Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-59 (在文件访问前对链接解析不恰当(链接跟随)) — Vulnerability Class 418

418 vulnerabilities classified as CWE-59 (在文件访问前对链接解析不恰当(链接跟随)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-33148 Microsoft Office Elevation of Privilege Vulnerability — Microsoft Office 2013 Click-to-Run (C2R) 7.8 High2023-07-11
CVE-2023-32012 Windows Container Manager Service Elevation of Privilege Vulnerability — Windows 11 version 21H2 7.8 High2023-06-13
CVE-2023-29351 Windows Group Policy Elevation of Privilege Vulnerability — Windows 10 Version 1809 8.1 High2023-06-13
CVE-2023-24904 Windows Installer Elevation of Privilege Vulnerability — Windows Server 2008 Service Pack 2 7.1 High2023-05-09
CVE-2023-29343 SysInternals Sysmon for Windows Elevation of Privilege Vulnerability — Windows Sysmon 7.8 High2023-05-09
CVE-2023-28141 NTFS Junction — Cloud Agent 6.7 Medium2023-04-18
CVE-2023-28972 Junos OS: NFX Series: 'set system ports console insecure' allows root password recovery — Junos OS 6.8 Medium2023-04-17
CVE-2023-28222 Windows Kernel Elevation of Privilege Vulnerability — Windows 10 Version 1809 7.1 High2023-04-11
CVE-2023-0652 Local Privilege Escalation in Cloudflare WARP Installer (Windows) — WARP 7.0 High2023-04-06
CVE-2023-1412 Local Privilege Escalation Vulnerability in WARP's MSI Installer — WARP 7.0 High2023-04-05
CVE-2023-25940 Dell PowerScale OneFS 后置链接漏洞 — PowerScale OneFS 6.7 Medium2023-04-04
CVE-2023-1314 Local Privilege Escalation Vulnerability in cloudflared's Installer — cloudflared 7.5 High2023-03-21
CVE-2023-24930 Microsoft OneDrive for MacOS Elevation of Privilege Vulnerability — OneDrive for MacOS Installer 7.8 High2023-03-14
CVE-2023-21567 Visual Studio Denial of Service Vulnerability — Microsoft Visual Studio 2022 version 17.2 5.6 Medium2023-02-14
CVE-2023-22490 Git vulnerable to local clone-based data exfiltration with non-local transports — git 5.5 Medium2023-02-14
CVE-2023-21722 .NET Framework Denial of Service Vulnerability — Microsoft .NET Framework 4.8 5.0 Medium2023-02-14
CVE-2023-25168 Symbolic Link (Symlink) Following allowing the deletion of files and directories on the host system in wings — wings 9.6 Critical2023-02-08
CVE-2023-25152 Symbolic Link (Symlink) Following in github.com/pterodactyl/wings — wings 8.4 High2023-02-08
CVE-2022-42292 NVIDIA GeForce Experience 后置链接漏洞 — GeForce Experience 5.0 Medium2023-02-07
CVE-2023-20008 Cisco TelePresence Collaboration Endpoint Software 安全漏洞 — Cisco RoomOS Software 4.4 Medium2023-01-19
CVE-2022-45440 Zyxel AX7501-B0 后置链接漏洞 — AX7501-B0 firmware 4.4 Medium2023-01-17
CVE-2023-21760 Windows Print Spooler Elevation of Privilege Vulnerability — Windows 10 Version 1809 7.1 High2023-01-10
CVE-2023-21725 Windows Malicious Software Removal Tool Elevation of Privilege Vulnerability — Windows Malicious Software Removal Tool 6.3 Medium2023-01-10
CVE-2023-21678 Windows Print Spooler Elevation of Privilege Vulnerability — Windows 10 Version 1809 7.8 High2023-01-10
CVE-2023-21542 Windows Installer Elevation of Privilege Vulnerability — Windows 10 Version 1507 7.0 High2023-01-10
CVE-2022-4563 Freedom of the Press SecureDrop gpg-agent.conf symlink — SecureDrop 7.8 High2022-12-16
CVE-2022-4122 Bulidah 后置链接漏洞 — podman 5.3 -2022-12-08
CVE-2022-31256 sendmail: mail to root privilege escalation via sm-client.pre script — openSUSE Factory 7.7 High2022-10-26
CVE-2022-38699 ASUS Armoury Crate Service - Arbitrary File Creation via Elevation of Privilege Flaw — Armoury Crate Service 5.9 Medium2022-09-28
CVE-2022-0029 Cortex XDR Agent: Improper Link Resolution Vulnerability When Generating a Tech Support File — Cortex XDR Agent 5.5 Medium2022-09-14

Vulnerabilities classified as CWE-59 (在文件访问前对链接解析不恰当(链接跟随)) represent 418 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.