2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-5333 | HIGH | 7.5 | 2.0% | Jan 23, 2020 | Memory leak in the OBJ_obj2txt function in LibreSSL before 2.3.1 allows remote attackers to cause a denial of service (m... |
| CVE-2015-5745 | MEDIUM | 6.5 | 3.0% | Jan 23, 2020 | Buffer overflow in the send_control_msg function in hw/char/virtio-serial-bus.c in QEMU before 2.4.0 allows guest users ... |
| CVE-2015-5334 | CRITICAL | 9.8 | 3.5% | Jan 23, 2020 | Off-by-one error in the OBJ_obj2txt function in LibreSSL before 2.3.1 allows remote attackers to cause a denial of servi... |
| CVE-2015-5278 | MEDIUM | 6.5 | 2.3% | Jan 23, 2020 | The ne2000_receive function in hw/net/ne2000.c in QEMU before 2.4.0.1 allows attackers to cause a denial of service (inf... |
| CVE-2015-5239 | MEDIUM | 6.5 | 3.6% | Jan 23, 2020 | Integer overflow in the VNC display driver in QEMU before 2.1.0 allows attachers to cause a denial of service (process c... |
| CVE-2015-2784 | CRITICAL | 9.8 | 1.8% | Jan 21, 2020 | The papercrop gem before 0.3.0 for Ruby on Rails does not properly handle crop input. |
| CVE-2015-1861 | — | — | — | Jan 21, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2015-6907 | — | — | — | Jan 21, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2015-6591 | MEDIUM | 5.5 | 0.6% | Jan 15, 2020 | Directory traversal vulnerability in application/templates/amelia/loadjs.php in Free Reprintables ArticleFR 3.0.7 and ea... |
| CVE-2015-1811 | HIGH | 7.5 | 1.4% | Jan 15, 2020 | XML external entity (XXE) vulnerability in CloudBees Jenkins before 1.600 and LTS before 1.596.1 allows remote attackers... |
| CVE-2015-1809 | HIGH | 7.5 | 1.4% | Jan 15, 2020 | XML external entity (XXE) vulnerability in CloudBees Jenkins before 1.600 and LTS before 1.596.1 allows remote attackers... |
| CVE-2015-5072 | MEDIUM | 6.5 | 1.7% | Jan 15, 2020 | The BIRT Engine servlet in the AR System Mid Tier component before 9.0 SP1 for BMC Remedy AR System Server allows remote... |
| CVE-2015-5071 | MEDIUM | 6.5 | 1.8% | Jan 15, 2020 | AR System Mid Tier in the AR System Mid Tier component before 9.0 SP1 for BMC Remedy AR System Server allows remote auth... |
| CVE-2015-6497 | HIGH | 8.8 | 7.4% | Jan 15, 2020 | The create function in app/code/core/Mage/Catalog/Model/Product/Api/V2.php in Magento Community Edition (CE) before 1.9.... |
| CVE-2015-5952 | CRITICAL | 9.8 | 3.4% | Jan 15, 2020 | Directory traversal vulnerability in Thomson Reuters for FATCA before 5.2 allows remote attackers to execute arbitrary f... |
| CVE-2015-5230 | HIGH | 7.5 | 9.0% | Jan 15, 2020 | The DNS packet parsing/generation code in PowerDNS (aka pdns) Authoritative Server 3.4.x before 3.4.6 allows remote atta... |
| CVE-2015-7874 | CRITICAL | 9.8 | 13.9% | Jan 15, 2020 | Buffer overflow in the chat server in KiTTY Portable 0.65.0.2p and earlier allows remote attackers to execute arbitrary ... |
| CVE-2015-5484 | MEDIUM | 5.4 | 1.4% | Jan 15, 2020 | Cross-site scripting (XSS) vulnerability in the Plotly plugin before 1.0.3 for WordPress allows remote authenticated use... |
| CVE-2015-5466 | HIGH | 7.8 | 1.1% | Jan 15, 2020 | Silicon Integrated Systems XGI WindowsXP Display Manager (aka XGI VGA Driver Manager and VGA Display Manager) 6.14.10.10... |
| CVE-2015-8549 | HIGH | 7.1 | 1.4% | Jan 15, 2020 | XML external entity (XXE) vulnerability in PyAMF before 0.8.0 allows remote attackers to cause a denial of service or re... |
| CVE-2015-7556 | HIGH | 7.8 | 1.3% | Jan 15, 2020 | DeleGate 9.9.13 allows local users to gain privileges as demonstrated by the dgcpnod setuid program. |
| CVE-2015-1850 | — | — | — | Jan 15, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2015-4107 | — | — | — | Jan 14, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2015-3159 | HIGH | 7.8 | 0.4% | Jan 14, 2020 | The abrt-action-install-debuginfo-to-abrt-cache help program in Automatic Bug Reporting Tool (ABRT) does not properly ha... |
| CVE-2015-3151 | HIGH | 7.8 | 0.6% | Jan 14, 2020 | Directory traversal vulnerability in abrt-dbus in Automatic Bug Reporting Tool (ABRT) allows local users to read, write ... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now