Metasploit Wrap-Up 04/25/2026
2026-04-26T07:23:45Z•1e7175f3e983ffd9e6f2af430c02caa00790a70b5bee962fde69b93e3a9a4efa
AVideoCVECamaleon-CMSMCP-serverSQL-injectionai-vulnerability-discoverybulk-exportdirectory-traversalexploit-moduleskybermetasploitopenDCIMproject-glasswingransomwarerapid7rustsupply-chainvmware-esxivulnerabilitieswindows
What happened
Rapid7 blog roundup covering multiple security updates and analysis: Metasploit improvements (clearer check method visibility, SMB1/version extraction fixes) and several new modules—notably a Camaleon CMS directory traversal (CVE-2024-46987) auxiliary, an unauthenticated AVideo SQL injection (CVE-2026-28501) module, and an openDCIM SQLi->RCE exploit (CVE-2026-28517). A detailed write-up on Kyber ransomware highlights a dual-platform campaign targeting VMware ESXi datastores and Windows file systems (Rust-based Windows variant with Hyper-V targeting, Tor-based infrastructure, anti-recovery/defe
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- rapid7_blog
- Record identifier
- 1e7175f3e983ffd9e6f2af430c02caa00790a70b5bee962fde69b93e3a9a4efa
- Enrichment time
- 2026-04-26T07:23:45Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.