CVE-2020-7384

Rapid7's Metasploit msfvenom framework handles APK files in a way that allows for a malicious user to craft and publish a file that would execute arbitrary commands on a victim's machine.
Configurations

Configuration 1 (hide)

cpe:2.3:a:rapid7:metasploit:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2020-10-29 15:15

Updated : 2024-02-04 21:23


NVD link : CVE-2020-7384

Mitre link : CVE-2020-7384

CVE.ORG link : CVE-2020-7384


JSON object : View

Products Affected

rapid7

  • metasploit
CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')