The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2015-3613: Improper Privilege Management9.8 CriticalN/A2%Feb 4, 2020
CVE-2015-3612: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Feb 4, 2020
CVE-2015-3611: Improper Neutralization of Special Elements used in an OS Command8.8 HighN/A7%Feb 4, 2020
CVE-2015-6815: Loop with Unreachable Exit Condition3.5 LowN/A2%Jan 31, 2020
CVE-2015-0949: Improper Privilege Management7.8 HighN/A0%Jan 30, 2020
CVE-2015-8851: Insufficient Entropy7.5 HighN/A0%Jan 30, 2020
CVE-2015-5483: Cross-Site Request Forgery (CSRF)8.8 HighN/A0%Jan 28, 2020
CVE-2015-8011: Buffer Copy without Checking Size of Input9.8 CriticalN/A4%Jan 28, 2020
CVE-2015-8012: Reachable Assertion7.5 HighN/A1%Jan 28, 2020
CVE-2015-7851: Improper Limitation of a Pathname to a Restricted Directory6.5 MediumN/A1%Jan 28, 2020
CVE-2015-2249: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Jan 27, 2020
CVE-2015-0241: Buffer Copy without Checking Size of Input8.8 HighN/A7%Jan 27, 2020
CVE-2015-0242: Out-of-bounds Write8.8 HighN/A3%Jan 27, 2020
CVE-2015-0243: Buffer Copy without Checking Size of Input8.8 HighN/A7%Jan 27, 2020
CVE-2015-0244: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A1%Jan 27, 2020
CVE-2015-0294: Improper Certificate Validation7.5 HighN/A1%Jan 27, 2020
CVE-2015-3154: Improper Neutralization of Special Elements in Output Used by a Downstream Component6.1 MediumN/A0%Jan 27, 2020
CVE-2015-4709: Undefined Security Weakness9.8 CriticalN/AN/AJan 27, 2020
CVE-2015-1202: Undefined Security WeaknessN/AN/AN/AJan 24, 2020
CVE-2015-1203: Undefined Security WeaknessN/AN/AN/AJan 24, 2020
CVE-2015-9541: Improper Restriction of Recursive Entity References in DTDs7.5 HighN/A1%Jan 24, 2020
CVE-2015-2688: Improper Handling of Exceptional Conditions7.5 HighN/A1%Jan 24, 2020
CVE-2015-2689: Improper Input Validation7.5 HighN/A1%Jan 24, 2020
CVE-2015-2929: Undefined Security Weakness7.5 HighN/A0%Jan 24, 2020
CVE-2015-2928: Undefined Security Weakness7.5 HighN/A1%Jan 24, 2020
351-375 of 8780