2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-4317 | — | — | 2.6% | Aug 20, 2015 | Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.2 allows remote attackers to cause a denial of servi... |
| CVE-2015-4315 | — | — | 1.9% | Aug 20, 2015 | The Call Policy Configuration page in Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.3 improperly v... |
| CVE-2015-4314 | — | — | 1.3% | Aug 20, 2015 | The System Snapshot feature in Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.1 allows remote authe... |
| CVE-2015-4323 | — | — | 1.0% | Aug 19, 2015 | Buffer overflow in Cisco NX-OS on Nexus 1000V devices for VMware vSphere 7.3(0)ZN(0.9); Nexus 3000 devices 6.0(2)U5(1.41... |
| CVE-2015-4310 | — | — | 2.2% | Aug 19, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in Cisco Finesse 10.5(1) allow remote attackers to inject arbitrary ... |
| CVE-2015-4296 | — | — | 1.8% | Aug 19, 2015 | Nexus Data Broker (NDB) on Cisco Nexus 3000 devices with software 6.0(2)A6(1) allows remote attackers to cause a denial ... |
| CVE-2015-4277 | — | — | 0.3% | Aug 19, 2015 | The global-configuration implementation on Cisco ASR 9000 devices with software 5.1.3 and 5.3.0 improperly closes vty se... |
| CVE-2015-6523 | — | — | 1.2% | Aug 19, 2015 | Cross-site request forgery (CSRF) vulnerability in the Portfolio plugin before 1.05 for WordPress allows remote attacker... |
| CVE-2015-6522 | — | — | 74.1% | Aug 19, 2015 | SQL injection vulnerability in the WP Symposium plugin before 15.8 for WordPress allows remote attackers to execute arbi... |
| CVE-2015-6255 | — | — | 2.3% | Aug 19, 2015 | Cross-site scripting (XSS) vulnerability in Cisco Unified Web and E-Mail Interaction Manager 9.0(2) allows remote attack... |
| CVE-2015-5621 | HIGH | 7.5 | 40.0% | Aug 19, 2015 | The snmp_pdu_parse function in snmp_api.c in net-snmp 5.7.2 and earlier does not remove the varBind variable in a netsnm... |
| CVE-2015-5163 | — | — | 1.5% | Aug 19, 2015 | The import task action in OpenStack Image Service (Glance) 2015.1.x before 2015.1.2 (kilo), when using the V2 API, allow... |
| CVE-2015-4324 | — | — | 1.1% | Aug 19, 2015 | Buffer overflow in Cisco NX-OS on Nexus 1000V devices for VMware vSphere 7.3(0)ZN(0.81), Nexus 3000 devices 7.3(0)ZN(0.8... |
| CVE-2015-4322 | — | — | 1.7% | Aug 19, 2015 | Cisco Content Security Management Appliance (SMA) 8.3.6-039, 9.1.0-31, and 9.1.0-103 improperly restricts the privileges... |
| CVE-2015-4308 | — | — | 1.6% | Aug 19, 2015 | The webGUI configuration-export feature in Cisco Edge Bluebird Operating System 1.2 on Edge 340 devices allows remote au... |
| CVE-2015-4301 | — | — | 1.7% | Aug 19, 2015 | Cisco NX-OS on Nexus 9000 devices 11.1(1c) allows remote authenticated users to cause a denial of service (device hang) ... |
| CVE-2015-4299 | — | — | 2.5% | Aug 19, 2015 | Cisco Unified Web and E-Mail Interaction Manager 9.0(2) improperly performs authorization, which allows remote authentic... |
| CVE-2015-4298 | — | — | 2.5% | Aug 19, 2015 | Cisco Unified Web and E-Mail Interaction Manager 9.0(2) and 11.0(1) improperly performs authorization, which allows remo... |
| CVE-2015-1830 | — | — | 84.4% | Aug 19, 2015 | Directory traversal vulnerability in the fileserver upload/download functionality for blob messages in Apache ActiveMQ 5... |
| CVE-2015-4302 | — | — | 2.2% | Aug 19, 2015 | The web interface in Cisco FireSIGHT Management Center 5.3.1.4 allows remote attackers to delete arbitrary system polici... |
| CVE-2015-4297 | — | — | 1.1% | Aug 19, 2015 | Open redirect vulnerability in Cisco WebEx Node for Media Convergence Server (MCS) allows remote attackers to redirect u... |
| CVE-2015-2502 | HIGH | 8.8 | 51.1% | Aug 19, 2015 | Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2015-6519 | — | — | 2.4% | Aug 18, 2015 | SQL injection vulnerability in Arab Portal 3 allows remote attackers to execute arbitrary SQL commands via the showemail... |
| CVE-2015-6518 | — | — | 3.5% | Aug 18, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in phpLiteAdmin 1.1 allow remote attackers to inject arbitrary web s... |
| CVE-2015-6517 | — | — | 2.6% | Aug 18, 2015 | Cross-site request forgery (CSRF) vulnerability in phpLiteAdmin 1.1 allows remote attackers to hijack the authentication... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now