Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-59 (在文件访问前对链接解析不恰当(链接跟随)) — Vulnerability Class 418

418 vulnerabilities classified as CWE-59 (在文件访问前对链接解析不恰当(链接跟随)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-34283 NETGEAR RAX30 USB Share Link Following Information Disclosure Vulnerability — RAX30 4.6 -2024-05-03
CVE-2023-32179 VIPRE Antivirus Plus FPQuarTransfer Link Following Local Privilege Escalation Vulnerability — Antivirus Plus 7.8 -2024-05-03
CVE-2023-32178 VIPRE Antivirus Plus TelFileTransfer Link Following Local Privilege Escalation Vulnerability — Antivirus Plus 7.8 -2024-05-03
CVE-2023-32175 VIPRE Antivirus Plus Link Following Local Privilege Escalation Vulnerability — Antivirus Plus 7.8 -2024-05-03
CVE-2023-27347 G DATA Total Security Link Following Local Privilege Escalation Vulnerability — Total Security 7.8 -2024-05-03
CVE-2024-23459 Multiple Arbitrary Creates/Overwrites by link following — Client Connector 7.1 High2024-05-02
CVE-2023-41971 Windows ZCC Upgrade DoS And Privilege Escalation Through RPC Control — Client Connector 5.3 Medium2024-05-02
CVE-2024-29989 Azure Monitor Agent Elevation of Privilege Vulnerability — Azure Monitor 8.4 High2024-04-09
CVE-2024-28907 Microsoft Brokering File System Elevation of Privilege Vulnerability — Windows Server 2022, 23H2 Edition (Server Core installation) 7.8 High2024-04-09
CVE-2024-26216 Windows File Server Resource Management Service Elevation of Privilege Vulnerability — Windows Server 2019 7.3 High2024-04-09
CVE-2024-21447 Windows Authentication Elevation of Privilege Vulnerability — Windows Server 2022 7.8 High2024-04-09
CVE-2024-26158 Microsoft Install Service Elevation of Privilege Vulnerability — Windows 10 Version 1809 7.8 High2024-04-09
CVE-2024-29188 Malicious directory junction can cause WiX RemoveFoldersEx to possibly delete elevated files — issues 7.8 High2024-03-24
CVE-2024-28916 Xbox Gaming Services Elevation of Privilege Vulnerability — Xbox Gaming Services 8.8 High2024-03-20
CVE-2024-1753 Buildah: full container escape at build time 8.6 High2024-03-18
CVE-2024-21432 Windows Update Stack Elevation of Privilege Vulnerability — Windows 10 Version 1809 7.0 High2024-03-12
CVE-2024-26199 Microsoft Office Elevation of Privilege Vulnerability — Microsoft 365 Apps for Enterprise 7.8 High2024-03-12
CVE-2024-0068 HYPR 安全漏洞 — Workforce Access 5.5 Medium2024-02-29
CVE-2024-21397 Microsoft Azure File Sync Elevation of Privilege Vulnerability — Azure File Sync 5.3 Medium2024-02-13
CVE-2024-21329 Azure Connected Machine Agent Elevation of Privilege Vulnerability — Azure Connected Machine Agent 7.3 High2024-02-13
CVE-2024-1329 Nomad Vulnerable to Arbitrary Write Through Symlink Attack — Nomad 7.7 High2024-02-08
CVE-2023-7216 Cpio: extraction allows symlinks which enables remote command execution — Red Hat Enterprise Linux 6 5.3 Medium2024-02-05
CVE-2023-6336 HYPR 后置链接漏洞 — Workforce Access 7.2 High2024-01-16
CVE-2023-6335 HYPR 后置链接漏洞 — Workforce Access 6.4 Medium2024-01-16
CVE-2023-42137 PAX Technology Android based POS 后置链接漏洞 — POS terminals 7.8 High2024-01-15
CVE-2023-31003 IBM Security Access Manager Container privilege escalation — Security Verify Access Appliance 8.4 High2024-01-11
CVE-2024-20656 Visual Studio Elevation of Privilege Vulnerability — Microsoft Visual Studio 2017 version 15.9 (includes 15.0 - 15.8) 7.8 High2024-01-09
CVE-2024-0206 Trellix Anti-Malware Engine 后置链接漏洞 — Anti-Malware Engine 7.1 High2024-01-09
CVE-2023-35624 Azure Connected Machine Agent Elevation of Privilege Vulnerability — Azure Connected Machine Agent 7.3 High2023-12-12
CVE-2023-35633 Windows Kernel Elevation of Privilege Vulnerability — Windows 10 Version 1507 7.8 High2023-12-12

Vulnerabilities classified as CWE-59 (在文件访问前对链接解析不恰当(链接跟随)) represent 418 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.