It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function
It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function
It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function
It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function
OpenVPN Connect installer for macOS version 3.2.6 and older may corrupt system critical files it should not have access
A UNIX Symbolic Link (Symlink) Following vulnerability in python-HyperKitty of openSUSE Leap 15.2, Factory allows local
A vulnerability in the Secure FTP (SFTP) of Cisco StarOS for Cisco ASR 5000 Series Routers could allow an authenticated,
Absolute Path Traversal vulnerability in FileStreaming in QSAN Storage Manager allows remote authenticated attackers acc
Absolute Path Traversal vulnerability in FileviewDoc in QSAN Storage Manager allows remote authenticated attackers acces
A vulnerability in the Cisco IOS XE SD-WAN Software CLI could allow an authenticated, local attacker to overwrite arbitr
It was discovered that the process_report() function in data/whoopsie-upload-all allowed arbitrary file writes via symli
A UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of kopano-spamd of openSUSE Leap 15.1, openSUSE
A UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of syslog-ng of SUSE Linux Enterprise Debuginfo
The Kubernetes kubectl cp command in versions 1.1-1.12, and versions prior to 1.13.11, 1.14.7, and 1.15.4 allows a combi
Versions of the npm CLI prior to 6.13.3 are vulnerable to an Arbitrary File Write. It is possible for packages to create
The kubectl cp command allows copying files between containers and the user machine. To copy files from a container, Kub
The kubectl cp command allows copying files between containers and the user machine. To copy files from a container, Kub
A race condition in the postgresql init script could be used by attackers able to access the postgresql account to escal
Frequently Asked Questions
What is CWE-61?
CWE-61 (CWE-61) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-61?
There are 168 CVE records associated with CWE-61 in our database. Of these, 12 are critical severity, 70 are high severity, and 66 are medium severity.
How can I protect against CWE-61 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-61 using AI-powered security agents.
Detect CWE-61 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-61 vulnerabilities across your infrastructure.
Get Started