The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2020-19950: Improper Neutralization of Input During Web Page Generation4.8 MediumN/A1%Sep 23, 2021
CVE-2020-19949: Improper Neutralization of Input During Web Page Generation4.8 MediumN/A1%Sep 23, 2021
CVE-2020-24327: Server-Side Request Forgery (SSRF)5.3 MediumN/A1%Sep 23, 2021
CVE-2020-4941: Generation of Error Message Containing Sensitive Information4.3 MediumN/A1%Sep 23, 2021
CVE-2020-4809: Insecure Storage of Sensitive Information3.3 LowN/A0%Sep 23, 2021
CVE-2020-4805: Insecure Storage of Sensitive Information3.3 LowN/A0%Sep 23, 2021
CVE-2020-4803: Insecure Storage of Sensitive Information3.3 LowN/A0%Sep 23, 2021
CVE-2020-4690: Use of Hard-coded Credentials9.8 CriticalN/A1%Sep 23, 2021
CVE-2020-23481: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Sep 22, 2021
CVE-2020-23478: Incorrect Comparison7.5 HighN/A1%Sep 22, 2021
CVE-2020-23469: Undefined Security Weakness7.5 HighN/A1%Sep 22, 2021
CVE-2020-23273: Out-of-bounds Write5.5 MediumN/A1%Sep 21, 2021
CVE-2020-23269: Out-of-bounds Write5.5 MediumN/A1%Sep 21, 2021
CVE-2020-23266: Out-of-bounds Write5.5 MediumN/A1%Sep 21, 2021
CVE-2020-23267: Out-of-bounds Write7.1 HighN/A1%Sep 21, 2021
CVE-2020-35541: Undefined Security Weakness9.8 CriticalN/AN/ASep 21, 2021
CVE-2020-35540: Undefined Security Weakness9.8 CriticalN/AN/ASep 21, 2021
CVE-2020-19554: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A1%Sep 21, 2021
CVE-2020-19553: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A1%Sep 21, 2021
CVE-2020-19551: Incorrect Authorization8.8 HighN/A2%Sep 21, 2021
CVE-2020-26301: Improper Neutralization of Special Elements used in an OS Command7.5 HighN/A4%Sep 20, 2021
CVE-2020-16630: Incorrect Authorization6.8 MediumN/A1%Sep 20, 2021
CVE-2020-19915: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A1%Sep 20, 2021
CVE-2020-8561: Unintended Proxy or Intermediary4.1 MediumN/A2%Sep 20, 2021
CVE-2020-21468: Undefined Security Weakness7.5 HighN/A1%Sep 20, 2021
2776-2800 of 21077