2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-20067 | HIGH | 7.5 | 8.2% | Nov 1, 2021 | The WP Attachment Export WordPress plugin before 0.2.4 does not have proper access controls, allowing unauthenticated us... |
| CVE-2015-20019 | MEDIUM | 5.4 | 0.9% | Nov 1, 2021 | The Content text slider on post WordPress plugin before 6.9 does not sanitise and escape the Title and Message/Content s... |
| CVE-2015-10001 | MEDIUM | 4.3 | 0.5% | Nov 1, 2021 | The WP-Stats WordPress plugin before 2.52 does not have CSRF check when saving its settings, and did not escape some of ... |
| CVE-2015-7731 | MEDIUM | 5.5 | 0.2% | Aug 9, 2021 | SAP Mobile Platform 3.0 SP05 ClientHub allows attackers to obtain the keystream and other sensitive information via the ... |
| CVE-2015-2074 | HIGH | 7.5 | 3.5% | Aug 9, 2021 | The File Repository Server (FRS) CORBA listener in SAP BussinessObjects Edge 4.0 allows remote attackers to write to arb... |
| CVE-2015-2073 | HIGH | 7.5 | 4.0% | Aug 9, 2021 | The File RepositoRy Server (FRS) CORBA listener in SAP BussinessObjects Edge 4.0 allows remote attackers to read arbitra... |
| CVE-2015-2100 | HIGH | 8.8 | 2.9% | Jul 22, 2021 | Multiple stack-based buffer overflows in WebGate eDVR Manager and Control Center allow remote attackers to execute arbit... |
| CVE-2015-2099 | HIGH | 8.8 | 14.1% | Jul 22, 2021 | Multiple buffer overflows in WebGate Control Center allow remote attackers to execute arbitrary code via unspecified vec... |
| CVE-2015-2098 | HIGH | 8.8 | 14.0% | Jul 22, 2021 | Multiple stack-based buffer overflows in WebGate eDVR Manager allow remote attackers to execute arbitrary code via unspe... |
| CVE-2015-1877 | HIGH | 8.8 | 3.2% | Jun 2, 2021 | The open_generic_xdg_mime function in xdg-open in xdg-utils 1.1.0 rc1 in Debian, when using dash, does not properly hand... |
| CVE-2015-20001 | HIGH | 7.5 | 1.3% | Apr 11, 2021 | In the standard library in Rust before 1.2.0, BinaryHeap is not panic-safe. The binary heap is left in an inconsistent s... |
| CVE-2015-9551 | CRITICAL | 9.8 | 4.2% | Nov 24, 2020 | An issue was discovered on TOTOLINK A850R-V1 through 1.0.1-B20150707.1612 and F1-V2 through 1.1-B20150708.1646 devices. ... |
| CVE-2015-9550 | HIGH | 7.5 | 1.5% | Nov 24, 2020 | An issue was discovered on TOTOLINK A850R-V1 through 1.0.1-B20150707.1612 and F1-V2 through 1.1-B20150708.1646 devices. ... |
| CVE-2015-1826 | — | — | — | Nov 5, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2015-1825 | — | — | — | Nov 5, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2015-1824 | — | — | — | Nov 5, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2015-1823 | — | — | — | Nov 5, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2015-0300 | — | — | — | Nov 5, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2015-7380 | — | — | — | Oct 7, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2015-7379 | — | — | — | Oct 7, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2015-4719 | CRITICAL | 9.8 | 1.5% | Sep 24, 2020 | The client API authentication mechanism in Pexip Infinity before 10 allows remote attackers to gain privileges via a cra... |
| CVE-2015-8033 | MEDIUM | 5.3 | 0.8% | Aug 14, 2020 | In Textpattern 4.5.7, the password-reset feature does not securely tether a hash to a user account. |
| CVE-2015-8032 | MEDIUM | 5.3 | 0.8% | Aug 14, 2020 | In Textpattern 4.5.7, an unprivileged author can change an article's markup setting. |
| CVE-2015-9549 | MEDIUM | 6.1 | 1.3% | Aug 3, 2020 | A reflected Cross-site Scripting (XSS) vulnerability exists in OcPortal 9.0.20 via the OCF_EMOTICON_CELL.tpl FIELD_NAME ... |
| CVE-2015-5238 | — | — | — | Jul 21, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2015-3796. Reason: This candidate is a reservation du... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now