2015 CVE Vulnerabilities

8,779 CVEs published in 2015.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2015-10088HIGH8.1A vulnerability, which was classified as critical, was found in ayttm up to 0.5.0.89. This affects the function http_con...
CVE-2015-10085HIGH7.5A vulnerability was found in GoPistolet. It has been declared as problematic. This vulnerability affects unknown code of...
CVE-2015-10081HIGH8.8A vulnerability was found in arnoldle submitByMailPlugin 1.0b2.9 and classified as problematic. This issue affects some ...
CVE-2015-10071HIGH7.5A vulnerability was found in gitter-badger ezpublish-modern-legacy. It has been rated as problematic. This issue affects...
CVE-2015-10067HIGH8.1A vulnerability was found in oznetmaster SSharpSmartThreadPool. It has been classified as problematic. This affects an u...
CVE-2015-10043HIGH8.8A vulnerability, which was classified as critical, was found in abreen Apollo. This affects an unknown part. The manipul...
CVE-2015-10039HIGH8A vulnerability was found in dobos domino. It has been rated as critical. Affected by this issue is some unknown functio...
CVE-2015-10038HIGH8A vulnerability was found in nym3r0s pplv2. It has been declared as critical. Affected by this vulnerability is an unkno...
CVE-2015-10025HIGH7.5A vulnerability has been found in luelista miniConf up to 1.7.6 and classified as problematic. Affected by this vulnerab...
CVE-2015-10012HIGH7.5** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in sumocoders FrameworkUserBundle up to 1.3.x. It has been rat...
CVE-2015-10004HIGH7.5Token validation methods are susceptible to a timing side-channel during HMAC comparison. With a large enough number of ...
CVE-2015-10005HIGH7.5A vulnerability was found in markdown-it up to 2.x. It has been classified as problematic. Affected is an unknown functi...
CVE-2015-5236HIGH7.5It was discovered that the IcedTea-Web used codebase attribute of the <applet> tag on the HTML page that hosts Java appl...
CVE-2015-1784HIGH8.8In nextgen-galery wordpress plugin before 2.0.77.3 there are two vulnerabilities which can allow an attacker to gain ful...
CVE-2015-3173HIGH7.2custom-content-type-manager Wordpress plugin can be used by an administrator to achieve arbitrary PHP remote code execut...
CVE-2015-20107HIGH7.6In Python (aka CPython) up to 3.10.8, the mailcap module does not add escape characters into commands discovered in the ...
CVE-2015-3298HIGH8.8Yubico ykneo-openpgp before 1.0.10 has a typo in which an invalid PIN can be used. When first powered up, a signature wi...
CVE-2015-20067HIGH7.5The WP Attachment Export WordPress plugin before 0.2.4 does not have proper access controls, allowing unauthenticated us...
CVE-2015-2074HIGH7.5The File Repository Server (FRS) CORBA listener in SAP BussinessObjects Edge 4.0 allows remote attackers to write to arb...
CVE-2015-2073HIGH7.5The File RepositoRy Server (FRS) CORBA listener in SAP BussinessObjects Edge 4.0 allows remote attackers to read arbitra...
CVE-2015-2100HIGH8.8Multiple stack-based buffer overflows in WebGate eDVR Manager and Control Center allow remote attackers to execute arbit...
CVE-2015-2099HIGH8.8Multiple buffer overflows in WebGate Control Center allow remote attackers to execute arbitrary code via unspecified vec...
CVE-2015-2098HIGH8.8Multiple stack-based buffer overflows in WebGate eDVR Manager allow remote attackers to execute arbitrary code via unspe...
CVE-2015-1877HIGH8.8The open_generic_xdg_mime function in xdg-open in xdg-utils 1.1.0 rc1 in Debian, when using dash, does not properly hand...
CVE-2015-20001HIGH7.5In the standard library in Rust before 1.2.0, BinaryHeap is not panic-safe. The binary heap is left in an inconsistent s...

Check if your code is affected by 2015 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now