2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-7640 | — | — | 6.0% | Oct 18, 2015 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and ... |
| CVE-2015-7639 | — | — | 6.0% | Oct 18, 2015 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and ... |
| CVE-2015-7638 | — | — | 6.0% | Oct 18, 2015 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and ... |
| CVE-2015-7637 | — | — | 6.0% | Oct 18, 2015 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and ... |
| CVE-2015-7636 | — | — | 6.0% | Oct 18, 2015 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and ... |
| CVE-2015-7635 | — | — | 6.0% | Oct 18, 2015 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and ... |
| CVE-2015-7184 | — | — | 1.7% | Oct 18, 2015 | The fetch API implementation in Mozilla Firefox before 41.0.2 does not restrict access to the HTTP response body in cert... |
| CVE-2015-5662 | — | — | 3.0% | Oct 18, 2015 | Directory traversal vulnerability in Avast before 150918-0 allows remote attackers to delete or write to arbitrary files... |
| CVE-2015-5444 | — | — | 1.7% | Oct 18, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in HP Smart Profile Server Data Analytics Layer (SPS DAL) 2.3 before... |
| CVE-2015-7856 | — | — | 2.4% | Oct 16, 2015 | OpenNMS has a default password of rtc for the rtc account, which makes it easier for remote attackers to obtain access b... |
| CVE-2015-7683 | — | — | 5.0% | Oct 16, 2015 | Absolute path traversal vulnerability in Font.php in the Font plugin before 7.5.1 for WordPress allows remote administra... |
| CVE-2015-7682 | — | — | 1.4% | Oct 16, 2015 | Multiple SQL injection vulnerabilities in pie-register/pie-register.php in the Pie Register plugin before 2.0.19 for Wor... |
| CVE-2015-7377 | — | — | 4.4% | Oct 16, 2015 | Cross-site scripting (XSS) vulnerability in pie-register/pie-register.php in the Pie Register plugin before 2.0.19 for W... |
| CVE-2015-5742 | — | — | 0.5% | Oct 16, 2015 | VeeamVixProxy in Veeam Backup & Replication (B&R) before 8.0 update 3 stores local administrator credentials in log file... |
| CVE-2015-1814 | — | — | 2.3% | Oct 16, 2015 | The API token-issuing service in Jenkins before 1.606 and LTS before 1.596.2 allows remote attackers to gain privileges ... |
| CVE-2015-1813 | — | — | 1.8% | Oct 16, 2015 | Cross-site scripting (XSS) vulnerability in Jenkins before 1.606 and LTS before 1.596.2 allows remote attackers to injec... |
| CVE-2015-1812 | — | — | 1.8% | Oct 16, 2015 | Cross-site scripting (XSS) vulnerability in Jenkins before 1.606 and LTS before 1.596.2 allows remote attackers to injec... |
| CVE-2015-1810 | — | — | 1.6% | Oct 16, 2015 | The HudsonPrivateSecurityRealm class in Jenkins before 1.600 and LTS before 1.596.1 does not restrict access to reserved... |
| CVE-2015-1808 | — | — | 1.6% | Oct 16, 2015 | Jenkins before 1.600 and LTS before 1.596.1 allows remote authenticated users to cause a denial of service (improper plu... |
| CVE-2015-1807 | — | — | 1.8% | Oct 16, 2015 | Directory traversal vulnerability in Jenkins before 1.600 and LTS before 1.596.1 allows remote authenticated users with ... |
| CVE-2015-1806 | — | — | 2.5% | Oct 16, 2015 | The combination filter Groovy script in Jenkins before 1.600 and LTS before 1.596.1 allows remote authenticated users wi... |
| CVE-2015-6334 | — | — | 2.0% | Oct 16, 2015 | Cisco ASR 5000 and 5500 devices with software 18.0.0.57828 and 19.0.M0.61045 allow remote attackers to cause a denial of... |
| CVE-2015-6333 | — | — | 0.4% | Oct 16, 2015 | Cisco Application Policy Infrastructure Controller (APIC) 1.1j allows local users to gain privileges via vectors involvi... |
| CVE-2015-6003 | — | — | 4.1% | Oct 16, 2015 | Directory traversal vulnerability in QNAP QTS before 4.1.4 build 0910 and 4.2.x before 4.2.0 RC2 build 0910, when AFP is... |
| CVE-2015-5660 | — | — | 1.0% | Oct 16, 2015 | Cross-site request forgery (CSRF) vulnerability in eXtplorer before 2.1.8 allows remote attackers to hijack the authenti... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now