Rapid7 AppSpider Pro
cpe:2.3:a:rapid7:appspider_pro:*:*:*:*:*:*:*
- < 7.5.021
A project name validation vulnerability exists in Rapid7 AppSpider Pro versions prior to 7.5.021. This vulnerability allows an attacker to modify the project name in the configuration file to duplicate an existing name. The issue arises from inadequate validation of project name uniqueness when names are edited outside the application.
Exploitation of this vulnerability could lead to project name conflicts, potentially causing confusion or errors in project management within the application.
Users can upgrade to Rapid7 AppSpider Pro version 7.5.021 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.