2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-6394 | — | — | 0.3% | Dec 5, 2015 | The kernel in Cisco NX-OS 5.2(9)N1(1) on Nexus 5000 devices allows local users to cause a denial of service (device cras... |
| CVE-2015-6391 | — | — | 1.9% | Dec 5, 2015 | Cisco Unified SIP 3905 phones allow remote attackers to cause a denial of service (resource consumption and functionalit... |
| CVE-2015-6388 | — | — | 2.0% | Dec 5, 2015 | Cisco Unified Computing System (UCS) Central software 1.3(0.1) allows remote attackers to conduct server-side request fo... |
| CVE-2015-6387 | — | — | 1.4% | Dec 5, 2015 | Cross-site scripting (XSS) vulnerability in Cisco Unified Computing System (UCS) Central Software 1.3(0.1) allows remote... |
| CVE-2015-6384 | — | — | 1.5% | Dec 5, 2015 | The Cisco WebEx Meetings application before 8.5.1 for Android improperly initializes custom application permissions, whi... |
| CVE-2015-8078 | — | — | 2.8% | Dec 3, 2015 | Integer overflow in the index_urlfetch function in imap/index.c in Cyrus IMAP 2.3.19, 2.4.18, and 2.5.6 allows remote at... |
| CVE-2015-8077 | — | — | 3.3% | Dec 3, 2015 | Integer overflow in the index_urlfetch function in imap/index.c in Cyrus IMAP 2.3.19, 2.4.18, and 2.5.6 allows remote at... |
| CVE-2015-8076 | — | — | 3.3% | Dec 3, 2015 | The index_urlfetch function in index.c in Cyrus IMAP 2.3.x before 2.3.19, 2.4.x before 2.4.18, 2.5.x before 2.5.4 allows... |
| CVE-2015-5245 | — | — | 1.9% | Dec 3, 2015 | CRLF injection vulnerability in the Ceph Object Gateway (aka radosgw or RGW) in Ceph before 0.94.4 allows remote attacke... |
| CVE-2015-0860 | — | — | 5.0% | Dec 3, 2015 | Off-by-one error in the extracthalf function in dpkg-deb/extract.c in the dpkg-deb component in Debian dpkg 1.16.x befor... |
| CVE-2015-0859 | — | — | 2.3% | Dec 3, 2015 | The Debian build procedure for the smokeping package in wheezy before 2.6.8-2+deb7u1 and jessie before 2.6.9-1+deb8u1 do... |
| CVE-2015-6390 | — | — | 1.4% | Dec 3, 2015 | Cross-site scripting (XSS) vulnerability in the management interface in Cisco Unity Connection 9.1(1.10) allows remote a... |
| CVE-2015-6383 | — | — | 0.4% | Dec 3, 2015 | Cisco IOS XE 15.4(3)S on ASR 1000 devices improperly loads software packages, which allows local users to bypass license... |
| CVE-2015-8024 | — | — | 3.4% | Dec 2, 2015 | McAfee Enterprise Security Manager (ESM), Enterprise Security Manager/Log Manager (ESMLM), and Enterprise Security Manag... |
| CVE-2015-8395 | — | — | 3.5% | Dec 2, 2015 | PCRE before 8.38 mishandles certain references, which allows remote attackers to cause a denial of service or possibly h... |
| CVE-2015-8394 | CRITICAL | 9.8 | 4.8% | Dec 2, 2015 | PCRE before 8.38 mishandles the (?(<digits>) and (?(R<digits>) conditions, which allows remote attackers to cause a deni... |
| CVE-2015-8393 | HIGH | 7.5 | 4.4% | Dec 2, 2015 | pcregrep in PCRE before 8.38 mishandles the -q option for binary files, which might allow remote attackers to obtain sen... |
| CVE-2015-8392 | — | — | 3.6% | Dec 2, 2015 | PCRE before 8.38 mishandles certain instances of the (?| substring, which allows remote attackers to cause a denial of s... |
| CVE-2015-8391 | CRITICAL | 9.8 | 6.4% | Dec 2, 2015 | The pcre_compile function in pcre_compile.c in PCRE before 8.38 mishandles certain [: nesting, which allows remote attac... |
| CVE-2015-8390 | CRITICAL | 9.8 | 4.6% | Dec 2, 2015 | PCRE before 8.38 mishandles the [: and \\ substrings in character classes, which allows remote attackers to cause a deni... |
| CVE-2015-8389 | CRITICAL | 9.8 | 3.9% | Dec 2, 2015 | PCRE before 8.38 mishandles the /(?:|a|){100}x/ pattern and related patterns, which allows remote attackers to cause a d... |
| CVE-2015-8388 | — | — | 6.6% | Dec 2, 2015 | PCRE before 8.38 mishandles the /(?=di(?<=(?1))|(?=(.))))/ pattern and related patterns with an unmatched closing parent... |
| CVE-2015-8387 | HIGH | 7.3 | 3.6% | Dec 2, 2015 | PCRE before 8.38 mishandles (?123) subroutine calls and related subroutine calls, which allows remote attackers to cause... |
| CVE-2015-8386 | CRITICAL | 9.8 | 7.1% | Dec 2, 2015 | PCRE before 8.38 mishandles the interaction of lookbehind assertions and mutually recursive subpatterns, which allows re... |
| CVE-2015-8385 | — | — | 5.6% | Dec 2, 2015 | PCRE before 8.38 mishandles the /(?|(\k'Pm')|(?'Pm'))/ pattern and related patterns with certain forward references, whi... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now