VendorsRapid7nexposeall versions
Vulnerabilities

Rapid7 Nexpose

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

20CVEs
CVE-2023-1699
Rapid7 Nexpose Forced Browsing
Published 2023-03-30 · Modified
9.8EPSS 0.004
CVE-2017-5264
Versions of Nexpose prior to 6.4.66 fail to adequately validate the source of HTTP requests intended for the Automated Actions administrative web application, and are susceptible to a cross-site request forgery (CSRF) attack.
Published 2017-12-14 · Modified
8.81 PoCEPSS 0.027
CVE-2022-0757
Rapid7 Nexpose SQL Injection
Published 2022-03-17 · Modified
8.8EPSS 0.012
CVE-2019-5630
Rapid7 Nexpose/InsightVM Security Console CSRF
Published 2019-07-03 · Modified
8.8EPSS 0.009
CVE-2019-5638
Rapid7 Nexpose Insufficient Session Management
Published 2019-08-21 · Modified
8.7EPSS 0.010
CVE-2017-5243
The default SSH configuration in Rapid7 Nexpose hardware appliances shipped before June 2017 does not specify desired algorithms for key exchange and other important functions. As a result, it falls back to allowing ALL algorithms supported by the relevant version of OpenSSH and makes the installations vulnerable to a range of MITM, downgrade, and decryption attacks.
Published 2017-06-06 · Modified
8.5EPSS 0.005
CVE-2020-7383
SQL Injection in Rapid7 Nexpose
Published 2020-10-14 · Modified
8.1EPSS 0.011
CVE-2017-5232
All editions of Rapid7 Nexpose installers prior to version 6.4.24 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer.
Published 2017-03-02 · Modified
7.8EPSS 0.008
CVE-2020-7381
Code Injection in Rapid7 Nexpose Installer
Published 2020-09-03 · Modified
7.8EPSS 0.007
CVE-2017-5230
The Java keystore in all versions and editions of Rapid7 Nexpose prior to 6.4.50 is encrypted with a static password of 'r@p1d7k3y5t0r3' which is not modifiable by the user. The keystore provides storage for saved scan credentials in an otherwise secure location on disk.
Published 2017-03-02 · Modified
7.2EPSS 0.015
CVE-2012-6493
Cross-site request forgery (CSRF) vulnerability in Rapid7 Nexpose Security Console before 5.5.4 allows remote attackers to hijack the authentication of unspecified victims for requests that delete scan data and sites via a request to data/site/delete.
Published 2014-02-04 · Modified
6.81 PoCEPSS 0.023
CVE-2020-7382
Unquoted Path in Rapid7 Nexpose Installer
Published 2020-09-03 · Modified
6.8EPSS 0.003
CVE-2022-4261
Rapid7 Nexpose Update Validation Issue
Published 2022-12-07 · Modified
6.5EPSS 0.003
CVE-2012-6494
Rapid7 Nexpose before 5.5.4 contains a session hijacking vulnerability which allows remote attackers to capture a user's session and gain unauthorized access.
Published 2020-01-25 · Modified
6.1EPSS 0.012
CVE-2021-3535
Rapid7 Nexpose is vulnerable to a non-persistent cross-site scripting vulnerability affecting the Security Console's Filtered Asset Search feature. A specific search criterion and operator combination in Filtered Asset Search could have allowed a user to pass code through the provided search field. This issue affects version 6.6.80 and prior, and is fixed in 6.6.81. If your Security Console currently falls on or within this affected version range, ensure that you update your Security Console to the latest version.
Published 2021-06-16 · Modified
6.1EPSS 0.006
CVE-2022-0758
Rapid7 Nexpose Reflected XSS
Published 2022-03-17 · Modified
6.1EPSS 0.004
CVE-2021-31868
Rapid7 Nexpose Security Console Ticket Access Authentication Vulnerability
Published 2021-08-19 · Modified
5.5EPSS 0.005
CVE-2016-9757
In the Create Tags page of the Rapid7 Nexpose version 6.4.12 user interface, any authenticated user who has the capability to create tags can inject cross-site scripting (XSS) elements in the tag name field. Once this tag is viewed in the Tag Detail page of the Rapid7 Nexpose 6.4.12 UI by another authenticated user, the script is run in that user's browser context.
Published 2016-12-20 · Modified
5.4EPSS 0.006
CVE-2019-5640
Rapid7 Nexpose Information Disclosure after logout
Published 2021-11-22 · Modified
5.3EPSS 0.005
CVE-2022-3913
Rapid7 Nexpose Certificate Validation Issue
Published 2023-02-01 · Modified
5.3EPSS 0.003