2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-5464 | — | — | 0.4% | Jul 22, 2015 | The Gemalto SafeNet Luna HSM allows remote authenticated users to bypass intended key-export restrictions by leveraging ... |
| CVE-2015-4652 | — | — | 2.3% | Jul 22, 2015 | epan/dissectors/packet-gsm_a_dtap.c in the GSM DTAP dissector in Wireshark 1.12.x before 1.12.6 does not properly valida... |
| CVE-2015-4651 | — | — | 3.5% | Jul 22, 2015 | The dissect_wccp2r1_address_table_info function in epan/dissectors/packet-wccp.c in the WCCP dissector in Wireshark 1.12... |
| CVE-2015-5611 | — | — | 1.8% | Jul 21, 2015 | Unspecified vulnerability in Uconnect before 15.26.1, as used in certain Fiat Chrysler Automobiles (FCA) from 2013 to 20... |
| CVE-2015-4554 | — | — | 3.5% | Jul 21, 2015 | Multiple unspecified vulnerabilities in TIBCO Spotfire Client and Spotfire Web Player Client in Spotfire Analyst before ... |
| CVE-2015-2134 | — | — | 0.9% | Jul 21, 2015 | Cross-site request forgery (CSRF) vulnerability in HP System Management Homepage (SMH) before 7.5.0 allows remote authen... |
| CVE-2015-1906 | — | — | 1.3% | Jul 21, 2015 | Cross-site scripting (XSS) vulnerability in the REST API in IBM Business Process Manager (BPM) 7.5.x through 7.5.1.2, 8.... |
| CVE-2015-1905 | — | — | 1.5% | Jul 21, 2015 | The REST API in IBM Business Process Manager (BPM) 7.5.x through 7.5.1.2, 8.0.x through 8.0.1.3, 8.5.0 through 8.5.0.1, ... |
| CVE-2015-5610 | — | — | 2.4% | Jul 21, 2015 | The RSM (aka RSMWinService) service in SolarWinds N-Able N-Central before 9.5.1.4514 uses the same password decryption k... |
| CVE-2015-2869 | — | — | 3.7% | Jul 21, 2015 | The FileInfo plugin before 2.22 for Ghisler Total Commander allows remote attackers to cause a denial of service (out-of... |
| CVE-2015-4283 | — | — | 1.4% | Jul 21, 2015 | Cisco Videoscape Policy Resource Manager (PRM) 3.5.4 allows remote attackers to cause a denial of service (CPU and memor... |
| CVE-2015-4247 | — | — | — | Jul 21, 2015 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2015-4246 | — | — | — | Jul 21, 2015 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2015-4245 | — | — | — | Jul 21, 2015 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2015-5124 | — | — | 6.9% | Jul 20, 2015 | Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481... |
| CVE-2015-4279 | — | — | 0.4% | Jul 20, 2015 | The Manager component in Cisco Unified Computing System (UCS) 2.2(3b) on B Blade Server devices allows local users to ga... |
| CVE-2015-3185 | — | — | 18.8% | Jul 20, 2015 | The ap_some_auth_required function in server/request.c in the Apache HTTP Server 2.4.x before 2.4.14 does not consider t... |
| CVE-2015-3183 | — | — | 73.3% | Jul 20, 2015 | The chunked transfer coding implementation in the Apache HTTP Server before 2.4.14 does not properly parse chunk headers... |
| CVE-2015-2863 | — | — | 10.3% | Jul 20, 2015 | Open redirect vulnerability in Kaseya Virtual System Administrator (VSA) 7.x before 7.0.0.29, 8.x before 8.0.0.18, 9.0 b... |
| CVE-2015-2862 | — | — | 9.5% | Jul 20, 2015 | Directory traversal vulnerability in Kaseya Virtual System Administrator (VSA) 7.x before 7.0.0.29, 8.x before 8.0.0.18,... |
| CVE-2015-0253 | — | — | 14.7% | Jul 20, 2015 | The read_request_line function in server/protocol.c in the Apache HTTP Server 2.4.12 does not initialize the protocol st... |
| CVE-2015-2426 | HIGH | 8.8 | 86.7% | Jul 20, 2015 | Buffer underflow in atmfd.dll in the Windows Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2... |
| CVE-2015-2418 | — | — | 1.6% | Jul 20, 2015 | Race condition in Microsoft Malicious Software Removal Tool (MSRT) before 5.26 allows local users to gain privileges via... |
| CVE-2015-4111 | — | — | 4.1% | Jul 20, 2015 | mc_demux_mp4_ds.ax in an unspecified third-party codec demux in BlackBerry Link before 1.2.3.53 with installer before 1.... |
| CVE-2015-1984 | — | — | 1.0% | Jul 20, 2015 | IBM InfoSphere Master Data Management Collaborative Edition 9.1, 10.1, 11.0, 11.3, and 11.4 before FP03 allows remote au... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now