Posts tagged Research

Rapid7 Analysis: CVE-2020-12271: Sophos XG Firewall Pre-Auth SQL Injection Vulnerability

Threat Research

Rapid7 Analysis: CVE-2020-12271: Sophos XG Firewall Pre-Auth SQL Injection Vulnerability

Rapid7 Labs's avatar

Rapid7 Labs

Rapid7 Analysis: CVE-2021-3450

Threat Research

Rapid7 Analysis: CVE-2021-3450

Rapid7 Labs's avatar

Rapid7 Labs

Rapid7 Analysis: OpenSSL TLS Server Crash (NULL pointer dereference) — CVE-2021-3449

Threat Research

Rapid7 Analysis: OpenSSL TLS Server Crash (NULL pointer dereference) — CVE-2021-3449

Rapid7 Labs's avatar

Rapid7 Labs

Rapid7 Analysis: K03009991: iControl REST unauthenticated remote command execution vulnerability CVE-2021-22986

Threat Research

Rapid7 Analysis: K03009991: iControl REST unauthenticated remote command execution vulnerability CVE-2021-22986

Rapid7 Labs's avatar

Rapid7 Labs

Introducing the 2020 Vulnerability Intelligence Report: 50 CVEs that Made Headlines in 2020

Exposure Management

Introducing the 2020 Vulnerability Intelligence Report: 50 CVEs that Made Headlines in 2020

Caitlin Condon's avatar

Caitlin Condon

Rapid7 Analysis: CVE-2021-24085

Threat Research

Rapid7 Analysis: CVE-2021-24085

Rapid7 Labs's avatar

Rapid7 Labs

Rapid7 Analysis: VMware vSphere Client Unauth Remote Code Execution Vulnerability — CVE-2021-21972

Threat Research

Rapid7 Analysis: VMware vSphere Client Unauth Remote Code Execution Vulnerability — CVE-2021-21972

Rapid7 Labs's avatar

Rapid7 Labs

Rapid7 Analysis: SolarWinds Orion Platform Unauthenticated RCE (CVE-2021-25274)

Threat Research

Rapid7 Analysis: SolarWinds Orion Platform Unauthenticated RCE (CVE-2021-25274)

Rapid7 Labs's avatar

Rapid7 Labs

SonicWall SNWLID-2021-0001 Zero-Day and SolarWinds’ 2021 CVE Trifecta: What You Need to Know

Threat Research

SonicWall SNWLID-2021-0001 Zero-Day and SolarWinds’ 2021 CVE Trifecta: What You Need to Know

boB Rudis's avatar

boB Rudis

NICER Protocol Deep Dive: Internet Exposure of HTTP and HTTPS

Threat Research

NICER Protocol Deep Dive: Internet Exposure of HTTP and HTTPS

Tod Beardsley's avatar

Tod Beardsley

Rapid7 Analysis: CVE-2021-3007

Threat Research

Rapid7 Analysis: CVE-2021-3007

Rapid7 Labs's avatar

Rapid7 Labs

Rapid7 Analysis: CVE-2020-28188

Threat Research

Rapid7 Analysis: CVE-2020-28188

Rapid7 Labs's avatar

Rapid7 Labs

Rapid7 Analysis: CVE-2020-7961

Threat Research

Rapid7 Analysis: CVE-2020-7961

Rapid7 Labs's avatar

Rapid7 Labs

Rapid7 Analysis: CVE-2021-3156 "Baron Samedit"

Threat Research

Rapid7 Analysis: CVE-2021-3156 "Baron Samedit"

Rapid7 Labs's avatar

Rapid7 Labs

NICER Protocol Deep Dive: Internet Exposure of NTP

Threat Research

NICER Protocol Deep Dive: Internet Exposure of NTP

Tod Beardsley's avatar

Tod Beardsley

Rapid7 Analysis: CVE-2020-17132

Threat Research

Rapid7 Analysis: CVE-2020-17132

Rapid7 Labs's avatar

Rapid7 Labs

NICER Protocol Deep Dive: Internet Exposure of DNS-over-TLS

Threat Research

NICER Protocol Deep Dive: Internet Exposure of DNS-over-TLS

Tod Beardsley's avatar

Tod Beardsley

Rapid7 Analysis: CVE-2020-29583 Zyxel USG Hard-Coded Admin Creds

Threat Research

Rapid7 Analysis: CVE-2020-29583 Zyxel USG Hard-Coded Admin Creds

Rapid7 Labs's avatar

Rapid7 Labs

Rapid7 Analysis: CVE-2020-15505

Threat Research

Rapid7 Analysis: CVE-2020-15505

Rapid7 Labs's avatar

Rapid7 Labs

NICER Protocol Deep Dive: Internet Exposure of DNS

Threat Research

NICER Protocol Deep Dive: Internet Exposure of DNS

Tod Beardsley's avatar

Tod Beardsley

HaXmas Hardware Hacking

Exposure Management

HaXmas Hardware Hacking

Tod Beardsley's avatar

Tod Beardsley