CVE-2020-7354 Information
Description
Cross-site Scripting (XSS) vulnerability in the ‘host’ field of a discovered scan asset in Rapid7 Metasploit Pro allows an attacker with a specially-crafted network service of a scan target to store an XSS sequence in the Metasploit Pro console which will trigger when the operator views the record of that scanned host in the Metasploit Pro interface. This issue affects Rapid7 Metasploit Pro version 4.17.1-20200427 and prior versions and is fixed in Metasploit Pro version 4.17.1-20200514. See also CVE-2020-7355 which describes a similar issue but involving the generated ’notes’ field of a discovered scan asset.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
Reference
https://avalz.it/research/metasploit-pro-xss-to-rce/ https://help.rapid7.com/metasploit/release-notes/archive/2020/05/20200514
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
REQUIRED
Confidentiality Impact
UNCHANGED
Integrity Impact
LOW
Availability Impact
LOW
Base Score
NONE
Base Severity
5.4
Share on: