← Back

CVE-2017-5242

nvd nist
Published: Jan 12, 2023Modified: Apr 8, 2025

JSON object

Loading...
7.7
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:N
Exploitability: 1.3 / Impact: 5.8
Source: NVD

Description

Nexpose and InsightVM virtual appliances downloaded between April 5th, 2017 and May 3rd, 2017 contain identical SSH host keys. Normally, a unique SSH host key should be generated the first time a virtual appliance boots.

Affected (1)

Products: Rapid7: Insightvm
1 product
Insightvm
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 2017-04-05 to 2017-05-03

Timeline

No history available yet.