Directory Traversal Vulnerability in Rapid7 Metasploit
CVE-2017-5229
7.1HIGH
What is CVE-2017-5229?
The directory traversal vulnerability in Rapid7 Metasploit allows attackers using a specially-crafted build of Meterpreter to exploit the Clipboard.parse_dump() function. This exploitation can lead to unauthorized writing in arbitrary directories on the Metasploit console, gaining access with the privileges of the Metasploit instance. Users of versions prior to 4.13.0-2017020701 should take immediate action to mitigate potential risks.
Affected Version(s)
Metasploit All versions prior to version 4.13.0-2017020701