Medium severity5.5NVD Advisory· Published Jul 29, 2022· Updated Jun 17, 2026
CVE-2022-35631
CVE-2022-35631
Description
On MacOS and Linux, it may be possible to perform a symlink attack by replacing this predictable file name with a symlink to another file and have the Velociraptor client overwrite the other file. This issue was resolved in Velociraptor 0.6.5-2.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:rapid7:velociraptor:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:rapid7:velociraptor:*:*:*:*:*:*:*:*range: <0.6.5-2
- (no CPE)range: 0.6.5-2
- Range: <0.6.5-2
Patches
Vulnerability mechanics
References
1- www.rapid7.com/blog/post/2022/07/26/cve-2022-35629-35632-velociraptor-multiple-vulnerabilities-fixed/nvdMitigationPatchVendor Advisory
News mentions
0No linked articles in our index yet.