CWE-59
1,606 CVEs • Abstraction: Base • Likelihood of Exploit: Medium
Improper Link Resolution Before File Access ('Link Following')
The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.
CVEs (1,606)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 1Azure Network Watcher Agent Jun 17, 2026 Sep 10, 2024 N/A· v4 7.1 HIGH· v3 N/A· v2 Azure Network Watcher VM Agent Elevation of Privilege Vulnerability |
Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.1 contains a UNIX symbolic link (symlink) following vulnerability. A local high privileged attacker could potentially exploit this vulnerability, leading to denial of...Show more |
1Dell 346Alienware M15 R6 Firmware Alienware M15 R7 FirmwareAlienware M16 R1 Firmware+343 moreJun 17, 2026 Aug 28, 2024 N/A· v4 7.3 HIGH· v3 N/A· v2 Dell Dock Firmware and Dell Client Platform contain an Improper Link Resolution vulnerability during installation resulting in arbitrary folder deletion, which could lead to Privilege Escalation or Denial of Service. |
VIPRE Advanced Security PMAgent Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of VIPRE Advanced Security. An attacker...Show more |
1Microsoft 1Azure Connected Machine Agent Jun 17, 2026 Aug 13, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Azure Connected Machine Agent Elevation of Privilege Vulnerability |
Microsoft OfficePlus Elevation of Privilege Vulnerability |
Comodo Internet Security Pro cmdagent Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Comodo Internet Security Pro. A...Show more |
Comodo Internet Security Pro cmdagent Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Comodo Internet Security Pro. A...Show more |
Comodo Internet Security Pro cmdagent Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Comodo Internet Security Pro. A...Show more |
Comodo Firewall Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Comodo Firewall. An attacker must first obtain the ab...Show more |
In snapd versions prior to 2.62, snapd failed to properly check the destination of symbolic links when extracting a snap. The snap format is a squashfs file-system image and so can contain symbolic links and other file...Show more |
1Microsoft 3.net .net FrameworkVisual Studio 2022Jun 17, 2026 Jul 9, 2024 N/A· v4 7.3 HIGH· v3 N/A· v2 .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability |
1Microsoft 13Windows 10 1507 Windows 10 1607Windows 10 1809+10 moreJun 17, 2026 Jul 9, 2024 N/A· v4 7.0 HIGH· v3 N/A· v2 Windows Image Acquisition Elevation of Privilege Vulnerability |
1Microsoft 13Windows 10 1507 Windows 10 1607Windows 10 1809+10 moreJun 17, 2026 Jul 9, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Microsoft Windows Server Backup Elevation of Privilege Vulnerability |
1Microsoft 1Azure Network Watcher Agent Jun 17, 2026 Jul 9, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Azure Network Watcher VM Extension Elevation of Privilege Vulnerability |
Poly Plantronics Hub Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Poly Plantronics Hub. An attacker must first obt...Show more |
A vulnerability was found in GNU Nano that allows a possible privilege escalation through an insecure temporary file. If Nano is killed while editing, a file it saves to an emergency file with the permissions of the runn...Show more |
Azure Monitor Agent Elevation of Privilege Vulnerability |
Microsoft Azure File Sync Elevation of Privilege Vulnerability |
1Microsoft 3365 Apps OfficeOffice Long Term Servicing ChannelJul 20, 2026 Jun 11, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Microsoft Office Remote Code Execution Vulnerability |