2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-7024 | — | — | 0.4% | Jan 11, 2016 | Untrusted search path vulnerability in Apple OS X before 10.11.1 allows local users to bypass intended Gatekeeper restri... |
| CVE-2015-6980 | — | — | 0.4% | Jan 11, 2016 | Directory Utility in Apple OS X before 10.11.1 mishandles authentication for new sessions, which allows local users to g... |
| CVE-2015-7466 | — | — | 0.8% | Jan 10, 2016 | Lifecycle Query Engine (LQE) in IBM Jazz Reporting Service (JRS) 6.0 before 6.0.0-Rational-CLM-ifix005 allows remote aut... |
| CVE-2015-7465 | — | — | 0.5% | Jan 10, 2016 | Cross-site request forgery (CSRF) vulnerability in Lifecycle Query Engine (LQE) in IBM Jazz Reporting Service (JRS) 6.0 ... |
| CVE-2015-7397 | — | — | 1.8% | Jan 10, 2016 | Multiple open redirect vulnerabilities in the Aurora starter store in IBM WebSphere Commerce 7.0 through Feature Pack 8 ... |
| CVE-2015-7116 | — | — | 2.1% | Jan 10, 2016 | libxml2 in Apple iOS before 9.2, OS X before 10.11.2, and tvOS before 9.1 allows remote attackers to obtain sensitive in... |
| CVE-2015-7115 | — | — | 2.1% | Jan 10, 2016 | libxml2 in Apple iOS before 9.2, OS X before 10.11.2, and tvOS before 9.1 allows remote attackers to obtain sensitive in... |
| CVE-2015-8512 | — | — | 0.3% | Jan 9, 2016 | The lockscreen feature in Mozilla Firefox OS before 2.5 does not properly restrict failed authentication attempts, which... |
| CVE-2015-8511 | — | — | 0.2% | Jan 9, 2016 | Race condition in the lockscreen feature in Mozilla Firefox OS before 2.5 allows physically proximate attackers to bypas... |
| CVE-2015-8510 | — | — | 0.7% | Jan 9, 2016 | Cross-site scripting (XSS) vulnerability in the internationalization feature in the default homescreen app in Mozilla Fi... |
| CVE-2015-7939 | — | — | 5.0% | Jan 9, 2016 | Heap-based buffer overflow in Unitronics VisiLogic OPLC IDE before 9.8.09 allows remote attackers to execute arbitrary c... |
| CVE-2015-7938 | — | — | 3.8% | Jan 9, 2016 | Advantech EKI-132x devices with firmware before 2015-12-31 allow remote attackers to bypass authentication via unspecifi... |
| CVE-2015-7575 | — | — | 2.9% | Jan 9, 2016 | Mozilla Network Security Services (NSS) before 3.20.2, as used in Mozilla Firefox before 43.0.2 and Firefox ESR 38.x bef... |
| CVE-2015-7117 | — | — | 1.7% | Jan 9, 2016 | Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corr... |
| CVE-2015-7092 | — | — | 1.8% | Jan 9, 2016 | Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (heap-based ... |
| CVE-2015-7091 | — | — | 1.4% | Jan 9, 2016 | Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corr... |
| CVE-2015-7090 | — | — | 1.6% | Jan 9, 2016 | Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corr... |
| CVE-2015-7089 | — | — | 1.6% | Jan 9, 2016 | Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corr... |
| CVE-2015-7088 | — | — | 1.7% | Jan 9, 2016 | Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corr... |
| CVE-2015-7087 | — | — | 1.6% | Jan 9, 2016 | Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corr... |
| CVE-2015-7086 | — | — | 1.3% | Jan 9, 2016 | Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corr... |
| CVE-2015-7085 | — | — | 1.3% | Jan 9, 2016 | Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corr... |
| CVE-2015-6933 | — | — | 1.5% | Jan 9, 2016 | The VMware Tools HGFS (aka Shared Folders) implementation in VMware Workstation 11.x before 11.1.2, VMware Player 7.x be... |
| CVE-2015-8766 | — | — | 1.8% | Jan 8, 2016 | Multiple cross-site scripting (XSS) vulnerabilities in content/content.systempreferences.php in Symphony CMS before 2.6.... |
| CVE-2015-8376 | — | — | 0.9% | Jan 8, 2016 | Multiple cross-site scripting (XSS) vulnerabilities in Symphony CMS 2.6.3 allow remote attackers to inject arbitrary web... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now