Rapid7 Metasploit Framework Relative Path Traversal in telpho10_credential_dump module
CVE-2020-7377

8.1HIGH

Key Information:

Vendor

Rapid7

Vendor
CVE Published:
24 August 2020

What is CVE-2020-7377?

The Metasploit Framework module "auxiliary/admin/http/telpho10_credential_dump" module is affected by a relative path traversal vulnerability in the untar method which can be exploited to write arbitrary files to arbitrary locations on the host file system when the module is run on a malicious HTTP server.

Affected Version(s)

Metasploit Framework 4.12.40 < 4.12.40*

Metasploit Framework 6.0.3

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

This issue was reported, and fixed, by bcoles.
.