6.2
CVE-2011-1056
- EPSS 0.28%
- Veröffentlicht 21.02.2011 21:00:00
- Zuletzt bearbeitet 16.06.2026 23:28:37
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The installer for Metasploit Framework 3.5.1, when running on Windows, uses weak inherited permissions for the Metasploit installation directory, which allows local users to gain privileges by replacing critical files with a Trojan horse.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Metasploit ≫ Metasploit Framework Version3.5.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.28% | 0.191 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.2 | 1.9 | 10 |
AV:L/AC:H/Au:N/C:C/I:C/A:C
|
http://blog.metasploit.com/2011/02/metasploit-framework-352-released.html
http://osvdb.org/70857
http://secunia.com/advisories/43166
http://www.vupen.com/english/advisories/2011/0371