This module writes an execution trigger to the target's Bash profile. The execution trigger executes a call back payload whenever th...
This module exploits a template injection vulnerability in the the XWiki Platform. XWiki includes a macro...
This module exploits functionality in Pretalx that export conference schedule as zipped file. The Pretalx...
This module exploits CVE-2023-28458, a limited file write in Pretalx, up to...
This module exploits an unauthenticated remote code execution vulnerability in Remote for Mac 2025.6. When the "Allow...
Credential Harvester in MyPRO Manager <= v1.3 from mySCADA. The product suffers from...
This module attempts to retrieve the Network Access Account(s), if configured, from the SCCM server. ...
This module exploits improper authentication in logs.php endpoint. An unathenticated attacker can request log...
There exists a path traversal vulnerability in the /toolbox-resource endpoint that enables unauthenticated ...
This module adds HTTP Login scanning for SonicWall NSv. It allows scanning both admin and user accounts. Module Options msf > use auxiliary/scan...
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.