The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2015-3425: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Dec 9, 2019
CVE-2015-1853: Undefined Security Weakness6.5 MediumN/A1%Dec 9, 2019
CVE-2015-0841: Off-by-one Error7.5 HighN/A1%Dec 9, 2019
CVE-2015-7542: Cleartext Transmission of Sensitive Information5.3 MediumN/A0%Dec 3, 2019
CVE-2015-0837: Observable Discrepancy5.9 MediumN/A1%Nov 29, 2019
CVE-2015-2060: Improper Limitation of a Pathname to a Restricted Directory5.3 MediumN/A9%Nov 29, 2019
CVE-2015-1855: Improper Input Validation5.9 MediumN/A3%Nov 29, 2019
CVE-2015-3406: Incorrect Conversion between Numeric Types7.5 HighN/A1%Nov 29, 2019
CVE-2015-9537: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A1%Nov 26, 2019
CVE-2015-9538: Improper Limitation of a Pathname to a Restricted Directory6.5 MediumN/A71%Nov 26, 2019
CVE-2015-9539: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Nov 26, 2019
CVE-2015-4457: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Nov 26, 2019
CVE-2015-6495: Exposure of Sensitive Information to an Unauthorized Actor7.5 HighN/A0%Nov 26, 2019
CVE-2015-7831: Improper Privilege Management8.8 HighN/A0%Nov 26, 2019
CVE-2015-1396: Improper Limitation of a Pathname to a Restricted Directory7.5 HighN/A4%Nov 25, 2019
CVE-2015-7810: Time-of-check Time-of-use (TOCTOU) Race Condition4.7 MediumN/A0%Nov 22, 2019
CVE-2015-1780: Incorrect Authorization6.5 MediumN/A0%Nov 22, 2019
CVE-2015-5694: Loop with Unreachable Exit Condition6.5 MediumN/A1%Nov 22, 2019
CVE-2015-3140: Cross-Site Request Forgery (CSRF)8.8 HighN/A0%Nov 21, 2019
CVE-2015-2793: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A1%Nov 21, 2019
CVE-2015-3166: Improper Restriction of Operations within the Bounds of a Memory Buffer9.8 CriticalN/A2%Nov 20, 2019
CVE-2015-3167: Exposure of Sensitive Information to an Unauthorized Actor7.5 HighN/A3%Nov 20, 2019
CVE-2015-1607: Improper Input Validation5.5 MediumN/A1%Nov 20, 2019
CVE-2015-1606: Use After Free5.5 MediumN/A0%Nov 20, 2019
CVE-2015-7276: Use of Hard-coded Credentials5.9 MediumN/A0%Nov 6, 2019
426-450 of 8780