2015 CVE Vulnerabilities

8,779 CVEs published in 2015.

CVE IDSeverityCVSSDescription
CVE-2015-9548HIGH7.5An issue was discovered in Mattermost Server before 1.2.0. It allows attackers to cause a denial of service (memory cons...
CVE-2015-7946MEDIUM4.6Information Exposure vulnerability in Unity8 as used on the Ubuntu phone and possibly also in Unity8 shipped elsewhere. ...
CVE-2015-9547HIGH7.5An issue was discovered on Samsung mobile devices with JBP(4.3) and KK(4.4.2) software. Because the READ_LOGS permission...
CVE-2015-9546MEDIUM4.8An issue was discovered on Samsung mobile devices with KK(4.4) and later software through 2015-06-16. In some cases, HTT...
CVE-2015-8546CRITICAL9.8An issue was discovered on Samsung mobile devices with software through 2015-11-12, affecting the Galaxy S6/S6 Edge, Gal...
CVE-2015-5524CRITICAL9.8An issue was discovered on Samsung mobile devices with KK(4.4) and later software through 2015-05-13. There is a buffer ...
CVE-2015-9545HIGH7.1An issue was discovered in xdLocalStorage through 2.0.5. The receiveMessage() function in xdLocalStorage.js does not imp...
CVE-2015-9544HIGH7.1An issue was discovered in xdLocalStorage through 2.0.5. The receiveMessage() function in xdLocalStoragePostMessageApi.j...
CVE-2015-8536HIGH8.8MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A vulnerability was discovered (fixe...
CVE-2015-8535HIGH7.8MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A directory traversal vulnerability ...
CVE-2015-8534HIGH7.8MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A local privilege escalation vulnera...
CVE-2015-7336HIGH7.5MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A vulnerability was reported (fixed ...
CVE-2015-7335HIGH7MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A race condition was reported (fixed...
CVE-2015-7334HIGH7.8MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A local privilege escalation vulnera...
CVE-2015-7333HIGH7.8MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A local privilege escalation vulnera...
CVE-2015-5684CRITICAL9.8MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A buffer overflow vulnerability was ...
CVE-2015-3641HIGH7.5bitcoind and Bitcoin-Qt prior to 0.10.2 allow attackers to cause a denial of service (disabled functionality such as a c...
CVE-2015-7342HIGH7.2JNews Joomla Component before 8.5.0 allows SQL injection via upload thumbnail, Queue Search Field, Subscribers Search Fi...
CVE-2015-7341HIGH8.8JNews Joomla Component before 8.5.0 allows arbitrary File Upload via Subscribers or Templates, as demonstrated by the .p...
CVE-2015-7340HIGH7.2JEvents Joomla Component before 3.4.0 RC6 has SQL Injection via evid in a Manage Events action.
CVE-2015-7339HIGH8.8JCE Joomla Component 2.5.0 to 2.5.2 allows arbitrary file upload via a .php file extension for an image file to the /com...
CVE-2015-7338HIGH7.2SQL Injection exists in AcyMailing Joomla Component before 4.9.5 via exportgeolocorder in a geolocation_longitude reques...
CVE-2015-7968MEDIUM4.3nwbc_ext2int in SAP NetWeaver Application Server before Security Note 2183189 allows XXE attacks for local file inclusio...
CVE-2015-7344MEDIUM4.8HikaShop Joomla Component before 2.6.0 has XSS via an injected payload[/caption].
CVE-2015-7343MEDIUM4.8JNews Joomla Component before 8.5.0 has XSS via the mailingsearch parameter.

Check if your code is affected by 2015 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now