2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-7830 | — | — | 3.0% | Nov 15, 2015 | The pcapng_read_if_descr_block function in wiretap/pcapng.c in the pcapng parser in Wireshark 1.12.x before 1.12.8 uses ... |
| CVE-2015-3977 | — | — | 1.1% | Nov 15, 2015 | Buffer overflow in Schneider Electric IMT25 Magnetic Flow DTM before 1.500.004 for the HART Protocol allows remote authe... |
| CVE-2015-7774 | — | — | 1.3% | Nov 14, 2015 | PC-EGG pWebManager before 3.3.10, and before 2.2.2 for PHP 4.x, allows remote authenticated users to execute arbitrary O... |
| CVE-2015-7427 | — | — | 1.2% | Nov 14, 2015 | IBM DataPower Gateway appliances with firmware 6.x before 6.0.0.17, 6.0.1.x before 6.0.1.17, 7.x before 7.0.0.10, 7.1.0.... |
| CVE-2015-7419 | — | — | 3.2% | Nov 14, 2015 | IBM WebSphere Portal 8.0.0.1 before CF19 and 8.5.0 before CF09 allows remote attackers to cause a denial of service (mem... |
| CVE-2015-7404 | — | — | 0.4% | Nov 14, 2015 | IBM Tivoli Storage Manager for Databases: Data Protection for Microsoft SQL Server (aka Spectrum Protect for Databases) ... |
| CVE-2015-6367 | — | — | 1.9% | Nov 14, 2015 | Cisco Aironet 1800 devices with software 8.1(131.0) allow remote attackers to cause a denial of service (CPU consumption... |
| CVE-2015-6365 | — | — | 1.4% | Nov 14, 2015 | Cisco IOS 15.2(04)M and 15.4(03)M lets physical-interface ACLs supersede virtual PPP interface ACLs, which allows remote... |
| CVE-2015-6364 | — | — | 1.8% | Nov 14, 2015 | Cisco Content Delivery System Manager Software 3.2 on Videoscape Distribution Suite Service Manager allows remote attack... |
| CVE-2015-8126 | — | — | 10.3% | Nov 13, 2015 | Multiple buffer overflows in the (1) png_set_PLTE and (2) png_get_PLTE functions in libpng before 1.0.64, 1.1.x and 1.2.... |
| CVE-2015-7905 | — | — | 4.7% | Nov 13, 2015 | Unitronics VisiLogic OPLC IDE before 9.8.02 allows remote attackers to execute unspecified code via unknown vectors. |
| CVE-2015-6478 | — | — | 1.6% | Nov 13, 2015 | Unitronics VisiLogic OPLC IDE before 9.8.02 does not properly restrict access to ActiveX controls, which allows remote a... |
| CVE-2015-6366 | — | — | 1.6% | Nov 13, 2015 | Cisco IOS 15.2(04)M6 and 15.4(03)S lets physical-interface ACLs supersede tunnel-interface ACLs, which allows remote att... |
| CVE-2015-6045 | — | — | 19.3% | Nov 13, 2015 | Use-after-free vulnerability in the CElement object implementation in Microsoft Internet Explorer 11 allows remote attac... |
| CVE-2015-2698 | — | — | 2.9% | Nov 13, 2015 | The iakerb_gss_export_sec_context function in lib/gssapi/krb5/iakerb.c in MIT Kerberos 5 (aka krb5) 1.14 pre-release 201... |
| CVE-2015-8113 | — | — | 0.5% | Nov 12, 2015 | Untrusted search path vulnerability in the client in Symantec Endpoint Protection (SEP) 12.1 before 12.1-RU6-MP3 allows ... |
| CVE-2015-7820 | — | — | 1.4% | Nov 12, 2015 | Race condition in the administration-panel web service in IBM System Networking Switch Center (SNSC) before 7.3.1.5 and ... |
| CVE-2015-7819 | — | — | 1.3% | Nov 12, 2015 | The DB service in IBM System Networking Switch Center (SNSC) before 7.3.1.5 and Lenovo Switch Center before 8.1.2.0 allo... |
| CVE-2015-7818 | — | — | 0.4% | Nov 12, 2015 | The administration-panel web service in IBM System Networking Switch Center (SNSC) before 7.3.1.5 and Lenovo Switch Cent... |
| CVE-2015-7817 | — | — | 1.4% | Nov 12, 2015 | Race condition in the administration-panel web service in IBM System Networking Switch Center (SNSC) before 7.3.1.5 and ... |
| CVE-2015-6555 | — | — | 2.7% | Nov 12, 2015 | Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP3 allows remote attackers to execute arbitrary Java c... |
| CVE-2015-6554 | — | — | 2.7% | Nov 12, 2015 | Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP3 allows remote attackers to execute arbitrary OS com... |
| CVE-2015-6363 | — | — | 1.1% | Nov 12, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in the web framework in Cisco FireSIGHT Management Center (MC) 5.4.1... |
| CVE-2015-5441 | — | — | 1.9% | Nov 12, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in HP ArcSight Management Center before 2.1 and ArcSight Logger befo... |
| CVE-2015-8046 | — | — | 30.0% | Nov 11, 2015 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.261 and 19.x before 19.0.0.245 on Windows and OS X and ... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now