In Eternal Terminal 6.2.1, TelemetryService uses fixed paths in /tmp. For example, a local attacker can create /tmp/.sen
Docker Desktop for Windows before 4.6 allows attackers to overwrite any file through the windowscontainers/start dockerB
Dell Command | Update, Dell Update, and Alienware Update versions 4.9.0, A01 and prior contain an Insecure Operation on
Zscaler Client Connector for Windows before 4.1 writes/deletes a configuration file inside specific folders on the disk.
runc is a CLI tool for spawning and running containers according to the OCI specification. It was found that AppArmor ca
Wacom Driver 6.3.46-1 for Windows was discovered to contain an arbitrary file write vulnerability via the component \Wac
A Improper Link Resolution Before File Access ('Link Following') vulnerability in SUSE SUSE Linux Enterprise Desktop 15
Visual Studio Denial of Service Vulnerability
Git is a revision control system. Using a specially-crafted repository, Git prior to versions 2.39.2, 2.38.4, 2.37.6, 2.
A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. T
McAfee Total Protection prior to 16.0.50 allows attackers to elevate user privileges due to Improper Link Resolution via
A link following vulnerability in the Trend Micro Apex One and Apex One as a Service agent could allow a local attacker
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Ventura 13.6, tvOS 17, macOS
Improper link resolution before file access ('Link Following') issue exists in iPrint&Scan Desktop for Windows versions
NVIDIA GeForce Experience contains a vulnerability in the NVContainer component, where a user without administrator pri
.NET Framework Denial of Service Vulnerability
Ghost is an open source content management system. Versions prior to 5.59.1 are subject to a vulnerability which allows
Dell Command | Intel vPro Out of Band, versions before 4.4.0, contain an arbitrary folder delete vulnerability during un
Dell Command | Integration Suite for System Center, versions before 6.4.0 contain an arbitrary folder delete vulnerabil
Dell Encryption, Dell Endpoint Security Suite Enterprise, and Dell Security Management Server version prior to 11.8.1 c
A vulnerability exists in the FTP server of the Zyxel AX7501-B0 firmware prior to V5.17(ABPC.3)C0, which processes symbo
A vulnerability in the CLI of Cisco TelePresence CE and RoomOS Software could allow an authenticated, local attacker to
A link-manipulation issue was discovered in Mega HOPEX 15.2.0.6110 before V5CP4.
Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to read registry information of the oper
HashiCorp Vagrant's Windows installer targeted a custom location with a non-protected path that could be junctioned, int
The combination of primitives offered by SMB and AFP in their default configuration allows the arbitrary writing of file
In Apache Hadoop, The unTar function uses unTarUsingJava function on Windows and the built-in tar utility on Unix and ot
The container package in MikroTik RouterOS 7.4beta4 allows an attacker to create mount points pointing to symbolic links
Insufficient policy enforcement in Installer in Google Chrome on Windows prior to 99.0.4844.51 allowed a remote attacker
When resolving a symlink such as <code>file:///proc/self/fd/1</code>, an error message may be produced where the symlink
go-getter up to 1.5.11 and 2.0.2 allowed arbitrary host access via go-getter path traversal, symlink processing, and com
Deno <=1.14.0 file sandbox does not handle symbolic links correctly. When running Deno with specific write access, the D
Tauri is a framework for building binaries for all major desktop platforms. Due to missing canonicalization when `readDi
In Checkmk before 1.6.0p29, 2.x before 2.0.0p25, and 2.1.x before 2.1.0b10, a site user can escalate to root by editing
Time of Check - Time of Use (TOCTOU) vulnerability in Quick Heal Total Security prior to 12.1.1.27 allows a local attack
A link following privilege escalation vulnerability in Trend Micro Apex One (on-prem and SaaS) and Trend Micro Worry-Fre
Windows User Profile Service Elevation of Privilege Vulnerability
A UNIX Symbolic Link (Symlink) Following vulnerability in the systemd service file for watchman of openSUSE Backports SL
Windows Print Spooler Elevation of Privilege Vulnerability
snapd 2.54.2 did not properly validate the location of the snap-confine binary. A local attacker who can hardlink this b
A link following privilege escalation vulnerability in Trend Micro Antivirus for Max 11.0.2150 and below could allow a l
A security link following local privilege escalation vulnerability in Trend Micro Apex One, Trend Micro Apex One as a Se
A security link following local privilege escalation vulnerability in Trend Micro Apex One, Trend Micro Apex One as a Se
SWHKD 1.1.5 unsafely uses the /tmp/swhkd.pid pathname. There can be an information leak or denial of service.
An issue was discovered in file profile.go in function MemProf in beego through 2.0.2, allows attackers to launch symlin
An issue was discovered in file profile.go in function GetCPUProfile in beego through 2.0.2, allows attackers to launch
VMware Horizon Agent for Linux (prior to 22.x) contains a local privilege escalation as a user is able to change the def
A local privilege escalation vulnerability in MA for Windows prior to 5.7.6 allows a local low privileged user to gain s
Check Point Endpoint Security Client for Windows versions earlier than E86.40 copy files for forensics reports from a di
Trend Micro Password Manager (Consumer) version 5.0.0.1266 and below is vulnerable to a Link Following Privilege Escalat
Frequently Asked Questions
What is CWE-59?
CWE-59 (CWE-59) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-59?
There are 1,879 CVE records associated with CWE-59 in our database. Of these, 45 are critical severity, 691 are high severity, and 425 are medium severity.
How can I protect against CWE-59 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-59 using AI-powered security agents.
Detect CWE-59 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-59 vulnerabilities across your infrastructure.
Get Started