2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-6564 | HIGH | 7 | 0.6% | Aug 24, 2015 | Use-after-free vulnerability in the mm_answer_pam_free_ctx function in monitor.c in sshd in OpenSSH before 7.0 on non-Op... |
| CVE-2015-0536 | HIGH | 7.5 | 2.0% | Aug 20, 2015 | EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3 and RSA BSAFE SSL-C 2.8.9 and earlier,... |
| CVE-2015-0535 | HIGH | 7.5 | 1.1% | Aug 20, 2015 | EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3 and RSA BSAFE SSL-C 2.8.9 and earlier ... |
| CVE-2015-0534 | HIGH | 7.5 | 1.4% | Aug 20, 2015 | EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3, RSA BSAFE Crypto-J before 6.2, RSA BS... |
| CVE-2015-0533 | HIGH | 7.5 | 0.8% | Aug 20, 2015 | EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3 and RSA BSAFE SSL-C 2.8.9 and earlier ... |
| CVE-2015-5621 | HIGH | 7.5 | 40.0% | Aug 19, 2015 | The snmp_pdu_parse function in snmp_api.c in net-snmp 5.7.2 and earlier does not remove the varBind variable in a netsnm... |
| CVE-2015-2502 | HIGH | 8.8 | 51.1% | Aug 19, 2015 | Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2015-1642 | HIGH | 7.8 | 53.2% | Aug 15, 2015 | Microsoft Office 2007 SP3, 2010 SP2, and 2013 SP1 allows remote attackers to execute arbitrary code via a crafted docume... |
| CVE-2015-4495 | HIGH | 8.8 | 70.2% | Aug 8, 2015 | The PDF reader in Mozilla Firefox before 39.0.3, Firefox ESR 38.x before 38.1.1, and Firefox OS before 2.2 allows remote... |
| CVE-2015-5600 | HIGH | 8.1 | 9.3% | Aug 3, 2015 | The kbdint_next_device function in auth2-chall.c in sshd in OpenSSH through 6.9 does not properly restrict the processin... |
| CVE-2015-2426 | HIGH | 8.8 | 86.7% | Jul 20, 2015 | Buffer underflow in atmfd.dll in the Windows Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2... |
| CVE-2015-2387 | HIGH | 7.8 | 36.7% | Jul 14, 2015 | ATMFD.DLL in the Adobe Type Manager Font Driver in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server ... |
| CVE-2015-2425 | HIGH | 8.8 | 44.9% | Jul 14, 2015 | Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory co... |
| CVE-2015-2424 | HIGH | 8.8 | 38.5% | Jul 14, 2015 | Microsoft PowerPoint 2007 SP3, Word 2007 SP3, PowerPoint 2010 SP2, Word 2010 SP2, PowerPoint 2013 SP1, Word 2013 SP1, an... |
| CVE-2015-2419 | HIGH | 8.8 | 44.5% | Jul 14, 2015 | JScript 9 in Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial o... |
| CVE-2015-1916 | HIGH | 7.5 | 2.7% | Jul 2, 2015 | Unspecified vulnerability in IBM Java 8 before SR1 allows remote attackers to cause a denial of service via unknown vect... |
| CVE-2015-2360 | HIGH | 8.8 | 15.0% | Jun 10, 2015 | win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server... |
| CVE-2015-1770 | HIGH | 8.8 | 35.1% | Jun 10, 2015 | Microsoft Office 2013 SP1 and 2013 RT SP1 allows remote attackers to execute arbitrary code via a crafted Office documen... |
| CVE-2015-3629 | HIGH | 7.8 | 0.6% | May 18, 2015 | Libcontainer 1.6.0, as used in Docker Engine, allows local users to escape containerization ("mount namespace breakout")... |
| CVE-2015-1671 | HIGH | 7.8 | 54.6% | May 13, 2015 | The Windows DirectWrite library, as used in Microsoft .NET Framework 3.0 SP2, 3.5, 3.5.1, 4, 4.5, 4.5.1, and 4.5.2; Offi... |
| CVE-2015-3035 | HIGH | 7.5 | 83.8% | Apr 22, 2015 | Directory traversal vulnerability in TP-LINK Archer C5 (1.2) with firmware before 150317, C7 (2.0) with firmware before ... |
| CVE-2015-1701 | HIGH | 7.8 | 56.2% | Apr 21, 2015 | Win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Vista SP2, and Server 2008 SP2 allows local ... |
| CVE-2015-0970 | HIGH | 8.8 | 1.0% | Apr 18, 2015 | Cross-site request forgery (CSRF) vulnerability in SearchBlox before 8.2 allows remote attackers to hijack the authentic... |
| CVE-2015-1641 | HIGH | 7.8 | 97.3% | Apr 14, 2015 | Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word for Mac 2011, Office Comp... |
| CVE-2015-1130 | HIGH | 7.8 | 9.9% | Apr 10, 2015 | The XPC implementation in Admin Framework in Apple OS X before 10.10.3 allows local users to bypass authentication and o... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now