CVE-2017-5236: RAPID7 Appspider Pro

High severity, CVSS 7.8. EPSS: 0.9% chance of exploitation in the next 30 days.

Editions of Rapid7 AppSpider Pro installers prior to version 6.14.060 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer.

Affected products

  • RAPID7 Appspider Pro: up to and including 6.14.059

Published 2017-05-03. Last modified 2026-06-17.