The following CVEs have been noted.
Please upgrade to the current release.
Velociraptor CSV Formula Injection in Export Pipeline
Velociraptor collect_client() Permissions Bypass
Velociraptor Hunt Deletion With Insufficient Permission Check
Velociraptor DoS triggered by Divide by Zero panic
Velociraptor VQL injection during notebook restore from backup.
Velociraptor Required Permissions bypass by using client monitoring queries.
Analyst overwrites live built-in artifacts through verify()
Velociraptor authenticated identity-spoofing vulnerability
Velociraptor incorrect Org deletion permissions check
Velociraptor STACK Type Download Path Bypasses Denied Prefix Check
Velociraptor directory traversal via the NewNotebook API
Velociraptor OIDC Authenticator susceptible to email spoofing
Velociraptor server crash via the SetPassword API
Velociraptor VFSGetBuffer API path deny list bypass
Velociraptor query plugin allows impersonation in other orgs
Velociraptor NETWORK ACL bypass via upload_azure / upload_sftp / upload_smb VQL plugins
Velociraptor Multiple Crashes in NTFS Parser when applied to invalid NTFS Volumes
Velociraptor Stored XSS in URL column types
A YAML injection vulnerability in the Windows.Collectors.Remapping artifact allows an attacker who supplies a crafted collection ZIP to execute arbitrary VQL on the analyst’s machine.
An authorization bypass in the GetUserRoles API endpoint in Velocidex Velociraptor allows any authenticated low-privilege user to retrieve the complete ACL policy (roles and permissions) for any user across all organizations by supplying targeted Name and Org parameters via a network request.
A parser bug in the EVTX files exists for versions before 0.76.5 allowing a local attacker to cause a Denial of Service (DoS) via a process crash by providing a specially crafted .evtx file.
A resource exhaustion vulnerability was identified in the Velociraptor server’s agent control channel, which may be exploited by a rogue client to crash the server.
A cross organization authorization bypass was identified in Velociraptor’s HTTP API filestore access layer.
Velociraptor normally is only allowed to write in the datastore. However, under some situations it is possible for a rogue client to write files outside the datastore.
Velociraptor 0.77.2 release fixed a number of CVEs.
Velociraptor normally requires high permissions to launch dangerous artifacts. The Admin.Client.UpdateClientConfig is an artifact used to update the client’s configuration. This artifact did not enforce an additional required permission allowing users with COLLECT_CLIENT permissions to collect it from endpoints and update the configuration (leading to take over).
Velociraptor normally allows agents to run arbitrary commands via
the execve() plugin. This option can be blocked by configuring the
prevent_execve configuration option.
By modifying Velociraptor’s files, local users can subvert the binary and cause the Velociraptor service to execute arbitrary code as the SYSTEM user, or to replace the Velociraptor binary completely.
Rapid7 Velociraptor versions prior to 0.7.0-4 suffer from a reflected cross site scripting vulnerability. This vulnerability allows attackers to inject JS into the error path, potentially leading to unauthorized execution of scripts within a user’s web browser. This issue affects Velociraptor: before 0.7.0-4. Patches are also available for version 0.6.9 (0.6.9-1)
Due to insufficient validation in the PE and OLE parsers in Rapid7’s Velociraptor versions earlier than 0.6.8 allows attacker to crash Velociraptor during parsing of maliciously malformed files. This issue affects Velociraptor: before 0.6.8.
Improper Privilege Management vulnerability in Rapid7 Velociraptor in the copy() function. This issue affects Velociraptor: before 0.6.7-5.
Velociraptor did not properly sanitize the client id parameter to the CreateCollection API allowing a directory traversal in where the collection task could be written. This issue affects Velociraptor: before 0.6.7-5.
Velociraptor versions prior to 0.76.2 contain an improper input validation vulnerability in the client monitoring message handler that may lead to remote code execution on the Velociraptor server.
Velociraptor versions prior to 0.76.3 contain a vulnerability in the query plugin which allows access to all orgs with the user’s current ACL token.
Please consider subscribing to our Security Advisories RSS feed to receive timely notifications.