A local attacker can create a hard-link between a file to which the Check Point Endpoint Security client for Windows bef
deepin-clone before 1.1.3 uses a predictable path /tmp/.deepin-clone/mount/<block-dev-basename> in the Helper::temporary
A vulnerability in the filesystem of Cisco IOS XE Software could allow an authenticated, local attacker with physical ac
The chkstat tool in the permissions package followed symlinks before commit a9e1d26cd49ef9ee0c2060c859321128a6dd4230 (pl
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user
The init script in autokey before 0.61.3-2 allows local attackers to write to arbitrary files via a symlink attack.
An elevation of privilege vulnerability exists when Visual Studio fails to properly validate hardlinks while extracting
The kubectl cp command allows copying files between containers and the user machine. To copy files from a container, Kub
An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlin
An elevation of privilege vulnerability exists when the Windows Shell fails to validate folder shortcuts. An attacker wh
Lintian before 2.5.12 allows remote attackers to gather information about the "host" system using crafted symlinks.
In GNU patch through 2.7.6, the following of symlinks is mishandled in certain cases other than input files. This affect
The WEBrick gem 1.4.2 for Ruby allows directory traversal if the attacker once had local access to create a symlink to a
In GUI mode, deepin-clone before 1.1.3 creates a log file at the fixed path /tmp/.deepin-clone.log as root, and follows
deepin-clone before 1.1.3 uses a fixed path /tmp/partclone.log in the Helper::getPartitionSizeInfo() function to write a
An elevation of privilege vulnerability exists in Microsoft Windows where certain folders, with local service privilege,
An elevation of privilege vulnerability exists in Windows store installer where WindowsApps directory is vulnerable to s
An issue was discovered in Podman in libpod before 1.6.0. It resolves a symlink in the host context during a copy operat
The quarantine restoration function in Total Defense Anti-virus 11.5.2.28 is vulnerable to symbolic link attacks, allowi
alsa-utils 1.0.19 and later versions allows local users to overwrite arbitrary files via a symlink attack via the /usr/b
Pacemaker before 1.1.6 configure script creates temporary files insecurely
pithos before 0.3.5 allows overwrite of arbitrary files via symlinks.
foomatic-rip filter, all versions, used insecurely creates temporary files for storage of PostScript data by rendering t
foomatic-rip filter v4.0.12 and prior used insecurely creates temporary files for storage of PostScript data by renderin
python-rply before 0.7.4 insecurely creates temporary files.
An issue was discovered in Eracent EDA, EPA, EPM, EUA, FLW, and SUM Agent through 10.2.26. The agent executable, when in
Dell Command Update versions prior to 3.1 contain an Arbitrary File Deletion Vulnerability. A local authenticated malici
Dell Command Update versions prior to 3.1 contain an Arbitrary File Deletion Vulnerability. A local authenticated malici
Perl module Data::UUID from CPAN version 1.219 vulnerable to symlink attacks
A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. T
A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. T
Path traversal using symlink in npm harp module versions <= 0.29.0.
A flaw was found in Mercurial before 4.9. It was possible to use symlinks and subrepositories to defeat Mercurial's path
deepin-clone before 1.1.3 uses a fixed path /tmp/repo.iso in the BootDoctor::fix() function to download an ISO file, and
mailscanner before 4.79.11-2.1 might allow local users to overwrite arbitrary files via a symlink attack on certain temp
In tesseract 2.03 and 2.04, an attacker can rewrite an arbitrary user file by guessing the PID and creating a link to th
In Avast Antivirus before 19.4, a local administrator can trick the product into renaming arbitrary files by replacing t
On BIG-IP versions 15.0.0-15.0.1, 14.1.0.2-14.1.2.2, 14.0.0.5-14.0.1, 13.1.1.5-13.1.3.1, 12.1.4.1-12.1.5, 11.6.4-11.6.5,
Supportutils, before version 3.1-5.7.1, wrote data to static file /tmp/supp_log, allowing local attackers to overwrite f
In supportutils, before version 3.1-5.7.1 and if pacemaker is installed on the system, an unprivileged user could have o
In yast2-multipath before version 4.1.1 a static temporary filename allows local attackers to overwrite files on systems
In browser editing in Atlassian Bitbucket Server from version 4.13.0 before 5.4.8 (the fixed version for 4.13.0 through
During the spawning of a malicious Passenger-managed application, SpawningKit in Phusion Passenger 5.3.x before 5.3.2 al
rubyzip gem rubyzip version 1.2.1 and earlier contains a Directory Traversal vulnerability in Zip::File component that c
In Kubernetes versions 1.3.x, 1.4.x, 1.5.x, 1.6.x and prior to versions 1.7.14, 1.8.9 and 1.9.4 containers using subpath
A flaw was found in RPC request using gfs3_symlink_req in glusterfs server which allows symlink destinations to point to
Frequently Asked Questions
What is CWE-59?
CWE-59 (CWE-59) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-59?
There are 1,879 CVE records associated with CWE-59 in our database. Of these, 45 are critical severity, 691 are high severity, and 425 are medium severity.
How can I protect against CWE-59 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-59 using AI-powered security agents.
Detect CWE-59 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-59 vulnerabilities across your infrastructure.
Get Started