Sept. 8, 2023, 6:03 p.m. | Christopher Granleese

Rapid7 Blog blog.rapid7.com

New module content (4)


Roundcube TimeZone Authenticated File Disclosure


Authors: joel, stonepresto, and thomascube

Type: Auxiliary

Pull request: #18286 contributed by cudalac

Path: auxiliary/gather/roundcube_auth_file_read

AttackerKB reference: CVE-2017-16651


Description: This PR adds a module to retrieve an arbitrary file on hosts running Roundcube versions from 1.

authors contributed cve disclosure file joel metasploit metasploit weekly wrapup path reference request roundcube running timezone weekly wrap-up

Azure DevSecOps Cloud Engineer II

@ Prudent Technology | McLean, VA, USA

Security Engineer III - Python, AWS

@ JPMorgan Chase & Co. | Bengaluru, Karnataka, India

SOC Analyst (Threat Hunter)

@ NCS | Singapore, Singapore

Managed Services Information Security Manager

@ NTT DATA | Sydney, Australia

Senior Security Engineer (Remote)

@ Mattermost | United Kingdom

Penetration Tester (Part Time & Remote)

@ TestPros | United States - Remote