Security Advisory

CVE-2017-5235

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-03-02 20:00:00
Last updated 2024-08-05 14:55:35
Assigner rapid7
State PUBLISHED

Description

Rapid7 Metasploit Pro installers prior to version 4.13.0-2017022101 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer.