The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2015-8918: Improper Restriction of Operations within the Bounds of a Memory Buffer7.5 HighN/A4%Sep 20, 2016
CVE-2015-8929: Improper Restriction of Operations within the Bounds of a Memory Buffer5.5 MediumN/A2%Sep 20, 2016
CVE-2015-8933: Integer Overflow or Wraparound3.5 LowN/A2%Sep 20, 2016
CVE-2015-8924: Out-of-bounds Read5.5 MediumN/A5%Sep 20, 2016
CVE-2015-8915: Out-of-bounds Read5.5 MediumN/A2%Sep 20, 2016
CVE-2015-8932: Improper Input Validation5.5 MediumN/A2%Sep 20, 2016
CVE-2015-8923: Improper Input Validation6.5 MediumN/A3%Sep 20, 2016
CVE-2015-8922: NULL Pointer Dereference3.5 LowN/A2%Sep 20, 2016
CVE-2015-8934: Out-of-bounds Read5.5 MediumN/A2%Sep 20, 2016
CVE-2015-8919: Improper Restriction of Operations within the Bounds of a Memory Buffer7.5 HighN/A5%Sep 20, 2016
CVE-2015-8920: Out-of-bounds Read5.5 MediumN/A2%Sep 20, 2016
CVE-2015-8916: NULL Pointer Dereference6.5 MediumN/A3%Sep 20, 2016
CVE-2015-8917: NULL Pointer Dereference7.5 HighN/A4%Sep 20, 2016
CVE-2015-8948: Out-of-bounds Read7.5 HighN/A7%Sep 7, 2016
CVE-2015-5721: Improper Control of Generation of Code9.8 CriticalN/A3%Sep 3, 2016
CVE-2015-5720: Improper Neutralization of Input During Web Page Generation6.1 MediumN/A1%Sep 3, 2016
CVE-2015-5719: Undefined Security Weakness9.8 CriticalN/A2%Sep 3, 2016
CVE-2015-5399: Improper Neutralization of Input During Web Page Generation5.4 MediumN/A2%Aug 26, 2016
CVE-2015-8022: Undefined Security Weakness7.5 HighN/A3%Aug 19, 2016
CVE-2015-8949: Use After Free9.8 CriticalN/A5%Aug 19, 2016
CVE-2015-6397: Improper Authentication8.8 HighN/A2%Aug 8, 2016
CVE-2015-6396: Improper Neutralization of Special Elements used in an OS Command7.8 HighN/A2%Aug 8, 2016
CVE-2015-0568: Use After Free7.8 HighN/A1%Aug 7, 2016
CVE-2015-3854: Improper Access Control7.5 HighN/A1%Aug 7, 2016
CVE-2015-0573: NULL Pointer Dereference9.8 CriticalN/A2%Aug 7, 2016
2451-2475 of 8780