2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-8486 | — | — | 1.2% | Feb 17, 2016 | Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to bypass intended access restrictions and read arb... |
| CVE-2015-8485 | — | — | 1.2% | Feb 17, 2016 | Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to bypass intended access restrictions and read arb... |
| CVE-2015-8484 | — | — | 1.2% | Feb 17, 2016 | Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to bypass intended calendar-viewing restrictions vi... |
| CVE-2015-8483 | — | — | 1.3% | Feb 17, 2016 | Open redirect vulnerability in Cybozu Office 10.2.0 through 10.3.0 allows remote attackers to redirect users to arbitrar... |
| CVE-2015-7798 | — | — | 1.1% | Feb 17, 2016 | Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitra... |
| CVE-2015-7797 | — | — | 1.1% | Feb 17, 2016 | Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitra... |
| CVE-2015-7796 | — | — | 1.1% | Feb 17, 2016 | Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitra... |
| CVE-2015-7795 | — | — | 1.1% | Feb 17, 2016 | Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitra... |
| CVE-2015-7581 | — | — | 6.5% | Feb 16, 2016 | actionpack/lib/action_dispatch/routing/route_set.rb in Action Pack in Ruby on Rails 4.x before 4.2.5.1 and 5.x before 5.... |
| CVE-2015-7580 | — | — | 2.0% | Feb 16, 2016 | Cross-site scripting (XSS) vulnerability in lib/rails/html/scrubbers.rb in the rails-html-sanitizer gem before 1.0.3 for... |
| CVE-2015-7579 | — | — | 2.3% | Feb 16, 2016 | Cross-site scripting (XSS) vulnerability in the rails-html-sanitizer gem 1.0.2 for Ruby on Rails 4.2.x and 5.x allows re... |
| CVE-2015-7578 | — | — | 2.3% | Feb 16, 2016 | Cross-site scripting (XSS) vulnerability in the rails-html-sanitizer gem before 1.0.3 for Ruby on Rails 4.2.x and 5.x al... |
| CVE-2015-7577 | — | — | 4.3% | Feb 16, 2016 | activerecord/lib/active_record/nested_attributes.rb in Active Record in Ruby on Rails 3.1.x and 3.2.x before 3.2.22.1, 4... |
| CVE-2015-7576 | — | — | 4.9% | Feb 16, 2016 | The http_basic_authenticate_with method in actionpack/lib/action_controller/metal/http_authentication.rb in the Basic Au... |
| CVE-2015-8797 | — | — | 3.3% | Feb 15, 2016 | Cross-site scripting (XSS) vulnerability in webapp/web/js/scripts/plugins.js in the stats page in the Admin UI in Apache... |
| CVE-2015-8796 | — | — | 3.3% | Feb 15, 2016 | Cross-site scripting (XSS) vulnerability in webapp/web/js/scripts/schema-browser.js in the Admin UI in Apache Solr befor... |
| CVE-2015-8795 | — | — | 2.7% | Feb 15, 2016 | Multiple cross-site scripting (XSS) vulnerabilities in the Admin UI in Apache Solr before 5.1 allow remote attackers to ... |
| CVE-2015-8531 | — | — | 0.8% | Feb 15, 2016 | Cross-site scripting (XSS) vulnerability in IBM Security Access Manager for Web 8.0 before 8.0.1.3 IF4 and 9.0 before 9.... |
| CVE-2015-7492 | — | — | 0.6% | Feb 15, 2016 | Cross-site scripting (XSS) vulnerability in Reference Data Management (RDM) in IBM InfoSphere Master Data Management 10.... |
| CVE-2015-7472 | — | — | 1.6% | Feb 15, 2016 | IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0.0 through 7.0.0.2 CF29, 8.0.0 before 8.... |
| CVE-2015-7444 | — | — | 0.9% | Feb 15, 2016 | The Update Installer in IBM WebSphere Commerce Enterprise 7.0.0.8 and 7.0.0.9 does not properly replicate the search ind... |
| CVE-2015-7408 | — | — | 0.9% | Feb 15, 2016 | The server in IBM Spectrum Protect (aka Tivoli Storage Manager) 5.5 and 6.x before 6.3.5.1 and 7.x before 7.1.4 does not... |
| CVE-2015-7398 | — | — | 0.6% | Feb 15, 2016 | Cross-site scripting (XSS) vulnerability in IBM Emptoris Contract Management 9.5.0.x before 9.5.0.6 iFix15, 10.0.0.x and... |
| CVE-2015-5050 | — | — | 0.5% | Feb 15, 2016 | Cross-site request forgery (CSRF) vulnerability in IBM Emptoris Contract Management 9.5.0.x before 9.5.0.6 iFix15, 10.0.... |
| CVE-2015-5042 | — | — | 1.8% | Feb 15, 2016 | IBM Emptoris Contract Management 9.5.0.x before 9.5.0.6 iFix15, 10.0.0.x and 10.0.1.x before 10.0.1.5 iFix5, 10.0.2.x be... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now