2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-5737 | — | — | 0.5% | Sep 3, 2015 | The (1) mdare64_48.sys, (2) mdare32_48.sys, (3) mdare32_52.sys, (4) mdare64_52.sys, and (5) Fortishield.sys drivers in F... |
| CVE-2015-5736 | — | — | 2.0% | Sep 3, 2015 | The Fortishield.sys driver in Fortinet FortiClient before 5.2.4 allows local users to execute arbitrary code with kernel... |
| CVE-2015-5735 | — | — | 0.5% | Sep 3, 2015 | The (1) mdare64_48.sys, (2) mdare32_48.sys, (3) mdare32_52.sys, and (4) mdare64_52.sys drivers in Fortinet FortiClient b... |
| CVE-2015-5190 | — | — | 2.5% | Sep 3, 2015 | The pcsd web UI in PCS 0.9.139 and earlier allows remote authenticated users to execute arbitrary commands via "escape c... |
| CVE-2015-5189 | — | — | 1.0% | Sep 3, 2015 | Race condition in pcsd in PCS 0.9.139 and earlier uses a global variable to validate usernames, which allows remote auth... |
| CVE-2015-4077 | — | — | 1.0% | Sep 3, 2015 | The (1) mdare64_48.sys, (2) mdare32_48.sys, (3) mdare32_52.sys, and (4) mdare64_52.sys drivers in Fortinet FortiClient b... |
| CVE-2015-6277 | — | — | 0.9% | Sep 2, 2015 | The ARP implementation in Cisco NX-OS on Nexus 1000V devices for VMware vSphere 5.2(1)SV3(1.4), Nexus 3000 devices 7.3(0... |
| CVE-2015-6274 | — | — | 1.7% | Sep 2, 2015 | The IPv4 implementation on Cisco ASR 1000 devices with software 15.5(3)S allows remote attackers to cause a denial of se... |
| CVE-2015-4330 | — | — | 0.5% | Sep 2, 2015 | A local file script in Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.2 allows local users to gain ... |
| CVE-2015-6805 | — | — | 2.4% | Sep 2, 2015 | Cross-site scripting (XSS) vulnerability in the MDC Private Message plugin 1.0.0 for WordPress allows remote authenticat... |
| CVE-2015-3308 | — | — | 3.9% | Sep 2, 2015 | Double free vulnerability in lib/x509/x509_ext.c in GnuTLS before 3.3.14 allows remote attackers to cause a denial of se... |
| CVE-2015-6587 | — | — | 1.9% | Sep 2, 2015 | The vlserver in OpenAFS before 1.6.13 allows remote authenticated users to cause a denial of service (out-of-bounds read... |
| CVE-2015-6737 | — | — | 2.0% | Sep 1, 2015 | Cross-site scripting (XSS) vulnerability in the Widgets extension for MediaWiki allows remote attackers to inject arbitr... |
| CVE-2015-6736 | — | — | 2.7% | Sep 1, 2015 | The Quiz extension for MediaWiki allows remote attackers to cause a denial of service via regex metacharacters in a regu... |
| CVE-2015-6735 | — | — | 2.7% | Sep 1, 2015 | The reset functionality in the TimedMediaHandler extension for MediaWiki does not create a new transcode, which allows r... |
| CVE-2015-6734 | — | — | 2.1% | Sep 1, 2015 | Cross-site scripting (XSS) vulnerability in contrib/cssgen.php in the GeSHi, as used in the SyntaxHighlight_GeSHi extens... |
| CVE-2015-6733 | — | — | 2.7% | Sep 1, 2015 | GeSHi, as used in the SyntaxHighlight_GeSHi extension and MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x bef... |
| CVE-2015-6732 | — | — | 1.7% | Sep 1, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in the SemanticForms extension for MediaWiki allow remote attackers ... |
| CVE-2015-6731 | — | — | 1.4% | Sep 1, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in the SemanticForms extension for MediaWiki allow remote attackers ... |
| CVE-2015-6730 | — | — | 2.0% | Sep 1, 2015 | Cross-site scripting (XSS) vulnerability in thumb.php in MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x befo... |
| CVE-2015-6729 | — | — | 2.0% | Sep 1, 2015 | Cross-site scripting (XSS) vulnerability in thumb.php in MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x befo... |
| CVE-2015-6728 | — | — | 0.9% | Sep 1, 2015 | The ApiBase::getWatchlistUser function in MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2 does ... |
| CVE-2015-6727 | — | — | 2.3% | Sep 1, 2015 | The Special:DeletedContributions page in MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2 allows... |
| CVE-2015-6520 | — | — | 2.4% | Sep 1, 2015 | IPPUSBXD before 1.22 listens on all interfaces, which allows remote attackers to obtain access to USB connected printers... |
| CVE-2015-2807 | — | — | 7.3% | Sep 1, 2015 | Cross-site scripting (XSS) vulnerability in js/window.php in the Navis DocumentCloud plugin before 0.1.1 for WordPress a... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now