The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2015-2002: Incorrect Access of Indexable Resource9.8 CriticalN/A1%Mar 29, 2018
CVE-2015-2003: Incorrect Access of Indexable Resource9.8 CriticalN/A1%Mar 29, 2018
CVE-2015-4953: Inadequate Encryption Strength4.8 MediumN/A0%Mar 29, 2018
CVE-2015-2009: Cross-Site Request Forgery (CSRF)8.8 HighN/A0%Mar 29, 2018
CVE-2015-2001: Incorrect Access of Indexable Resource9.8 CriticalN/A1%Mar 29, 2018
CVE-2015-4952: Undefined Security Weakness8.8 HighN/A1%Mar 29, 2018
CVE-2015-4954: Improper Certificate Validation5.9 MediumN/A0%Mar 27, 2018
CVE-2015-5016: Exposure of Sensitive Information to an Unauthorized Actor4.3 MediumN/A0%Mar 27, 2018
CVE-2015-4987: Improper Authentication6.5 MediumN/A0%Mar 27, 2018
CVE-2015-7424: Exposure of Sensitive Information to an Unauthorized Actor4.3 MediumN/A0%Mar 26, 2018
CVE-2015-7434: Exposure of Sensitive Information to an Unauthorized Actor7.8 HighN/A0%Mar 26, 2018
CVE-2015-5045: Exposure of Sensitive Information to an Unauthorized Actor3.3 LowN/A0%Mar 26, 2018
CVE-2015-7423: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Mar 26, 2018
CVE-2015-7432: Exposure of Sensitive Information to an Unauthorized Actor7.8 HighN/A0%Mar 26, 2018
CVE-2015-7433: Exposure of Sensitive Information to an Unauthorized Actor7.8 HighN/A0%Mar 26, 2018
CVE-2015-7401: Exposure of Sensitive Information to an Unauthorized Actor4.3 MediumN/A0%Mar 26, 2018
CVE-2015-5039: Undefined Security Weakness7.4 HighN/A0%Mar 26, 2018
CVE-2015-9257: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Mar 24, 2018
CVE-2015-7458: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Mar 20, 2018
CVE-2015-7459: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Mar 20, 2018
CVE-2015-7460: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Mar 20, 2018
CVE-2015-7449: Exposure of Sensitive Information to an Unauthorized Actor3.3 LowN/A0%Mar 20, 2018
CVE-2015-7461: Improper Restriction of XML External Entity Reference6.5 MediumN/A0%Mar 20, 2018
CVE-2015-5350: Improper Access Control7.5 HighN/A0%Mar 19, 2018
CVE-2015-7453: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Mar 15, 2018
951-975 of 8780