The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2013-1331: Buffer Copy without Checking Size of Input7.8 HighN/A80%Jun 12, 2013
CVE-2013-0095: Exposure of Sensitive Information to an Unauthorized Actor4.3 MediumN/A21%Mar 13, 2013
CVE-2013-0077: Improper Control of Generation of Code9.8 CriticalN/A30%Feb 13, 2013
CVE-2012-5672: Undefined Security WeaknessN/AN/A13%Oct 25, 2012
CVE-2012-2524: Improper Restriction of Operations within the Bounds of a Memory BufferN/AN/A20%Aug 15, 2012
CVE-2012-1856: Undefined Security Weakness8.8 HighN/A72%Aug 15, 2012
CVE-2012-1854: Untrusted Search Path7.8 HighN/A21%Jul 10, 2012
CVE-2012-1860: Undefined Security Weakness5.4 MediumN/A13%Jul 10, 2012
CVE-2012-1894: Undefined Security WeaknessN/AN/A2%Jul 10, 2012
CVE-2012-1862: Improper Input Validation7.1 HighN/A11%Jul 10, 2012
CVE-2012-1863: Improper Neutralization of Input During Web Page Generation4.7 MediumN/A23%Jul 10, 2012
CVE-2012-0167: Improper Input Validation8.8 HighN/A66%May 9, 2012
CVE-2012-0158: Improper Control of Generation of Code8.8 HighN/A94%Apr 10, 2012
CVE-2012-0177: Improper Restriction of Operations within the Bounds of a Memory BufferN/AN/A70%Apr 10, 2012
CVE-2012-1438: Undefined Security Weakness5.3 MediumN/A14%Mar 21, 2012
CVE-2012-1437: Undefined Security Weakness4.3 MediumN/A4%Mar 21, 2012
CVE-2012-0145: Improper Neutralization of Input During Web Page Generation4.7 MediumN/A36%Feb 14, 2012
CVE-2012-0144: Improper Neutralization of Input During Web Page Generation4.7 MediumN/A36%Feb 14, 2012
CVE-2012-0013: Undefined Security Weakness9.8 CriticalN/A87%Jan 10, 2012
CVE-2011-1983: Undefined Security Weakness8.8 HighN/A55%Dec 14, 2011
CVE-2011-2010: Undefined Security Weakness8.4 HighN/A1%Dec 14, 2011
CVE-2011-4434: Undefined Security WeaknessN/AN/A0%Nov 11, 2011
CVE-2011-1980: Undefined Security Weakness8.8 HighN/A60%Sep 15, 2011
CVE-2011-1892: Exposure of Sensitive Information to an Unauthorized Actor4.3 MediumN/A62%Sep 15, 2011
CVE-2011-1893: Improper Neutralization of Input During Web Page Generation4.7 MediumN/A59%Sep 15, 2011
1301-1325 of 1558