CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
102055 | CVE-2017-5235 | Candidate | Rapid7 Metasploit Pro installers prior to version 4.13.0-2017022101 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer. | Assigned (20170109) | None (candidate not yet proposed) | View | |
102054 | CVE-2017-5234 | Candidate | Rapid7 Insight Collector installers prior to version 1.0.16 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer. | Assigned (20170109) | None (candidate not yet proposed) | View | |
102053 | CVE-2017-5233 | Candidate | Rapid7 AppSpider Pro installers prior to version 6.14.053 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer. | Assigned (20170109) | None (candidate not yet proposed) | View | |
102052 | CVE-2017-5232 | Candidate | All editions of Rapid7 Nexpose installers prior to version 6.4.24 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer. | Assigned (20170109) | None (candidate not yet proposed) | View | |
102051 | CVE-2017-5231 | Candidate | All editions of Rapid7 Metasploit prior to version 4.13.0-2017020701 contain a directory traversal vulnerability in the Meterpreter stdapi CommandDispatcher.cmd_download() function. By using a specially-crafted build of Meterpreter, it is possible to write to an arbitrary directory on the Metasploit console with the permissions of the running Metasploit instance. | Assigned (20170109) | None (candidate not yet proposed) | View |
Page 533 of 20943, showing 5 records out of 104715 total, starting on record 2661, ending on 2665