CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102049  CVE-2017-5229  Candidate  All editions of Rapid7 Metasploit prior to version 4.13.0-2017020701 contain a directory traversal vulnerability in the Meterpreter extapi Clipboard.parse_dump() function. By using a specially-crafted build of Meterpreter, it is possible to write to an arbitrary directory on the Metasploit console with the permissions of the running Metasploit instance.  Assigned (20170109)  None (candidate not yet proposed)    View
102050  CVE-2017-5230  Candidate  The Java keystore in all versions and editions of Rapid7 Nexpose is encrypted with a static password of "r@p1d7k3y5t0r3" which is not modifiable by the user. The keystore provides storage for saved scan credentials in an otherwise secure location on disk.  Assigned (20170109)  None (candidate not yet proposed)    View
102051  CVE-2017-5231  Candidate  All editions of Rapid7 Metasploit prior to version 4.13.0-2017020701 contain a directory traversal vulnerability in the Meterpreter stdapi CommandDispatcher.cmd_download() function. By using a specially-crafted build of Meterpreter, it is possible to write to an arbitrary directory on the Metasploit console with the permissions of the running Metasploit instance.  Assigned (20170109)  None (candidate not yet proposed)    View
102052  CVE-2017-5232  Candidate  All editions of Rapid7 Nexpose installers prior to version 6.4.24 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer.  Assigned (20170109)  None (candidate not yet proposed)    View
102053  CVE-2017-5233  Candidate  Rapid7 AppSpider Pro installers prior to version 6.14.053 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer.  Assigned (20170109)  None (candidate not yet proposed)    View

Page 1160 of 20943, showing 5 records out of 104715 total, starting on record 5796, ending on 5800

Actions