Metasploit Wrap-Up 05/15/2026

2026-05-15T19:23:50Zdfa963099fbfa53314de1b7f5ee69103a021be3d406d26f12c74ed47ec3a6362
authentication-bypassciscometasploitmodeloRATnetwork-controllerpalo-altopatch-tuesdaypath-traversalpersistencephishingremote-code-executionsd-wanvulnerability-roundupwindows-netlogon

What happened

Rapid7 roundup covering new Metasploit modules and multiple high-impact vulnerabilities and incidents. Highlights include a Vim-plugin persistence demo; Marvell QConvergeConsole path traversal (CVE-2025-6793); GestioIP arbitrary upload/backdoor (CVE-2024-48760); a Dolibarr PHP injection bypass (CVE-2023-30253); a Palo Alto PAN-OS signature verification authentication bypass when CAS is enabled (CVE-2026-0265, rated High); a critical authentication-bypass in Cisco Catalyst SD‑WAN Controller allowing a remote unauthenticated actor to become an authenticated peer (CVE-2026-20182, CVSS 10.0); a 사례

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
rapid7_blog
Record identifier
dfa963099fbfa53314de1b7f5ee69103a021be3d406d26f12c74ed47ec3a6362
Enrichment time
2026-05-15T19:23:50Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Metasploit Wrap-Up 05/15/2026 · Baitaphish