The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2020-5347: Uncontrolled Resource Consumption5.3 MediumN/A1%Apr 3, 2020
CVE-2020-8143: URL Redirection to Untrusted Site6.1 MediumN/A6%Apr 3, 2020
CVE-2020-8147: Modification of Assumed-Immutable Data (MAID)9.8 CriticalN/A1%Apr 3, 2020
CVE-2020-8142: Incorrect Authorization6.8 MediumN/A0%Apr 3, 2020
CVE-2020-8639: Unrestricted Upload of File with Dangerous Type8.8 HighN/A10%Apr 3, 2020
CVE-2020-8638: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A0%Apr 3, 2020
CVE-2020-8637: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A11%Apr 3, 2020
CVE-2020-6994: ASP.NET Misconfiguration: Missing Custom Error Page9.8 CriticalN/A0%Apr 3, 2020
CVE-2020-10599: Stack-based Buffer Overflow9.8 CriticalN/A0%Apr 3, 2020
CVE-2020-7000: Insecure Storage of Sensitive Information7.5 HighN/A0%Apr 3, 2020
CVE-2020-10601: Inadequate Encryption Strength7.8 HighN/A0%Apr 3, 2020
CVE-2020-7004: Incorrect Default Permissions8.8 HighN/A0%Apr 3, 2020
CVE-2020-7008: Relative Path Traversal7.5 HighN/A0%Apr 3, 2020
CVE-2020-10689: Missing Authorization6.4 MediumN/A0%Apr 3, 2020
CVE-2019-17230: Undefined Security Weakness5.3 MediumN/A8%Apr 3, 2020
CVE-2019-17231: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Apr 3, 2020
CVE-2020-10960: Improper Neutralization of Special Elements in Output Used by a Downstream Component5.3 MediumN/A0%Apr 3, 2020
CVE-2020-11501: Use of Insufficiently Random Values7.4 HighN/A11%Apr 3, 2020
CVE-2020-4273: Undefined Security Weakness7.8 HighN/A0%Apr 3, 2020
CVE-2020-11500: Use of a Broken or Risky Cryptographic Algorithm7.5 HighN/A0%Apr 3, 2020
CVE-2019-18905: Insufficient Verification of Data Authenticity4.8 MediumN/A0%Apr 3, 2020
CVE-2019-18904: Uncontrolled Resource Consumption6.5 MediumN/A1%Apr 3, 2020
CVE-2018-17954: Improper Privilege Management9.3 CriticalN/A0%Apr 3, 2020
CVE-2019-19914: Undefined Security Weakness9.8 CriticalN/AN/AApr 3, 2020
CVE-2020-5283: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)3.1 LowN/A0%Apr 3, 2020
258651-258675 of 580365