Vulnerabilities (CVE)

Filtered by vendor Rapid7 Subscribe
Filtered by product Insightconnect Traceroute
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-8666 2 Linux, Rapid7 2 Linux Kernel, Insightconnect Traceroute 2026-06-29 N/A 7.7 HIGH
OS Command Injection vulnerability in the traceroute action of Rapid7 InsightConnect Traceroute Plugin on Linux allows remote attackers to execute arbitrary OS commands via the host, port, max_ttl, count, or time_out request parameters due to insufficient input validation when constructing shell commands.