2015 CVE Vulnerabilities

8,779 CVEs published in 2015.

CVE IDSeverityCVSSDescription
CVE-2015-7640Use-after-free vulnerability in Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and ...
CVE-2015-7639Use-after-free vulnerability in Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and ...
CVE-2015-7638Use-after-free vulnerability in Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and ...
CVE-2015-7637Use-after-free vulnerability in Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and ...
CVE-2015-7636Use-after-free vulnerability in Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and ...
CVE-2015-7635Use-after-free vulnerability in Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and ...
CVE-2015-7184The fetch API implementation in Mozilla Firefox before 41.0.2 does not restrict access to the HTTP response body in cert...
CVE-2015-5662Directory traversal vulnerability in Avast before 150918-0 allows remote attackers to delete or write to arbitrary files...
CVE-2015-5444Multiple cross-site scripting (XSS) vulnerabilities in HP Smart Profile Server Data Analytics Layer (SPS DAL) 2.3 before...
CVE-2015-7856OpenNMS has a default password of rtc for the rtc account, which makes it easier for remote attackers to obtain access b...
CVE-2015-7683Absolute path traversal vulnerability in Font.php in the Font plugin before 7.5.1 for WordPress allows remote administra...
CVE-2015-7682Multiple SQL injection vulnerabilities in pie-register/pie-register.php in the Pie Register plugin before 2.0.19 for Wor...
CVE-2015-7377Cross-site scripting (XSS) vulnerability in pie-register/pie-register.php in the Pie Register plugin before 2.0.19 for W...
CVE-2015-5742VeeamVixProxy in Veeam Backup & Replication (B&R) before 8.0 update 3 stores local administrator credentials in log file...
CVE-2015-1814The API token-issuing service in Jenkins before 1.606 and LTS before 1.596.2 allows remote attackers to gain privileges ...
CVE-2015-1813Cross-site scripting (XSS) vulnerability in Jenkins before 1.606 and LTS before 1.596.2 allows remote attackers to injec...
CVE-2015-1812Cross-site scripting (XSS) vulnerability in Jenkins before 1.606 and LTS before 1.596.2 allows remote attackers to injec...
CVE-2015-1810The HudsonPrivateSecurityRealm class in Jenkins before 1.600 and LTS before 1.596.1 does not restrict access to reserved...
CVE-2015-1808Jenkins before 1.600 and LTS before 1.596.1 allows remote authenticated users to cause a denial of service (improper plu...
CVE-2015-1807Directory traversal vulnerability in Jenkins before 1.600 and LTS before 1.596.1 allows remote authenticated users with ...
CVE-2015-1806The combination filter Groovy script in Jenkins before 1.600 and LTS before 1.596.1 allows remote authenticated users wi...
CVE-2015-6334Cisco ASR 5000 and 5500 devices with software 18.0.0.57828 and 19.0.M0.61045 allow remote attackers to cause a denial of...
CVE-2015-6333Cisco Application Policy Infrastructure Controller (APIC) 1.1j allows local users to gain privileges via vectors involvi...
CVE-2015-6003Directory traversal vulnerability in QNAP QTS before 4.1.4 build 0910 and 4.2.x before 4.2.0 RC2 build 0910, when AFP is...
CVE-2015-5660Cross-site request forgery (CSRF) vulnerability in eXtplorer before 2.1.8 allows remote attackers to hijack the authenti...

Check if your code is affected by 2015 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now