2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-7366 | — | — | 1.1% | Oct 14, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in Revive Adserver before 3.2.2 allow remote attackers to hij... |
| CVE-2015-7365 | — | — | 2.0% | Oct 14, 2015 | Cross-site scripting (XSS) vulnerability in the plugin upgrade form in Revive Adserver before 3.2.2 allows remote attack... |
| CVE-2015-7364 | — | — | 1.1% | Oct 14, 2015 | The HTML_Quickform library, as used in Revive Adserver before 3.2.2, allows remote attackers to bypass the CSRF protecti... |
| CVE-2015-6059 | — | — | 16.3% | Oct 14, 2015 | The Microsoft (1) VBScript 5.7 and 5.8 and (2) JScript 5.7 and 5.8 engines, as used in Internet Explorer 8 through 11 an... |
| CVE-2015-6058 | — | — | 70.0% | Oct 14, 2015 | Microsoft Edge mishandles HTML attributes in HTTP responses, which allows remote attackers to bypass a cross-site script... |
| CVE-2015-6057 | — | — | 15.9% | Oct 14, 2015 | Microsoft Edge allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka "... |
| CVE-2015-6056 | — | — | 12.7% | Oct 14, 2015 | The (1) JScript and (2) VBScript engines in Microsoft Internet Explorer 9 through 11 allow remote attackers to execute a... |
| CVE-2015-6055 | — | — | 25.1% | Oct 14, 2015 | The Microsoft (1) VBScript 5.7 and 5.8 and (2) JScript 5.7 and 5.8 engines, as used in Internet Explorer 8 through 11 an... |
| CVE-2015-6053 | — | — | 18.9% | Oct 14, 2015 | Microsoft Internet Explorer 11 allows remote attackers to obtain sensitive information from process memory via crafted p... |
| CVE-2015-6052 | — | — | 14.9% | Oct 14, 2015 | The Microsoft (1) VBScript 5.7 and 5.8 and (2) JScript 5.7 and 5.8 engines, as used in Internet Explorer 8 through 11 an... |
| CVE-2015-6051 | — | — | 14.7% | Oct 14, 2015 | Microsoft Internet Explorer 10 and 11 allows remote attackers to gain privileges via a crafted web site, as demonstrated... |
| CVE-2015-6050 | — | — | 12.7% | Oct 14, 2015 | Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory co... |
| CVE-2015-6049 | — | — | 14.2% | Oct 14, 2015 | Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2015-6048 | — | — | 13.9% | Oct 14, 2015 | Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2015-6047 | — | — | 13.9% | Oct 14, 2015 | The broker EditWith feature in Microsoft Internet Explorer 8 through 11 allows remote attackers to bypass the AppContain... |
| CVE-2015-6046 | — | — | 14.0% | Oct 14, 2015 | Microsoft Internet Explorer 9 through 11 allows remote attackers to obtain sensitive information from process memory via... |
| CVE-2015-6044 | — | — | 9.5% | Oct 14, 2015 | Microsoft Internet Explorer 8 allows remote attackers to gain privileges via a crafted web site, as demonstrated by a tr... |
| CVE-2015-6042 | — | — | 22.4% | Oct 14, 2015 | Use-after-free vulnerability in the CWindow object implementation in Microsoft Internet Explorer 11 allows remote attack... |
| CVE-2015-6039 | — | — | 9.1% | Oct 14, 2015 | Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Server 2013 SP1 and SharePoint Foundation 2013 SP1 allo... |
| CVE-2015-6037 | — | — | 9.9% | Oct 14, 2015 | Cross-site scripting (XSS) vulnerability in Microsoft Excel Services on SharePoint Server 2010 SP2 and 2013 SP1, Office ... |
| CVE-2015-2558 | — | — | 23.0% | Oct 14, 2015 | Use-after-free vulnerability in Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016,... |
| CVE-2015-2557 | — | — | 22.5% | Oct 14, 2015 | Buffer overflow in Microsoft Visio 2007 SP3 and 2010 SP2 allows remote attackers to execute arbitrary code via crafted U... |
| CVE-2015-2556 | — | — | 15.6% | Oct 14, 2015 | The InfoPath Forms Services component in Microsoft SharePoint Server 2007 SP3 and 2010 SP2 misparses DTDs, which allows ... |
| CVE-2015-2555 | — | — | 23.0% | Oct 14, 2015 | Use-after-free vulnerability in Microsoft Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Excel for Mac 2... |
| CVE-2015-2554 | — | — | 3.6% | Oct 14, 2015 | The kernel in Microsoft Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now