Metasploit Wrap-Up 04/25/2026

2026-04-26T07:23:45Z1e7175f3e983ffd9e6f2af430c02caa00790a70b5bee962fde69b93e3a9a4efa
AVideoCVECamaleon-CMSMCP-serverSQL-injectionai-vulnerability-discoverybulk-exportdirectory-traversalexploit-moduleskybermetasploitopenDCIMproject-glasswingransomwarerapid7rustsupply-chainvmware-esxivulnerabilitieswindows

What happened

Rapid7 blog roundup covering multiple security updates and analysis: Metasploit improvements (clearer check method visibility, SMB1/version extraction fixes) and several new modules—notably a Camaleon CMS directory traversal (CVE-2024-46987) auxiliary, an unauthenticated AVideo SQL injection (CVE-2026-28501) module, and an openDCIM SQLi->RCE exploit (CVE-2026-28517). A detailed write-up on Kyber ransomware highlights a dual-platform campaign targeting VMware ESXi datastores and Windows file systems (Rust-based Windows variant with Hyper-V targeting, Tor-based infrastructure, anti-recovery/defe

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
rapid7_blog
Record identifier
1e7175f3e983ffd9e6f2af430c02caa00790a70b5bee962fde69b93e3a9a4efa
Enrichment time
2026-04-26T07:23:45Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Metasploit Wrap-Up 04/25/2026 · Baitaphish