Unrated severityNVD Advisory· Published Aug 24, 2020· Updated Sep 16, 2024
Rapid7 Metasploit Framework Relative Path Traversal in enum_osx module
CVE-2020-7376
Description
The Metasploit Framework module "post/osx/gather/enum_osx module" is affected by a relative path traversal vulnerability in the get_keychains method which can be exploited to write arbitrary files to arbitrary locations on the host filesystem when the module is run on a malicious host.
Affected products
1- Range: 4.11.7
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- github.com/rapid7/metasploit-framework/issues/14008mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.