The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2015-7539: Insufficient Verification of Data Authenticity7.5 HighN/A1%Feb 3, 2016
CVE-2015-8265: Improper Input Validation7.5 HighN/A1%Feb 1, 2016
CVE-2015-8781: Out-of-bounds Write6.5 MediumN/A2%Feb 1, 2016
CVE-2015-8782: Out-of-bounds Write6.5 MediumN/A2%Feb 1, 2016
CVE-2015-8783: Out-of-bounds Read6.5 MediumN/A1%Feb 1, 2016
CVE-2015-7923: Undefined Security Weakness9.0 CriticalN/A0%Jan 30, 2016
CVE-2015-8772: Undefined Security Weakness9.1 CriticalN/A0%Jan 29, 2016
CVE-2015-8773: Improper Restriction of Operations within the Bounds of a Memory Buffer7.5 HighN/A0%Jan 29, 2016
CVE-2015-7521: Improper Authentication8.3 HighN/A0%Jan 29, 2016
CVE-2015-8793: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Jan 29, 2016
CVE-2015-8794: Improper Limitation of a Pathname to a Restricted Directory6.5 MediumN/A0%Jan 29, 2016
CVE-2015-8770: Improper Limitation of a Pathname to a Restricted Directory7.5 HighN/A28%Jan 29, 2016
CVE-2015-8789: Undefined Security Weakness9.6 CriticalN/A0%Jan 29, 2016
CVE-2015-8790: Exposure of Sensitive Information to an Unauthorized Actor4.3 MediumN/A1%Jan 29, 2016
CVE-2015-8791: Exposure of Sensitive Information to an Unauthorized Actor4.3 MediumN/A0%Jan 29, 2016
CVE-2015-8792: Improper Restriction of Operations within the Bounds of a Memory Buffer5.3 MediumN/A0%Jan 29, 2016
CVE-2015-7464: Undefined Security Weakness7.5 HighN/A1%Jan 29, 2016
CVE-2015-6421: Undefined Security Weakness7.5 HighN/A1%Jan 27, 2016
CVE-2015-6319: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A1%Jan 27, 2016
CVE-2015-8618: Exposure of Sensitive Information to an Unauthorized Actor7.5 HighN/A1%Jan 27, 2016
CVE-2015-7488: Exposure of Sensitive Information to an Unauthorized Actor5.9 MediumN/A0%Jan 27, 2016
CVE-2015-7439: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Jan 27, 2016
CVE-2015-7487: Exposure of Sensitive Information to an Unauthorized Actor4.1 MediumN/A0%Jan 27, 2016
CVE-2015-7974: Improper Authentication7.7 HighN/A7%Jan 26, 2016
CVE-2015-8379: Cross-Site Request Forgery (CSRF)8.8 HighN/A0%Jan 26, 2016
2876-2900 of 8780