2015 CVE Vulnerabilities

8,779 CVEs published in 2015.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2015-6564HIGH7Use-after-free vulnerability in the mm_answer_pam_free_ctx function in monitor.c in sshd in OpenSSH before 7.0 on non-Op...
CVE-2015-0536HIGH7.5EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3 and RSA BSAFE SSL-C 2.8.9 and earlier,...
CVE-2015-0535HIGH7.5EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3 and RSA BSAFE SSL-C 2.8.9 and earlier ...
CVE-2015-0534HIGH7.5EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3, RSA BSAFE Crypto-J before 6.2, RSA BS...
CVE-2015-0533HIGH7.5EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3 and RSA BSAFE SSL-C 2.8.9 and earlier ...
CVE-2015-5621HIGH7.5The snmp_pdu_parse function in snmp_api.c in net-snmp 5.7.2 and earlier does not remove the varBind variable in a netsnm...
CVE-2015-2502HIGH8.8Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ...
CVE-2015-1642HIGH7.8Microsoft Office 2007 SP3, 2010 SP2, and 2013 SP1 allows remote attackers to execute arbitrary code via a crafted docume...
CVE-2015-4495HIGH8.8The PDF reader in Mozilla Firefox before 39.0.3, Firefox ESR 38.x before 38.1.1, and Firefox OS before 2.2 allows remote...
CVE-2015-5600HIGH8.1The kbdint_next_device function in auth2-chall.c in sshd in OpenSSH through 6.9 does not properly restrict the processin...
CVE-2015-2426HIGH8.8Buffer underflow in atmfd.dll in the Windows Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2...
CVE-2015-2387HIGH7.8ATMFD.DLL in the Adobe Type Manager Font Driver in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server ...
CVE-2015-2425HIGH8.8Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory co...
CVE-2015-2424HIGH8.8Microsoft PowerPoint 2007 SP3, Word 2007 SP3, PowerPoint 2010 SP2, Word 2010 SP2, PowerPoint 2013 SP1, Word 2013 SP1, an...
CVE-2015-2419HIGH8.8JScript 9 in Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial o...
CVE-2015-1916HIGH7.5Unspecified vulnerability in IBM Java 8 before SR1 allows remote attackers to cause a denial of service via unknown vect...
CVE-2015-2360HIGH8.8win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server...
CVE-2015-1770HIGH8.8Microsoft Office 2013 SP1 and 2013 RT SP1 allows remote attackers to execute arbitrary code via a crafted Office documen...
CVE-2015-3629HIGH7.8Libcontainer 1.6.0, as used in Docker Engine, allows local users to escape containerization ("mount namespace breakout")...
CVE-2015-1671HIGH7.8The Windows DirectWrite library, as used in Microsoft .NET Framework 3.0 SP2, 3.5, 3.5.1, 4, 4.5, 4.5.1, and 4.5.2; Offi...
CVE-2015-3035HIGH7.5Directory traversal vulnerability in TP-LINK Archer C5 (1.2) with firmware before 150317, C7 (2.0) with firmware before ...
CVE-2015-1701HIGH7.8Win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Vista SP2, and Server 2008 SP2 allows local ...
CVE-2015-0970HIGH8.8Cross-site request forgery (CSRF) vulnerability in SearchBlox before 8.2 allows remote attackers to hijack the authentic...
CVE-2015-1641HIGH7.8Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word for Mac 2011, Office Comp...
CVE-2015-1130HIGH7.8The XPC implementation in Admin Framework in Apple OS X before 10.10.3 allows local users to bypass authentication and o...

Check if your code is affected by 2015 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now