CVE-2020-7382
6.8MEDIUMRapid7 Nexpose installer version prior to 6.6.40 contains an Unquoted Search Path which may allow an attacker on the local machine to insert an arbitrary file into the executable path. This issue affe
Published: 9/3/2020Updated: 11/21/2024
Description
Rapid7 Nexpose installer version prior to 6.6.40 contains an Unquoted Search Path which may allow an attacker on the local machine to insert an arbitrary file into the executable path. This issue affects: Rapid7 Nexpose versions prior to 6.6.40.
AI AnalysisPowered by AI
Affected Products
rapid7nexpose
References
- https://help.rapid7.com/insightvm/en-us/release-notes/index.html?pid=6.6.40Release NotesVendor Advisory
- https://help.rapid7.com/insightvm/en-us/release-notes/index.html?pid=6.6.40Release NotesVendor Advisory