The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2015-3839: NULL Pointer Dereference5.5 MediumN/A1%Aug 7, 2017
CVE-2015-1555: Improper Input Validation9.1 CriticalN/A0%Aug 7, 2017
CVE-2015-1378: Undefined Security Weakness7.5 HighN/A0%Aug 7, 2017
CVE-2015-9107: Undefined Security Weakness9.8 CriticalN/A2%Aug 4, 2017
CVE-2015-8264: Untrusted Search Path7.8 HighN/A1%Aug 2, 2017
CVE-2015-7891: Concurrent Execution using Shared Resource with Improper Synchronization7.0 HighN/A0%Aug 2, 2017
CVE-2015-5203: Double Free5.5 MediumN/A0%Aug 2, 2017
CVE-2015-3642: Exposure of Sensitive Information to an Unauthorized Actor5.9 MediumN/A0%Aug 2, 2017
CVE-2015-2690: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Aug 2, 2017
CVE-2015-2560: Undefined Security Weakness9.8 CriticalN/A20%Aug 2, 2017
CVE-2015-1174: Session Fixation9.8 CriticalN/A1%Aug 2, 2017
CVE-2015-0839: Undefined Security Weakness8.1 HighN/A0%Aug 2, 2017
CVE-2015-0194: Improper Restriction of XML External Entity Reference6.5 MediumN/A0%Aug 2, 2017
CVE-2015-5059: Exposure of Sensitive Information to an Unauthorized Actor5.3 MediumN/A1%Aug 1, 2017
CVE-2015-5191: Concurrent Execution using Shared Resource with Improper Synchronization6.7 MediumN/A0%Jul 28, 2017
CVE-2015-8013: Undefined Security Weakness7.5 HighN/A1%Jul 25, 2017
CVE-2015-6585: Improper Restriction of Operations within the Bounds of a Memory Buffer7.8 HighN/A2%Jul 25, 2017
CVE-2015-5594: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A0%Jul 25, 2017
CVE-2015-5221: Use After Free5.5 MediumN/A0%Jul 25, 2017
CVE-2015-5187: Exposure of Sensitive Information to an Unauthorized Actor6.5 MediumN/A0%Jul 25, 2017
CVE-2015-4463: Unrestricted Upload of File with Dangerous Type6.5 MediumN/A0%Jul 25, 2017
CVE-2015-4462: Unrestricted Upload of File with Dangerous Type6.5 MediumN/A0%Jul 25, 2017
CVE-2015-4035: Improper Input Validation7.8 HighN/A1%Jul 25, 2017
CVE-2015-3278: Improper Input Validation9.8 CriticalN/A0%Jul 25, 2017
CVE-2015-3243: Insertion of Sensitive Information into Log File5.5 MediumN/A0%Jul 25, 2017
1476-1500 of 8780