The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2015-7472: Undefined Security Weakness7.2 HighN/A0%Feb 15, 2016
CVE-2015-8531: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Feb 15, 2016
CVE-2015-8796: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A3%Feb 15, 2016
CVE-2015-5010: Undefined Security Weakness7.5 HighN/A0%Feb 15, 2016
CVE-2015-4956: Improper Neutralization of Special Elements used in an OS Command7.4 HighN/A0%Feb 15, 2016
CVE-2015-8795: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A3%Feb 15, 2016
CVE-2015-7398: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Feb 15, 2016
CVE-2015-4991: Exposure of Sensitive Information to an Unauthorized Actor4.0 MediumN/A0%Feb 15, 2016
CVE-2015-5012: Undefined Security Weakness7.5 HighN/A0%Feb 15, 2016
CVE-2015-5042: Improper Input Validation7.5 HighN/A1%Feb 15, 2016
CVE-2015-5050: Cross-Site Request Forgery (CSRF)8.8 HighN/A0%Feb 15, 2016
CVE-2015-3197: Exposure of Sensitive Information to an Unauthorized Actor5.9 MediumN/A22%Feb 15, 2016
CVE-2015-8631: Missing Release of Resource after Effective Lifetime6.5 MediumN/A3%Feb 13, 2016
CVE-2015-8630: Undefined Security Weakness7.5 HighN/A3%Feb 13, 2016
CVE-2015-8629: Out-of-bounds Read5.3 MediumN/A2%Feb 13, 2016
CVE-2015-7675: Exposure of Sensitive Information to an Unauthorized Actor6.5 MediumN/A0%Feb 10, 2016
CVE-2015-7677: Exposure of Sensitive Information to an Unauthorized Actor4.3 MediumN/A0%Feb 10, 2016
CVE-2015-7680: Exposure of Sensitive Information to an Unauthorized Actor5.3 MediumN/A0%Feb 10, 2016
CVE-2015-7681: Undefined Security Weakness9.8 CriticalN/AN/AFeb 10, 2016
CVE-2015-7679: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Feb 10, 2016
CVE-2015-7678: Cross-Site Request Forgery (CSRF)8.8 HighN/A0%Feb 10, 2016
CVE-2015-3251: Exposure of Sensitive Information to an Unauthorized Actor4.9 MediumN/A0%Feb 8, 2016
CVE-2015-8361: Improper Access Control9.1 CriticalN/A1%Feb 8, 2016
CVE-2015-8360: Improper Input Validation9.8 CriticalN/A1%Feb 8, 2016
CVE-2015-3252: Undefined Security Weakness9.8 CriticalN/A2%Feb 8, 2016
2826-2850 of 8780