EIP-2026-117831
PRE-CVERapid7 nexpose - 'nexposeconsole' Unquoted Service Path
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-117831. PoCs published by Saud Alenazi.
AI-analyzed exploit summary This is a technical writeup detailing an unquoted service path vulnerability in Rapid7 Nexpose. It provides steps to identify the vulnerability and explains the potential for local privilege escalation if an attacker can place malicious executables in the system root path.
Description
Rapid7 nexpose - 'nexposeconsole' Unquoted Service Path
Exploits (1)
exploitdb
WRITEUP
by Saud Alenazi · textlocalwindows
https://www.exploit-db.com/exploits/51941
This is a technical writeup detailing an unquoted service path vulnerability in Rapid7 Nexpose. It provides steps to identify the vulnerability and explains the potential for local privilege escalation if an attacker can place malicious executables in the system root path.
Classification
Writeup 90%
Attack Type
Lpe
Complexity
Moderate
Reliability
Theoretical
Target:
Rapid7 Nexpose 6.6.240
Auth required
Prerequisites:
Local access to the system · Ability to write to the system root path
MITRE ATT&CK
devstral-2 · analyzed Feb 18, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026