EIP-2026-102980
PRE-CVEReptile Rootkit - reptile_cmd Privilege Escalation (Metasploit)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-102980. PoCs published by Metasploit.
AI-analyzed exploit summary This Metasploit module exploits the Reptile Rootkit's `reptile_cmd` backdoor to escalate privileges to root by executing arbitrary commands. It checks for the presence of the rootkit, uploads a payload, and executes it with root privileges.
Description
Reptile Rootkit - reptile_cmd Privilege Escalation (Metasploit)
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Metasploit · rubylocallinux
https://www.exploit-db.com/exploits/47804
This Metasploit module exploits the Reptile Rootkit's `reptile_cmd` backdoor to escalate privileges to root by executing arbitrary commands. It checks for the presence of the rootkit, uploads a payload, and executes it with root privileges.
Classification
Working Poc 100%
Attack Type
Lpe
Complexity
Trivial
Reliability
Reliable
Target:
Reptile Rootkit (2019-03-04 master branch)
No auth needed
Prerequisites:
Presence of Reptile Rootkit with `reptile_cmd` executable · Write access to a directory (default: /tmp)
MITRE ATT&CK
devstral-2 · analyzed Feb 18, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026