The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2020-28610: Improper Validation of Array Index8.8 HighN/A2%Apr 18, 2022
CVE-2020-28609: Improper Validation of Array Index8.8 HighN/A2%Apr 18, 2022
CVE-2020-28608: Improper Validation of Array Index8.8 HighN/A2%Apr 18, 2022
CVE-2020-28607: Improper Validation of Array Index8.8 HighN/A2%Apr 18, 2022
CVE-2020-28606: Improper Validation of Array Index8.8 HighN/A2%Apr 18, 2022
CVE-2020-28605: Improper Validation of Array Index8.8 HighN/A2%Apr 18, 2022
CVE-2020-28604: Improper Validation of Array Index8.8 HighN/A2%Apr 18, 2022
CVE-2020-28603: Improper Validation of Array Index8.8 HighN/A2%Apr 18, 2022
CVE-2020-28602: Improper Validation of Array Index8.8 HighN/A2%Apr 18, 2022
CVE-2020-25167: Incorrect Authorization4.9 MediumN/A1%Apr 18, 2022
CVE-2020-25163: Improper Neutralization of Input During Web Page Generation7.7 HighN/A1%Apr 18, 2022
CVE-2020-6099: Integer Overflow to Buffer Overflow7.8 HighN/A1%Apr 18, 2022
CVE-2020-13590: Improper Neutralization of Special Elements used in an SQL Command7.2 HighN/A1%Apr 18, 2022
CVE-2020-13567: Improper Neutralization of Special Elements used in an SQL Command9.8 CriticalN/A2%Apr 18, 2022
CVE-2020-13495: Improper Restriction of Operations within the Bounds of a Memory Buffer5.5 MediumN/A1%Apr 18, 2022
CVE-2020-25164: Use of a One-Way Hash without a Salt6.5 MediumN/A1%Apr 14, 2022
CVE-2020-25168: Use of Hard-coded Credentials3.3 LowN/A0%Apr 14, 2022
CVE-2020-25166: Improper Verification of Cryptographic Signature7.6 HighN/A0%Apr 14, 2022
CVE-2020-25154: URL Redirection to Untrusted Site5.4 MediumN/A1%Apr 14, 2022
CVE-2020-25162: Improper Neutralization of Data within XPath Expressions7.5 HighN/A2%Apr 14, 2022
CVE-2020-25158: Improper Neutralization of Input During Web Page Generation7.6 HighN/A1%Apr 14, 2022
CVE-2020-25160: Improper Access Control6.8 MediumN/A0%Apr 14, 2022
CVE-2020-25152: Session Fixation6.5 MediumN/A1%Apr 14, 2022
CVE-2020-16238: Improper Privilege Management6.7 MediumN/A0%Apr 14, 2022
CVE-2020-25156: Active Debug Code7.2 HighN/A1%Apr 14, 2022
1801-1825 of 21077