The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2024-40723: Stack-based Buffer Overflow4.3 MediumN/A0%Aug 2, 2024
CVE-2024-40722: Stack-based Buffer Overflow4.3 MediumN/A0%Aug 2, 2024
CVE-2024-40721: Improper Input Validation8.8 HighN/A1%Aug 2, 2024
CVE-2024-40720: Improper Input Validation8.8 HighN/A1%Aug 2, 2024
CVE-2024-40719: Inadequate Encryption Strength6.5 MediumN/A0%Aug 2, 2024
CVE-2024-41955: URL Redirection to Untrusted Site5.2 MediumN/A1%Jul 31, 2024
CVE-2024-6978: Improper Input Validation5.6 MediumN/A0%Jul 31, 2024
CVE-2024-6977: Insertion of Sensitive Information into Log File6.5 MediumN/A0%Jul 31, 2024
CVE-2024-6975: Untrusted Search Path8.8 HighN/A0%Jul 31, 2024
CVE-2024-6974: Untrusted Search Path8.8 HighN/A0%Jul 31, 2024
CVE-2024-6973: Improper Input Validation7.5 HighN/A1%Jul 31, 2024
CVE-2024-41726: Improper Limitation of a Pathname to a Restricted Directory7.5 HighN/A1%Jul 29, 2024
CVE-2024-41143: Origin Validation Error7.8 HighN/A0%Jul 29, 2024
CVE-2024-41139: Incorrect Privilege Assignment7.8 HighN/A0%Jul 29, 2024
CVE-2024-42053: Incorrect Default Permissions7.8 HighN/A0%Jul 28, 2024
CVE-2024-42052: Creation of Temporary File With Insecure Permissions7.8 HighN/A0%Jul 28, 2024
CVE-2024-42051: Use of Weak Credentials7.8 HighN/A0%Jul 28, 2024
CVE-2024-42050: Improper Privilege Management7.0 HighN/A0%Jul 28, 2024
CVE-2020-11639: Improper Enforcement of Message Integrity During Transmission in a Communication Channel7.8 HighN/A0%Jul 23, 2024
CVE-2024-6913: Execution with Unnecessary Privileges8.8 High9.3 Critical1%Jul 22, 2024
CVE-2024-6912: Use of Hard-coded Credentials9.8 Critical9.3 Critical1%Jul 22, 2024
CVE-2024-6911: Files or Directories Accessible to External Parties7.5 High8.7 High5%Jul 22, 2024
CVE-2024-37391: Improper Neutralization of Special Elements used in an OS Command7.8 HighN/A0%Jul 22, 2024
CVE-2024-5321: Incorrect Default Permissions6.1 MediumN/A0%Jul 18, 2024
CVE-2024-40644: Insufficient Verification of Data Authenticity6.8 MediumN/A0%Jul 18, 2024
4476-4500 of 16013