Description
This module exploits an unauthenticated remote code execution vulnerability in the Eclipse Che machine-exec service (CVE-2025-12548). The machine-exec service, exposed on port 3333 within Red Hat OpenShift DevSpaces developer workspace containers, accepts WebSocket connections without authentication.
An attacker can connect to the machine-exec service and execute arbitrary commands via JSON-RPC over WebSocket. This allows lateral movement between workspaces and potential cluster compromise.
The vulnerability affects Red Hat OpenShift DevSpaces environments where the machine-exec service is network-accessible.
Module options
To display the available options, load the module within the Metasploit console and run the commands 'show options' or 'show advanced':
msf > use exploit/linux/http/eclipse/che_machine_exec_rcemsf undefined(che_machine_exec_rce) > show actions ...actions...msf undefined(che_machine_exec_rce) > set ACTION < action-name >msf undefined(che_machine_exec_rce) > show options ...show and set options...msf undefined(che_machine_exec_rce) > runPrioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub