The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2015-1324: Undefined Security Weakness7.8 HighN/A0%Aug 25, 2017
CVE-2015-8355: Improper Neutralization of Special Elements used in an SQL Command8.8 HighN/A1%Aug 24, 2017
CVE-2015-8352: Improper Limitation of a Pathname to a Restricted Directory9.8 CriticalN/A38%Aug 24, 2017
CVE-2015-4699: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Aug 24, 2017
CVE-2015-8308: Improper Authentication7.8 HighN/A0%Aug 24, 2017
CVE-2015-7896: Improper Restriction of Operations within the Bounds of a Memory Buffer6.5 MediumN/A7%Aug 24, 2017
CVE-2015-7516: NULL Pointer Dereference7.5 HighN/A1%Aug 24, 2017
CVE-2015-7259: Undefined Security Weakness8.8 HighN/A33%Aug 24, 2017
CVE-2015-7258: Undefined Security Weakness8.8 HighN/A33%Aug 24, 2017
CVE-2015-7257: Weak Password Recovery Mechanism for Forgotten Password7.5 HighN/A17%Aug 24, 2017
CVE-2015-5293: Improper Access Control5.9 MediumN/A0%Aug 24, 2017
CVE-2015-5146: Improper Input Validation5.3 MediumN/A2%Aug 24, 2017
CVE-2015-1801: Improper Restriction of Operations within the Bounds of a Memory Buffer9.8 CriticalN/A1%Aug 24, 2017
CVE-2015-1800: Exposure of Sensitive Information to an Unauthorized Actor7.5 HighN/A1%Aug 24, 2017
CVE-2015-5224: Insecure Temporary File9.8 CriticalN/A4%Aug 23, 2017
CVE-2015-6473: Undefined Security Weakness9.8 CriticalN/A3%Aug 22, 2017
CVE-2015-6472: Undefined Security Weakness9.8 CriticalN/A1%Aug 22, 2017
CVE-2015-5258: Cross-Site Request Forgery (CSRF)8.8 HighN/A0%Aug 22, 2017
CVE-2015-3617: Undefined Security Weakness7.8 HighN/A0%Aug 22, 2017
CVE-2015-2857: Improper Neutralization of Special Elements used in a Command9.8 CriticalN/A83%Aug 22, 2017
CVE-2015-9073: NULL Pointer Dereference9.8 CriticalN/A0%Aug 18, 2017
CVE-2015-9072: NULL Pointer Dereference9.8 CriticalN/A0%Aug 18, 2017
CVE-2015-9071: Improper Restriction of Operations within the Bounds of a Memory Buffer9.8 CriticalN/A0%Aug 18, 2017
CVE-2015-9070: Improper Restriction of Operations within the Bounds of a Memory Buffer9.8 CriticalN/A0%Aug 18, 2017
CVE-2015-9069: Improper Input Validation9.8 CriticalN/A0%Aug 18, 2017
1351-1375 of 8780