2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-3832 | — | — | 2.9% | Oct 1, 2015 | Multiple buffer overflows in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I allow remote attackers ... |
| CVE-2015-3831 | — | — | 1.5% | Oct 1, 2015 | Buffer overflow in the readAt function in BpMediaHTTPConnection in media/libmedia/IMediaHTTPConnection.cpp in the medias... |
| CVE-2015-3829 | — | — | 89.8% | Oct 1, 2015 | Off-by-one error in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in Android before 5.... |
| CVE-2015-3828 | — | — | 85.4% | Oct 1, 2015 | The MPEG4Extractor::parse3GPPMetaData function in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I do... |
| CVE-2015-3827 | — | — | 81.1% | Oct 1, 2015 | The MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I does not ... |
| CVE-2015-3826 | — | — | 73.6% | Oct 1, 2015 | The MPEG4Extractor::parse3GPPMetaData function in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I do... |
| CVE-2015-3824 | — | — | 90.5% | Oct 1, 2015 | The MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I does not ... |
| CVE-2015-1541 | — | — | 0.5% | Oct 1, 2015 | The AppWidgetServiceImpl implementation in com/android/server/appwidget/AppWidgetServiceImpl.java in the Settings applic... |
| CVE-2015-1539 | — | — | 85.8% | Oct 1, 2015 | Multiple integer underflows in the ESDS::parseESDescriptor function in ESDS.cpp in libstagefright in Android before 5.1.... |
| CVE-2015-1538 | — | — | 99.1% | Oct 1, 2015 | Integer overflow in the SampleTable::setSampleToChunkParams function in SampleTable.cpp in libstagefright in Android bef... |
| CVE-2015-1536 | — | — | 0.7% | Oct 1, 2015 | Integer overflow in the Bitmap_createFromParcel function in core/jni/android/graphics/Bitmap.cpp in Android before 5.1.1... |
| CVE-2015-1528 | — | — | 2.7% | Oct 1, 2015 | Integer overflow in the native_handle_create function in libcutils/native_handle.c in Android before 5.1.1 LMY48M allows... |
| CVE-2015-5950 | — | — | 0.4% | Sep 30, 2015 | The NVIDIA display driver R352 before 353.82 and R340 before 341.81 on Windows; R304 before 304.128, R340 before 340.93,... |
| CVE-2015-5435 | — | — | 2.4% | Sep 30, 2015 | Unspecified vulnerability in HP Integrated Lights-Out (iLO) firmware 3 before 1.85 and 4 before 2.22 allows remote authe... |
| CVE-2015-7604 | — | — | 0.9% | Sep 29, 2015 | Cross-site scripting (XSS) vulnerability in Splunk Web in Splunk Enterprise 6.2.x before 6.2.6 and Splunk Light 6.2.x be... |
| CVE-2015-7603 | — | — | 60.7% | Sep 29, 2015 | Directory traversal vulnerability in Konica Minolta FTP Utility 1.0 allows remote attackers to read arbitrary files via ... |
| CVE-2015-7602 | — | — | 60.9% | Sep 29, 2015 | Directory traversal vulnerability in BisonWare BisonFTP 3.5 allows remote attackers to read arbitrary files via a ../ (d... |
| CVE-2015-7601 | — | — | 58.3% | Sep 29, 2015 | Directory traversal vulnerability in PCMan's FTP Server 2.0.7 allows remote attackers to read arbitrary files via a ..//... |
| CVE-2015-7337 | — | — | 1.7% | Sep 29, 2015 | The editor in IPython Notebook before 3.2.2 and Jupyter Notebook 4.0.x before 4.0.5 allows remote attackers to execute a... |
| CVE-2015-7320 | — | — | 2.1% | Sep 29, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in cpabc_appointments_admin_int_bookings_list.inc.php in the Appoint... |
| CVE-2015-7319 | — | — | 2.4% | Sep 29, 2015 | SQL injection vulnerability in cpabc_appointments_admin_int_calendar_list.inc.php in the Appointment Booking Calendar pl... |
| CVE-2015-5076 | — | — | 1.9% | Sep 29, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in X2Engine X2CRM before 5.0.9 allow remote attackers to inject arbi... |
| CVE-2015-5075 | — | — | 2.8% | Sep 29, 2015 | Cross-site request forgery (CSRF) vulnerability in X2Engine X2CRM before 5.2 allows remote attackers to hijack the authe... |
| CVE-2015-5074 | — | — | 7.5% | Sep 29, 2015 | Incomplete blacklist vulnerability in the FileUploadsFilter class in protected/components/filters/FileUploadsFilter.php ... |
| CVE-2015-0299 | — | — | 1.3% | Sep 29, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in Open Source Point of Sale 2.3.1 allow remote authenticated users ... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now