CVE-2020-7376

Publication date

2020-08-24 19:10:17

Family

rapid7

State

PUBLISHED

Description

The Metasploit Framework module "post/osx/gather/enum_osx module" is affected by a relative path traversal vulnerability in the get_keychains method which can be exploited to write arbitrary files to arbitrary locations on the host filesystem when the module is run on a malicious host.