vulnerability

Rapid7 Insight Agent: CVE-2017-5252: Insight Agent on Windows is vulnerable to loading malicious libraries placed in its dependency search path

Severity
6
CVSS
(AV:L/AC:L/Au:S/C:C/I:C/A:C)
Published
Oct 6, 2017
Added
Oct 6, 2017
Modified
Feb 18, 2025

Description


Insight Agent on Windows systems searches for local dependencies in several locations, including in directories in the system PATH variable. As this can include arbitrary directories, and the Agent doesn't specify the directories to search, an attacker with local admin access could place a (potentially malicious) DLL in a directory in that path, causing the Agent to load that library.

Solutions

rapid7-insightagent-1_4_68-kb2533623rapid7-insightagent-1_4_68
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.