The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2015-1817: Improper Restriction of Operations within the Bounds of a Memory Buffer9.8 CriticalN/A0%Aug 18, 2017
CVE-2015-3616: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A1%Aug 11, 2017
CVE-2015-3615: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A0%Aug 11, 2017
CVE-2015-3614: Exposure of Sensitive Information to an Unauthorized Actor7.5 HighN/A0%Aug 11, 2017
CVE-2015-3156: Improper Link Resolution Before File Access5.5 MediumN/A0%Aug 11, 2017
CVE-2015-1783: Improper Restriction of Operations within the Bounds of a Memory Buffer7.5 HighN/A1%Aug 11, 2017
CVE-2015-7894: Improper Restriction of Operations within the Bounds of a Memory Buffer8.8 HighN/A5%Aug 9, 2017
CVE-2015-6816: Improper Authentication9.8 CriticalN/A2%Aug 9, 2017
CVE-2015-6498: Undefined Security Weakness7.5 HighN/A1%Aug 9, 2017
CVE-2015-3277: Exposure of Sensitive Information to an Unauthorized Actor7.5 HighN/A0%Aug 9, 2017
CVE-2015-2687: Improper Access Control4.7 MediumN/A0%Aug 9, 2017
CVE-2015-2674: Improper Certificate Validation5.9 MediumN/A0%Aug 9, 2017
CVE-2015-2313: Uncontrolled Resource Consumption7.5 HighN/A1%Aug 9, 2017
CVE-2015-2312: Uncontrolled Resource Consumption7.5 HighN/A1%Aug 9, 2017
CVE-2015-2311: Integer Underflow (Wrap or Wraparound)9.8 CriticalN/A1%Aug 9, 2017
CVE-2015-2310: Integer Overflow or Wraparound9.1 CriticalN/A0%Aug 9, 2017
CVE-2015-2291: Improper Input Validation7.8 HighN/A9%Aug 9, 2017
CVE-2015-1820: Session Fixation9.8 CriticalN/A4%Aug 9, 2017
CVE-2015-0786: Improper Restriction of Operations within the Bounds of a Memory Buffer9.8 CriticalN/A25%Aug 9, 2017
CVE-2015-0785: Exposure of Sensitive Information to an Unauthorized Actor7.5 HighN/A2%Aug 9, 2017
CVE-2015-0784: Exposure of Sensitive Information to an Unauthorized Actor7.5 HighN/A4%Aug 9, 2017
CVE-2015-0783: Exposure of Sensitive Information to an Unauthorized Actor6.5 MediumN/A1%Aug 9, 2017
CVE-2015-0782: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A4%Aug 9, 2017
CVE-2015-0781: Improper Limitation of a Pathname to a Restricted Directory9.8 CriticalN/A6%Aug 9, 2017
CVE-2015-0780: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A4%Aug 9, 2017
1426-1450 of 8780