CVE-2017-5232: High severity Rapid7 Nexpose vulnerability
All editions of Rapid7 Nexpose installers prior to version 6.4.24 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Rapid7 Nexpose installerto a version that resolves this vulnerability.Fixed in 6.4.24 - Compensating control
Ensure the installer is executed from a directory that does not contain attacker-controlled DLLs (since vulnerable installers may load a malicious DLL from the current working directory).
Event History
Frequently Asked Questions
What is the severity of CVE-2017-5232?
CVE-2017-5232 has been classified as a high severity vulnerability due to the potential impact of malicious DLL injection.
How do I fix CVE-2017-5232?
To mitigate CVE-2017-5232, upgrade to Rapid7 Nexpose version 6.4.24 or later.
What impact does CVE-2017-5232 have on my system?
CVE-2017-5232 can allow an attacker to execute arbitrary code by loading a malicious DLL during the installation process.
Which versions of Rapid7 Nexpose are affected by CVE-2017-5232?
All versions of Rapid7 Nexpose prior to 6.4.24 are affected by CVE-2017-5232.
How can I determine if my system is vulnerable to CVE-2017-5232?
You can determine vulnerability by checking if your Rapid7 Nexpose installation is version 6.4.23 or earlier.