CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102055  CVE-2017-5235  Candidate  Rapid7 Metasploit Pro installers prior to version 4.13.0-2017022101 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer.  Assigned (20170109)  None (candidate not yet proposed)    View
102054  CVE-2017-5234  Candidate  Rapid7 Insight Collector installers prior to version 1.0.16 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer.  Assigned (20170109)  None (candidate not yet proposed)    View
102053  CVE-2017-5233  Candidate  Rapid7 AppSpider Pro installers prior to version 6.14.053 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer.  Assigned (20170109)  None (candidate not yet proposed)    View
102052  CVE-2017-5232  Candidate  All editions of Rapid7 Nexpose installers prior to version 6.4.24 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer.  Assigned (20170109)  None (candidate not yet proposed)    View
102051  CVE-2017-5231  Candidate  All editions of Rapid7 Metasploit prior to version 4.13.0-2017020701 contain a directory traversal vulnerability in the Meterpreter stdapi CommandDispatcher.cmd_download() function. By using a specially-crafted build of Meterpreter, it is possible to write to an arbitrary directory on the Metasploit console with the permissions of the running Metasploit instance.  Assigned (20170109)  None (candidate not yet proposed)    View

Page 533 of 20943, showing 5 records out of 104715 total, starting on record 2661, ending on 2665

Actions