VYPR

Appspider Pro

Sign in to watch

by Rapid7

CVEs (3)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2017-5236Hig0.517.80.00May 3, 2017Editions of Rapid7 AppSpider Pro installers prior to version 6.14.060 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer.
CVE-2017-5233Hig0.517.80.00Mar 2, 2017Rapid7 AppSpider Pro installers prior to version 6.14.053 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer.
CVE-2017-5240Hig0.497.50.00May 3, 2017Editions of Rapid7 AppSpider Pro prior to version 6.14.060 contain a heap-based buffer overflow in the FLAnalyzer.exe component. A malicious or malformed Flash source file can cause a denial of service condition when parsed by this component, causing the application to crash.