VYPR

CWE-59

Improper Link Resolution Before File Access ('Link Following')

BaseDraftLikelihood: Medium

Description

The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-132 · CAPEC-17 · CAPEC-35 · CAPEC-76

CVEs mapped to this weakness (1,754)

page 58 of 88
  • CVE-2024-52542MedDec 17, 2024
    risk 0.29cvss 4.4epss 0.00

    Dell AppSync, version 4.6.0.x, contain a Symbolic Link (Symlink) Following vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to information tampering.

  • CVE-2024-56074MedDec 15, 2024
    risk 0.29cvss 5.5epss 0.00

    gitingest before 9996a06 mishandles symbolic links that point outside of the base directory.

  • CVE-2023-20004MedNov 15, 2024
    risk 0.29cvss 4.4epss 0.00

    Three vulnerabilities in the CLI of Cisco TelePresence CE and RoomOS could allow an authenticated, local attacker to overwrite arbitrary files on the local file system of an affected device. These vulnerabilities are due to improper access controls on files that are on the…

  • CVE-2024-45770MedSep 19, 2024
    risk 0.29cvss 4.4epss 0.00

    A vulnerability was found in Performance Co-Pilot (PCP). This flaw can only be exploited if an attacker has access to a compromised PCP system account. The issue is related to the pmpost tool, which is used to log messages in the system. Under certain conditions, it runs with…

  • CVE-2024-35253MedJun 11, 2024
    risk 0.29cvss 4.4epss 0.01

    Microsoft Azure File Sync Elevation of Privilege Vulnerability

  • CVE-2023-20008MedJan 20, 2023
    risk 0.29cvss 4.4epss 0.00

    A vulnerability in the CLI of Cisco TelePresence CE and RoomOS Software could allow an authenticated, local attacker to overwrite arbitrary files on the local system of an affected device. This vulnerability is due to improper access controls on files that are in the local…

  • CVE-2022-45440MedJan 17, 2023
    risk 0.29cvss 4.4epss 0.00

    A vulnerability exists in the FTP server of the Zyxel AX7501-B0 firmware prior to V5.17(ABPC.3)C0, which processes symbolic links on external storage media. A local authenticated attacker with administrator privileges could abuse this vulnerability to access the root file system…

  • CVE-2022-26456MedSep 6, 2022
    risk 0.29cvss 4.4epss 0.00

    In vow, there is a possible information disclosure due to a symbolic link following. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06545473; Issue ID: ALPS06545473.

  • CVE-2022-26688MedMay 26, 2022
    risk 0.29cvss 4.4epss 0.00

    An issue in the handling of symlinks was addressed with improved validation. This issue is fixed in Security Update 2022-003 Catalina, macOS Monterey 12.3, macOS Big Sur 11.6.5. A malicious app with root privileges may be able to modify the contents of system files.

  • CVE-2022-20103MedMay 3, 2022
    risk 0.29cvss 4.4epss 0.00

    In aee daemon, there is a possible information disclosure due to symbolic link following. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06383944; Issue ID: ALPS06282684.

  • CVE-2020-36241MedFeb 5, 2021
    risk 0.29cvss 5.5epss 0.01

    autoar-extractor.c in GNOME gnome-autoar through 0.2.4, as used by GNOME Shell, Nautilus, and other software, allows Directory Traversal during extraction because it lacks a check of whether a file's parent is a symlink to a directory outside of the intended extraction location.

  • CVE-2020-15401MedJun 30, 2020
    risk 0.29cvss 4.4epss 0.00

    IOBit Malware Fighter Pro 8.0.2.547 allows local users to gain privileges for file deletion by manipulating malicious flagged file locations with an NTFS junction and an Object Manager symbolic link.

  • CVE-2020-3835MedFeb 27, 2020
    risk 0.29cvss 4.4epss 0.00

    A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Catalina 10.15.3. A malicious application may be able to access restricted files.

  • CVE-2014-1938MedNov 21, 2019
    risk 0.29cvss 5.5epss 0.00

    python-rply before 0.7.4 insecurely creates temporary files.

  • CVE-2019-18466MedOct 28, 2019
    risk 0.29cvss 5.5epss 0.01

    An issue was discovered in Podman in libpod before 1.6.0. It resolves a symlink in the host context during a copy operation from the container to the host, because an undesired glob operation occurs. An attacker could create a container image containing particular symlinks that,…

  • CVE-2019-11230MedJul 18, 2019
    risk 0.29cvss 4.4epss 0.01

    In Avast Antivirus before 19.4, a local administrator can trick the product into renaming arbitrary files by replacing the Logs\Update.log file with a symlink. The next time the product attempts to write to the log file, the target of the symlink is renamed. This defect can be…

  • CVE-2014-0243MedJul 19, 2018
    risk 0.29cvss 5.5epss 0.01

    Check_MK through 1.2.5i2p1 allows local users to read arbitrary files via a symlink attack to a file in /var/lib/check_mk_agent/job.

  • CVE-2018-1063MedMar 2, 2018
    risk 0.29cvss 4.4epss 0.00

    Context relabeling of filesystems is vulnerable to symbolic link attack, allowing a local, unprivileged malicious entity to change the SELinux context of an arbitrary file to a context with few restrictions. This only happens when the relabeling process is done, usually when…

  • CVE-2017-15111MedJan 20, 2018
    risk 0.29cvss 5.5epss 0.00

    keycloak-httpd-client-install versions before 0.8 insecurely creates temporary file allowing local attackers to overwrite other files via symbolic link.

  • CVE-2014-1859MedJan 8, 2018
    risk 0.29cvss 5.5epss 0.00

    (1) core/tests/test_memmap.py, (2) core/tests/test_multiarray.py, (3) f2py/f2py2e.py, and (4) lib/tests/test_io.py in NumPy before 1.8.1 allow local users to write to arbitrary files via a symlink attack on a temporary file.