows may allow user to elevate privile
Windows Image Acquisition Elevation of Privilege Vulnerability
Microsoft Office Elevation of Privilege Vulnerability
Windows Container Manager Service Elevation of Privilege Vulnerability
An issue was discovered in Samsung Magician 8.0.0 on macOS. Because symlinks are used during the installation process, a
A vulnerability was found in GNU Nano that allows a possible privilege escalation through an insecure temporary file. If
Microsoft Windows Server Backup Elevation of Privilege Vulnerability
Dell Dock Firmware and Dell Client Platform contain an Improper Link Resolution vulnerability during installation result
Dell Display Manager application, version 2.1.1.17 and prior, contain an insecure operation on windows junction/mount p
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated
Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Workforce Access on Windows allows
DUP framework version 4.9.4.36 and prior contains insecure operation on Windows junction/Mount point vulnerability. A l
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Monterey 12.7.5, macOS Sonom
Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.1 contains a UNIX symbolic link (symlink) following vulnerability.
Dell Client Platform Firmware Update Utility contains an Improper Link Resolution vulnerability. A high privileged attac
A link following vulnerability in the Trend Micro Apex One and Apex One as a Service Damage Cleanup Engine could allow a
Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability.
Dell PowerScale OneFS versions 9.4.0.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability.
Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Workforce Access on MacOS allows Fi
This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sonoma 14.4. An app may be abl
Windows Themes Denial of Service Vulnerability
This issue was addressed with improved validation of symlinks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoi
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.
Visual Studio Collector Service Denial of Service Vulnerability
The Improper link resolution before file access ('Link Following') vulnerability in SonicWall Connect Tunnel (version 12
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.1, macOS Sonoma 1
This issue was addressed with improved handling of symlinks. This issue is fixed in iOS 18.1 and iPadOS 18.1, macOS Sequ
Avast Free Antivirus Link Following Denial-of-Service Vulnerability. This vulnerability allows local attackers to create
AVG AntiVirus Free Link Following Denial-of-Service Vulnerability. This vulnerability allows local attackers to create a
AVG AntiVirus Free icarus Arbitrary File Creation Denial of Service Vulnerability. This vulnerability allows local attac
gitingest before 9996a06 mishandles symbolic links that point outside of the base directory.
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.1. An app may be
AnyDesk Link Following Information Disclosure Vulnerability. This vulnerability allows local attackers to disclose sensi
Frequently Asked Questions
What is CWE-59?
CWE-59 (CWE-59) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-59?
There are 1,879 CVE records associated with CWE-59 in our database. Of these, 45 are critical severity, 691 are high severity, and 425 are medium severity.
How can I protect against CWE-59 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-59 using AI-powered security agents.
Detect CWE-59 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-59 vulnerabilities across your infrastructure.
Get Started