Description
Missing authorization check in the upload_azure, upload_sftp, and upload_smb VQL plugins allows an authenticated analyst-role user can initiate attacker-controlled outbound network connections from the Velociraptor server, bypassing the NETWORK ACL permission boundary. This enables internal network reconnaissance via port oracle and potential data exfiltration to external endpoints.
Published: 2026-08-11
Score: 4.1 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

Missing authorization checks in the upload_azure, upload_sftp, and upload_smb VQL plugins let an authenticated analyst‑role user trigger outbound connections from the Velociraptor server, bypassing the NETWORK ACL boundary. This flaw can be leveraged for internal network reconnaissance, such as port oracle scans, and may allow data exfiltration to external destinations. The weakness is a missing permission check (CWE‑863) and is reflected in a CVSS score of 4.1, indicating moderate severity.

Affected Systems

Rapid7 Velociraptor; the issue affects the upload_azure, upload_sftp and upload_smb plugins, with no specific product version listed. Users operating these plugins under an analyst role are at risk.

Risk and Exploitability

The vulnerability is exploitable only by users with an authenticated analyst role, so it requires legitimate credentials. The CVSS score of 4.1 places it in the moderate severity range, and the EPSS score is not available, but the fact that it is not in KEV suggests limited published exploits. The risk is primarily the ability to bypass the intended network access controls and conduct reconnaissance or exfiltrate data from the internal network.

Generated by OpenCVE AI on August 11, 2026 at 07:25 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update Velociraptor to the latest version that includes the fix for missing authorization checks in the upload_azure, upload_sftp, and upload_smb VQL plugins.
  • Restrict analyst‑role users from executing VQL upload plugins that initiate outbound network connections or remove the NETWORK ACL permission from those roles to enforce least privilege.
  • Deploy network monitoring and alerting to detect unexpected outbound connections from the Velociraptor server, and audit logs to identify reconnaissance or exfiltration activity.

Generated by OpenCVE AI on August 11, 2026 at 07:25 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 11 Aug 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 11 Aug 2026 07:45:00 +0000

Type Values Removed Values Added
First Time appeared Rapid7
Rapid7 velociraptor
Vendors & Products Rapid7
Rapid7 velociraptor

Tue, 11 Aug 2026 06:00:00 +0000

Type Values Removed Values Added
Description Missing authorization check in the upload_azure, upload_sftp, and upload_smb VQL plugins allows an authenticated analyst-role user can initiate attacker-controlled outbound network connections from the Velociraptor server, bypassing the NETWORK ACL permission boundary. This enables internal network reconnaissance via port oracle and potential data exfiltration to external endpoints.
Title Velociraptor NETWORK ACL bypass via upload_azure / upload_sftp / upload_smb VQL plugins
Weaknesses CWE-863
References
Metrics cvssV3_1

{'score': 4.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:N/A:N'}


Subscriptions

Rapid7 Velociraptor
cve-icon MITRE

Status: PUBLISHED

Assigner: rapid7

Published:

Updated: 2026-08-11T14:22:11.191Z

Reserved: 2026-07-30T04:46:15.496Z

Link: CVE-2026-18348

cve-icon Vulnrichment

Updated: 2026-08-11T14:22:05.624Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-08-11T06:17:13.287

Modified: 2026-08-28T21:17:10.720

Link: CVE-2026-18348

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-11T07:30:03Z

Weaknesses