2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-2030 | — | — | 1.4% | Oct 4, 2015 | IBM WebSphere eXtreme Scale 7.1.0 before 7.1.0.3 and 7.1.1 before 7.1.1.1 has an improper account-lockout setting, which... |
| CVE-2015-2029 | — | — | 1.2% | Oct 4, 2015 | Session fixation vulnerability in IBM WebSphere eXtreme Scale 7.1.0 before 7.1.0.3 and 7.1.1 before 7.1.1.1 allows remot... |
| CVE-2015-2028 | — | — | 1.2% | Oct 4, 2015 | CRLF injection vulnerability in IBM WebSphere eXtreme Scale 7.1.0 before 7.1.0.3 and 7.1.1 before 7.1.1.1 allows remote ... |
| CVE-2015-2027 | — | — | 0.5% | Oct 4, 2015 | IBM WebSphere eXtreme Scale 7.1.0 before 7.1.0.3 and 7.1.1 before 7.1.1.1 improperly performs logout actions, which allo... |
| CVE-2015-2026 | — | — | 0.5% | Oct 4, 2015 | Cross-site request forgery (CSRF) vulnerability in IBM WebSphere eXtreme Scale 7.1.0 before 7.1.0.3 and 7.1.1 before 7.1... |
| CVE-2015-2025 | — | — | 1.2% | Oct 4, 2015 | IBM WebSphere eXtreme Scale 7.1.0 before 7.1.0.3 and 7.1.1 before 7.1.1.1 does not set the secure flag for the session c... |
| CVE-2015-2016 | — | — | 2.1% | Oct 4, 2015 | Unspecified vulnerability in IBM QRadar SIEM 7.1 MR2 before Patch 11 IF02 and 7.2.x before 7.2.5 Patch 4 allows remote a... |
| CVE-2015-2011 | — | — | 2.2% | Oct 4, 2015 | The xmlrpc.cgi Webmin script in IBM QRadar SIEM 7.1 MR2 before Patch 11 IF02 and 7.2.x before 7.2.5 Patch 4 allows remot... |
| CVE-2015-1988 | — | — | 0.8% | Oct 4, 2015 | Cross-site scripting (XSS) vulnerability in IBM Tivoli Storage Manger for Virtual Environments: Data Protection for VMwa... |
| CVE-2015-1983 | — | — | 0.8% | Oct 4, 2015 | Cross-site scripting (XSS) vulnerability in the Projects page in IBM UrbanCode Build 6.1.x before 6.1.1 allows remote au... |
| CVE-2015-1969 | — | — | 1.5% | Oct 4, 2015 | Cross-site scripting (XSS) vulnerability in IBM Tivoli Common Reporting (TCR) 2.1 before IF13 and 2.1.1 before IF21, and... |
| CVE-2015-1934 | — | — | 1.0% | Oct 4, 2015 | IBM Maximo Asset Management 7.1 through 7.1.1.13, 7.5.0 before 7.5.0.8 IFIX002, and 7.6.0 before 7.6.0.1 IFIX001; Maximo... |
| CVE-2015-1933 | — | — | 0.4% | Oct 4, 2015 | IBM Maximo Asset Management 7.1 through 7.1.1.13, 7.5.0 before 7.5.0.8 IFIX001, and 7.6.0 before 7.6.0.1 IFIX001; Maximo... |
| CVE-2015-5651 | — | — | 1.2% | Oct 3, 2015 | Cross-site scripting (XSS) vulnerability in Dotclear before 2.8.1 allows remote attackers to inject arbitrary web script... |
| CVE-2015-4955 | — | — | 1.4% | Oct 3, 2015 | Cross-site scripting (XSS) vulnerability in IBM Business Process Manager (BPM) 8.0.x through 8.0.1.3, 8.5.0 through 8.5.... |
| CVE-2015-1888 | — | — | 0.8% | Oct 3, 2015 | Cross-site scripting (XSS) vulnerability in IBM Content Navigator 2.0.2 before 2.0.2-ICN-FP007 and 2.0.3 before 2.0.3-IC... |
| CVE-2015-0195 | — | — | 1.0% | Oct 3, 2015 | Cross-site scripting (XSS) vulnerability in IBM Content Template Catalog 4.x before 4.1.4 for WebSphere Portal 8.0.x and... |
| CVE-2015-0145 | — | — | 0.6% | Oct 3, 2015 | Cross-site request forgery (CSRF) vulnerability in IBM OpenPages GRC Platform 6.2 before IF7, 6.2.1 before 6.2.1.1 IF5, ... |
| CVE-2015-0144 | — | — | 0.8% | Oct 3, 2015 | Cross-site scripting (XSS) vulnerability in IBM OpenPages GRC Platform 6.2 before IF7, 6.2.1 before 6.2.1.1 IF5, 7.0 bef... |
| CVE-2015-0143 | — | — | 1.0% | Oct 3, 2015 | IBM OpenPages GRC Platform 6.2 before IF7, 6.2.1 before 6.2.1.1 IF5, 7.0 before FP4, and 7.1 before FP1 allows remote au... |
| CVE-2015-0142 | — | — | 1.0% | Oct 3, 2015 | IBM OpenPages GRC Platform 6.2 before IF7, 6.2.1 before 6.2.1.1 IF5, 7.0 before FP4, and 7.1 before FP1 allows remote au... |
| CVE-2015-0141 | — | — | 1.1% | Oct 3, 2015 | IBM OpenPages GRC Platform 6.2 before IF7, 6.2.1 before 6.2.1.1 IF5, 7.0 before FP4, and 7.1 before FP1 allows remote au... |
| CVE-2015-6309 | — | — | 1.7% | Oct 2, 2015 | Cisco Email Security Appliance (ESA) 8.5.6-106 and 9.6.0-042 allows remote authenticated users to cause a denial of serv... |
| CVE-2015-6308 | — | — | 1.6% | Oct 2, 2015 | Cisco NX-OS 6.0(2)U6(0.46) on N3K devices allows remote authenticated users to cause a denial of service (temporary SNMP... |
| CVE-2015-5653 | — | — | 2.9% | Oct 2, 2015 | Buffer overflow in Canary Labs Trend Web Server before 9.5.2 allows remote attackers to execute arbitrary code via a cra... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now