On MacOS and Linux, it may be possible to perform a symlink attack by replacing this predictable file name with a symlink to another file and have the Velociraptor client overwrite the other file. This issue was resolved in Velociraptor 0.6.5-2.
2022-07-29T17:15:09.627
2024-11-21T07:11:24.490
Modified
CVSSv3.1: 5.5 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | rapid7 | velociraptor | < 0.6.5-2 | Yes |
Operating System | apple | macos | - | No |
Operating System | linux | linux_kernel | - | No |