The Rapid7 Exploit Database is an archive of Metasploit modules for publicly known exploits, 0days, remote exploits, shellcode, and more for researches and penetration testers to review. 3,000 plus modules are all available with relevant links to other technical documentation and source code. All of the modules included in the Exploit Database are also included in the Metasploit framework and utilized by our penetration testing tool, Metasploit Pro.

Unitrends Enterprise Backup bpserverd Privilege Escalation Exploit

Disclosed: March 14, 2018

It was discovered that the Unitrends bpserverd proprietary protocol, as exposed via xinetd, has an issue in which its authentication can be bypassed. A remote attacker could use this issue to execute arbitrary commands with root privilege on the target system. This is very similar to exploits/linux/misc/ueb9_bpserverd ho...

Flexense HTTP Server Denial Of Service Exploit

Disclosed: March 09, 2018

This module triggers a Denial of Service vulnerability in the Flexense HTTP server. Vulnerability caused by a user mode write access memory violation and can be triggered with rapidly sending variety of HTTP requests with long HTTP header values. Multiple Flexense applications that are using Flexense HTTP server 10.6.24 ...

HTTP SickRage Password Leak Exploit

Disclosed: March 08, 2018

SickRage < v2018-09-03 allows an attacker to view a user's saved Github credentials in HTTP responses unless the user has set login information for SickRage. By default, SickRage does not require login information for the installation.

ManageEngine Applications Manager Remote Code Execution Exploit

Disclosed: March 07, 2018

This module exploits command injection vulnerability in the ManageEngine Application Manager product. An unauthenticated user can execute a operating system command under the context of privileged user. Publicly accessible testCredential.do endpoint takes multiple user inputs and validates supplied credentials by accessi...

ClipBucket beats_uploader Unauthenticated Arbitrary File Upload Exploit

Disclosed: March 03, 2018

This module exploits a vulnerability found in ClipBucket versions before 4.0.0 (Release 4902). A malicious file can be uploaded using an unauthenticated arbitrary file upload vulnerability. It is possible for an attacker to upload a malicious script to issue operating system commands. This issue is caused by improper sess...

Memcached Stats Amplification Scanner Exploit

Disclosed: February 27, 2018

This module can be used to discover Memcached servers which expose the unrestricted UDP port 11211. A basic "stats" request is executed to check if an amplification attack is possible against a third party.

Atlassian Jira Authenticated Upload Code Execution Exploit

Disclosed: February 22, 2018

This module can be used to execute a payload on Atlassian Jira via the Universal Plugin Manager(UPM). The module requires valid login credentials to an account that has access to the plugin manager. The payload is uploaded as a JAR archive containing a servlet using a POST request against the UPM component. The ch...

Eclipse Equinoxe OSGi Console Command Execution Exploit

Disclosed: February 13, 2018

Exploit Eclipse Equinoxe OSGi (Open Service Gateway initiative) console 'fork' command to execute arbitrary commands on the remote system..

Nanopool Claymore Dual Miner APIs RCE Exploit

Disclosed: February 09, 2018

This module takes advantage of miner remote manager APIs to exploit an RCE vulnerability.

Exodus Wallet (ElectronJS Framework) remote Code Execution Exploit

Disclosed: January 25, 2018

This module exploits a Remote Code Execution vulnerability in Exodus Wallet, a vulnerability in the ElectronJS Framework protocol handler can be used to get arbitrary command execution if the user clicks on a specially crafted URL.