2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-8851 | HIGH | 7.5 | 2.3% | Jan 30, 2020 | node-uuid before 1.4.4 uses insufficiently random data to create a GUID, which could make it easier for attackers to hav... |
| CVE-2015-0949 | HIGH | 7.8 | 0.4% | Jan 30, 2020 | The System Management Mode (SMM) implementation in Dell Latitude E6430 BIOS Revision A09, HP EliteBook 850 G1 BIOS revis... |
| CVE-2015-5483 | HIGH | 8.8 | 1.6% | Jan 28, 2020 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Private Only plugin 3.5.1 for WordPress allow remote a... |
| CVE-2015-8012 | HIGH | 7.5 | 3.0% | Jan 28, 2020 | lldpd before 0.8.0 allows remote attackers to cause a denial of service (assertion failure and daemon crash) via a malfo... |
| CVE-2015-8011 | CRITICAL | 9.8 | 5.4% | Jan 28, 2020 | Buffer overflow in the lldp_decode function in daemon/protocols/lldp.c in lldpd before 0.8.0 allows remote attackers to ... |
| CVE-2015-7851 | MEDIUM | 6.5 | 3.9% | Jan 28, 2020 | Directory traversal vulnerability in the save_config function in ntpd in ntp_control.c in NTP before 4.2.8p4, when used ... |
| CVE-2015-2249 | MEDIUM | 5.4 | 0.7% | Jan 27, 2020 | Zimbra Collaboration before 8.6.0 patch5 has XSS. |
| CVE-2015-3154 | MEDIUM | 6.1 | 1.0% | Jan 27, 2020 | CRLF injection vulnerability in Zend\Mail (Zend_Mail) in Zend Framework before 1.12.12, 2.x before 2.3.8, and 2.4.x befo... |
| CVE-2015-0294 | HIGH | 7.5 | 1.6% | Jan 27, 2020 | GnuTLS before 3.3.13 does not validate that the signature algorithms match when importing a certificate. |
| CVE-2015-0244 | CRITICAL | 9.8 | 4.2% | Jan 27, 2020 | PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3.x before 9.3.6, and 9.4.x before 9.4.1 does not ... |
| CVE-2015-0243 | HIGH | 8.8 | 5.1% | Jan 27, 2020 | Multiple buffer overflows in contrib/pgcrypto in PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3... |
| CVE-2015-0242 | HIGH | 8.8 | 5.1% | Jan 27, 2020 | Stack-based buffer overflow in the *printf function implementations in PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.... |
| CVE-2015-0241 | HIGH | 8.8 | 5.5% | Jan 27, 2020 | The to_char function in PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3.x before 9.3.6, and 9.4.... |
| CVE-2015-4709 | — | — | — | Jan 27, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2015-9541 | HIGH | 7.5 | 2.5% | Jan 24, 2020 | Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlS... |
| CVE-2015-1203 | — | — | — | Jan 24, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2015-1202 | — | — | — | Jan 24, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2015-2929 | HIGH | 7.5 | 1.2% | Jan 24, 2020 | The Hidden Service (HS) client implementation in Tor before 0.2.4.27, 0.2.5.x before 0.2.5.12, and 0.2.6.x before 0.2.6.... |
| CVE-2015-2928 | HIGH | 7.5 | 1.4% | Jan 24, 2020 | The Hidden Service (HS) server implementation in Tor before 0.2.4.27, 0.2.5.x before 0.2.5.12, and 0.2.6.x before 0.2.6.... |
| CVE-2015-2689 | HIGH | 7.5 | 2.2% | Jan 24, 2020 | Tor before 0.2.4.26 and 0.2.5.x before 0.2.5.11 does not properly handle pending-connection resolve states during period... |
| CVE-2015-2688 | HIGH | 7.5 | 2.2% | Jan 24, 2020 | buf_pullup in Tor before 0.2.4.26 and 0.2.5.x before 0.2.5.11 does not properly handle unexpected arrival times of buffe... |
| CVE-2015-1530 | HIGH | 7.8 | 0.4% | Jan 24, 2020 | media/libmedia/IAudioPolicyService.cpp in Android before 5.1 allows attackers to execute arbitrary code with media_serve... |
| CVE-2015-1525 | MEDIUM | 5.5 | 0.3% | Jan 24, 2020 | audio/AudioPolicyManagerBase.cpp in Android before 5.1 allows attackers to cause a denial of service (audio_policy appli... |
| CVE-2015-4042 | CRITICAL | 9.8 | 2.3% | Jan 24, 2020 | Integer overflow in the keycompare_mb function in sort.c in sort in GNU Coreutils through 8.23 might allow attackers to ... |
| CVE-2015-4041 | HIGH | 7.8 | 0.5% | Jan 24, 2020 | The keycompare_mb function in sort.c in sort in GNU Coreutils through 8.23 on 64-bit platforms performs a size calculati... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now