Fallos del tipo CWE-61

144 resultados
CVE-2025-66431HIGHWebPros Plesk before 18.0.73.5 and 18.0.74 before 18.0.74.2 on Linux allows remote authenticated users to execute arbitrary code as root viaEPSS 0.2%CVE-2024-1933HIGHImproper symlink resolution in TeamViewer Remote client for macOSEPSS 0.2%CVE-2024-34015LOWSensitive information disclosure during file browsing due to improper symbolic link handling. The following products are affected: Acronis BEPSS 0.2%CVE-2025-14693HIGHUgreen DH2100+ USB symlinkEPSS 0.2%CVE-2025-59825MEDIUMastral-tokio-tar has a path traversal in tar extractionEPSS 0.2%CVE-2026-23968MEDIUMCopier safe template has arbitrary filesystem read access via symlinks when _preserve_symlinks: falseEPSS 0.2%CVE-2026-20694MEDIUMThis issue was addressed with improved handling of symlinks. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Sequoia 15.7.4, macOS SeEPSS 0.2%CVE-2024-34014MEDIUMArbitrary file overwrite during recovery due to improper symbolic link handling. The following products are affected: Acronis Backup plugin EPSS 0.2%CVE-2026-1386MEDIUMArbitrary Host File Overwrite via Symlink in Firecracker JailerEPSS 0.2%CVE-2026-39860CRITICALNix sandbox escape: file write via symlink at FOD `.tmp` copy destinationEPSS 0.2%CVE-2024-39578MEDIUMDell PowerScale OneFS versions 8.2.2.x through 9.8.0.1 contains a UNIX symbolic link (symlink) following vulnerability. A local high privileEPSS 0.2%CVE-2023-20092MEDIUMCisco TelePresence Collaboration Endpoint and RoomOS Software Arbitrary File Overwrite VulnerabilityEPSS 0.2%CVE-2023-20091MEDIUMCisco TelePresence Collaboration Endpoint and RoomOS Software Arbitrary File Overwrite VulnerabilityEPSS 0.2%CVE-2023-20093MEDIUMCisco TelePresence Collaboration Endpoint and RoomOS Software Arbitrary File Overwrite VulnerabilityEPSS 0.2%CVE-2024-25952MEDIUMDell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability. A local high privilEPSS 0.2%CVE-2024-25953MEDIUMDell PowerScale OneFS versions 9.4.0.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability. A local high privilEPSS 0.2%CVE-2025-65105MEDIUMApptainer ineffective application of selinux and apparmor --security optionsEPSS 0.2%CVE-2024-47480HIGHDell Inventory Collector Client, versions prior to 12.7.0, contains an Improper Link Resolution Before File Access vulnerability. A low-privEPSS 0.2%CVE-2025-62724MEDIUMOpen OnDemand allowlist bypass using symlinks in directory downloads (TOCTOU)EPSS 0.2%CVE-2025-24832MEDIUMArbitrary file overwrite during home directory recovery due to improper symbolic link handling. The following products are affected: AcronisEPSS 0.2%