CVE-2023-38646

CRITICAL EXPLOITED IN THE WILD NUCLEI

Metabase <0.46.6.1-1.46.6.1 - RCE

Title source: llm

Description

Metabase open source before 0.46.6.1 and Metabase Enterprise before 1.46.6.1 allow attackers to execute arbitrary commands on the server, at the server's privilege level. Authentication is not required for exploitation. The other fixed versions are 0.45.4.1, 1.45.4.1, 0.44.7.1, 1.44.7.1, 0.43.7.2, and 1.43.7.2.

Exploits (43)

nomisec WORKING POC 55 stars
by Boogipop · remote
https://github.com/Boogipop/MetabaseRceTools
nomisec WORKING POC 27 stars
by robotmikhro · remote
https://github.com/robotmikhro/CVE-2023-38646
nomisec WORKING POC 20 stars
by securezeron · remote
https://github.com/securezeron/CVE-2023-38646
nomisec WORKING POC 15 stars
by 0xrobiul · remote
https://github.com/0xrobiul/CVE-2023-38646
nomisec WORKING POC 12 stars
by shamo0 · remote
https://github.com/shamo0/CVE-2023-38646-PoC
nomisec WORKING POC 10 stars
by Pyr0sec · remote
https://github.com/Pyr0sec/CVE-2023-38646
nomisec WORKING POC 8 stars
by kh4sh3i · remote
https://github.com/kh4sh3i/CVE-2023-38646
nomisec WORKING POC 6 stars
by Pumpkin-Garden · remote
https://github.com/Pumpkin-Garden/POC_Metabase_CVE-2023-38646
nomisec WORKING POC 3 stars
by nickswink · remote
https://github.com/nickswink/CVE-2023-38646
nomisec WORKING POC 3 stars
by Chocapikk · remote
https://github.com/Chocapikk/CVE-2023-38646
nomisec WORKING POC 2 stars
by JayRyz · remote
https://github.com/JayRyz/CVE-2023-38646-PoC-Metabase
nomisec WORKING POC 2 stars
by m3m0o · remote
https://github.com/m3m0o/metabase-pre-auth-rce-poc
nomisec WORKING POC 2 stars
by Red4mber · remote
https://github.com/Red4mber/CVE-2023-38646
nomisec SCANNER 2 stars
by Xuxfff · infoleak
https://github.com/Xuxfff/CVE-2023-38646-Poc
nomisec WORKING POC 1 stars
by UserConnecting · remote
https://github.com/UserConnecting/Exploit-CVE-2023-38646-Metabase
nomisec WORKING POC 1 stars
by 0utl4nder · remote
https://github.com/0utl4nder/Another-Metabase-RCE-CVE-2023-38646
nomisec WORKING POC 1 stars
by alexandre-pecorilla · remote
https://github.com/alexandre-pecorilla/CVE-2023-38646
nomisec WORKING POC 1 stars
by Zenmovie · remote
https://github.com/Zenmovie/CVE-2023-38646
nomisec WORKING POC 1 stars
by fidjiw · remote
https://github.com/fidjiw/CVE-2023-38646-POC
nomisec WORKING POC
by BreezeGalaxy · remote-auth
https://github.com/BreezeGalaxy/CVE-2023-38646
nomisec WORKING POC
by cleanmgr112 · remote
https://github.com/cleanmgr112/cve-2023-38646-poc
nomisec WORKING POC
by birdm4nw · remote
https://github.com/birdm4nw/CVE-2023-38646
nomisec WORKING POC
by junnythemarksman · remote
https://github.com/junnythemarksman/CVE-2023-38646
nomisec WORKING POC
by acesoyeo · poc
https://github.com/acesoyeo/METABASE-RCE-CVE-2023-38646-
nomisec WORKING POC
by Shisones · remote
https://github.com/Shisones/MetabaseRCE_CVE-2023-38646
nomisec WORKING POC
by Ego1stoo · remote
https://github.com/Ego1stoo/CVE-2023-38646
nomisec WORKING POC
by j0yb0y0h · poc
https://github.com/j0yb0y0h/CVE-2023-38646
nomisec WORKING POC
by Mrunalkaran · remote
https://github.com/Mrunalkaran/CVE-2023-38646
nomisec WORKING POC
by AnvithLobo · remote
https://github.com/AnvithLobo/CVE-2023-38646
nomisec WORKING POC
by threatHNTR · remote
https://github.com/threatHNTR/CVE-2023-38646
nomisec WORKING POC
by asepsaepdin · remote
https://github.com/asepsaepdin/CVE-2023-38646
nomisec WORKING POC
by passwa11 · remote
https://github.com/passwa11/CVE-2023-38646
nomisec WORKING POC
by DaniTheHack3r · poc
https://github.com/DaniTheHack3r/CVE-2023-38646
nomisec WORKING POC
by CN016 · remote
https://github.com/CN016/Metabase-H2-CVE-2023-38646-
nomisec WORKING POC
by yxl2001 · remote
https://github.com/yxl2001/CVE-2023-38646
nomisec WORKING POC
by raytheon0x21 · poc
https://github.com/raytheon0x21/CVE-2023-38646
nomisec WORKING POC
by Any3ite · remote
https://github.com/Any3ite/cve-2023-38646-metabase-ReverseShell
vulncheck_xdb WORKING POC
remote
https://github.com/massco99/Analytics-htb-Rce
vulncheck_xdb WORKING POC
infoleak
https://github.com/MzzdToT/HAC_Bored_Writing
metasploit WORKING POC EXCELLENT
by h00die, Maxwell Garrett, Shubham Shah · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/http/metabase_setup_token_rce.rb

Nuclei Templates (1)

Metabase < 0.46.6.1 - Remote Code Execution
CRITICALVERIFIEDby rootxharsh,iamnoooob,pdresearch
Shodan: http.title:"Metabase" || http.title:"metabase"
FOFA: app="Metabase" || title="metabase" || app="metabase"

Scores

CVSS v3 9.8
EPSS 0.9425
EPSS Percentile 99.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

VulnCheck KEV 2023-11-13
InTheWild.io 2024-05-29
Status published
Products (2)
metabase/metabase < 0.43.7.2
metabase/metabase < 1.43.7.2
Published Jul 21, 2023
Tracked Since Feb 18, 2026