Skip to main content

CVE-2005-0587

6.5
MEDIUMCVSS v3.1 Base Score
1.42%
LOW RiskEPSS (69th percentile)

Firefox before 1.0.1 and Mozilla before 1.7.6 allows remote malicious web sites to overwrite arbitrary files by tricking the user into downloading a .LNK (link) file twice, which overwrites the file that was referenced in the first .LNK file.

Published: 3/25/2005
Modified: 6/16/2026
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

6.5MEDIUM

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

CVSS v2 Score

2.6

AV:N/AC:H/Au:N/C:N/I:P/A:N

EPSS Score (Exploitation Probability)

1.42%LOW Exploitation Risk
69th percentile

This vulnerability has a 1.42% probability of being exploited in the next 30 days, ranking higher than 69% of all scored CVEs.

CWE Classification

Related Vulnerabilities

Same Weakness Type(CWE-59)

CVE-2026-54230HIGH 7

A symlink following vulnerability was found in the ABRT post-create event handler scripts in libreport. Event scripts write output files using shell redirections without the O_NOFOLLOW flag. If the target file is replaced with a symlink, the shell process running as root follows the symlink and writes content to the symlink target, allowing arbitrary file overwrites on the system.

6/13/2026
CVE-2026-44275MEDIUM 6.3

Dell/Alienware Purchased Apps, versions prior to 1.1.32.0, contain an Improper Link Resolution Before File Access ('Link Following') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Arbitrary File Write

6/9/2026
CVE-2026-41091HIGH 7.8

Improper link resolution before file access ('link following') in Microsoft Defender allows an authorized attacker to elevate privileges locally.

5/20/2026
CVE-2021-47949HIGH 8.8

CyberPanel 2.1 contains a command execution vulnerability that allows authenticated attackers to read arbitrary files and execute remote code by exploiting symlink attacks through the filemanager controller endpoint. Attackers can manipulate the completeStartingPath parameter in POST requests to /filemanager/controller to create symbolic links, read sensitive files like database credentials, and execute arbitrary shell commands through the /websites/fetchFolderDetails endpoint.

5/10/2026
CVE-2025-60710HIGH 7.8

Improper link resolution before file access ('link following') in Host Process for Windows Tasks allows an authorized attacker to elevate privileges locally.

11/11/2025

Similar SeverityMEDIUM