The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2015-7342: Improper Neutralization of Special Elements used in an SQL Command7.2 HighN/A0%Mar 9, 2020
CVE-2015-7343: Improper Neutralization of Input During Web Page Generation4.8 MediumN/A0%Mar 9, 2020
CVE-2015-7344: Improper Neutralization of Input During Web Page Generation4.8 MediumN/A0%Mar 9, 2020
CVE-2015-7968: Improper Restriction of XML External Entity Reference4.3 MediumN/A0%Mar 9, 2020
CVE-2015-1583: Cross-Site Request Forgery (CSRF)8.8 HighN/A0%Mar 2, 2020
CVE-2015-3006: Insufficient Entropy6.5 MediumN/A0%Feb 28, 2020
CVE-2015-5361: Inadequate Encryption Strength6.5 MediumN/A0%Feb 28, 2020
CVE-2015-2992: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A2%Feb 27, 2020
CVE-2015-5686: Cross-Site Request Forgery (CSRF)8.8 HighN/A0%Feb 27, 2020
CVE-2015-5201: Missing Authentication for Critical Function7.5 HighN/A0%Feb 25, 2020
CVE-2015-0565: Improper Restriction of Operations within the Bounds of a Memory Buffer10.0 CriticalN/A23%Feb 25, 2020
CVE-2015-9542: Out-of-bounds Write7.5 HighN/A2%Feb 24, 2020
CVE-2015-4410: Improper Input Validation7.5 HighN/A2%Feb 20, 2020
CVE-2015-4411: Uncontrolled Resource Consumption7.5 HighN/A3%Feb 20, 2020
CVE-2015-2923: Improper Input Validation6.5 MediumN/A1%Feb 20, 2020
CVE-2015-7747: Buffer Copy without Checking Size of Input8.8 HighN/A54%Feb 19, 2020
CVE-2015-2104: Undefined Security Weakness9.8 CriticalN/AN/AFeb 19, 2020
CVE-2015-0749: Improper Neutralization of Input During Web Page Generation4.3 MediumN/A0%Feb 19, 2020
CVE-2015-9543: Exposure of Sensitive Information to an Unauthorized Actor3.3 LowN/A0%Feb 19, 2020
CVE-2015-7507: Out-of-bounds Read7.5 HighN/A0%Feb 18, 2020
CVE-2015-7505: Out-of-bounds Write8.8 HighN/A1%Feb 18, 2020
CVE-2015-7567: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A15%Feb 18, 2020
CVE-2015-7506: Out-of-bounds Read6.5 MediumN/A0%Feb 18, 2020
CVE-2015-6970: XML Injection (aka Blind XPath Injection)9.8 CriticalN/A9%Feb 18, 2020
CVE-2015-1425: Improper Input Validation9.8 CriticalN/A0%Feb 18, 2020
301-325 of 8780