2015 CVE Vulnerabilities

8,779 CVEs published in 2015.

CVE IDSeverityCVSSDescription
CVE-2015-4234Cisco NX-OS 6.0(2) and 6.2(2) on Nexus devices has an improper OS configuration, which allows local users to obtain root...
CVE-2015-4232Cisco NX-OS 6.2(10) on Nexus and MDS 9000 devices allows local users to execute arbitrary OS commands by entering crafte...
CVE-2015-4231The Python interpreter in Cisco NX-OS 6.2(8a) on Nexus 7000 devices allows local users to bypass intended access restric...
CVE-2015-3728The WiFi Connectivity feature in Apple iOS before 8.4 allows remote Wi-Fi access points to trigger an automatic associat...
CVE-2015-3727WebKit in Apple Safari before 6.2.7, 7.x before 7.1.7, and 8.x before 8.0.7, as used in Apple iOS before 8.4 and other p...
CVE-2015-3726The Telephony subsystem in Apple iOS before 8.4 allows physically proximate attackers to execute arbitrary code via a cr...
CVE-2015-3725MobileInstallation in Apple iOS before 8.4 does not ensure the uniqueness of Watch bundle IDs, which allows attackers to...
CVE-2015-3724CoreGraphics in Apple iOS before 8.4 allows remote attackers to execute arbitrary code or cause a denial of service (mem...
CVE-2015-3723CoreGraphics in Apple iOS before 8.4 allows remote attackers to execute arbitrary code or cause a denial of service (mem...
CVE-2015-3722Application Store in Apple iOS before 8.4 does not ensure the uniqueness of bundle IDs, which allows attackers to cause ...
CVE-2015-3721The kernel in Apple iOS before 8.4 and OS X before 10.10.4 does not properly handle HFS parameters, which allows attacke...
CVE-2015-3720The kernel in Apple OS X before 10.10.4 does not properly manage memory in kernel-extension APIs, which allows attackers...
CVE-2015-3719TrueTypeScaler in FontParser in Apple iOS before 8.4 and OS X before 10.10.4 allows remote attackers to execute arbitrar...
CVE-2015-3718systemstatsd in the System Stats subsystem in Apple OS X before 10.10.4 does not properly interpret data types encounter...
CVE-2015-3717Multiple buffer overflows in the printf functionality in SQLite, as used in Apple iOS before 8.4 and OS X before 10.10.4...
CVE-2015-3716Spotlight in Apple OS X before 10.10.4 allows attackers to execute arbitrary commands via a crafted name of a photo file...
CVE-2015-3715The code-signing implementation in Apple OS X before 10.10.4 does not properly consider libraries that are external to a...
CVE-2015-3714Apple OS X before 10.10.4 does not properly consider custom resource rules during app signature verification, which allo...
CVE-2015-3713QuickTime in Apple OS X before 10.10.4 allows remote attackers to execute arbitrary code or cause a denial of service (m...
CVE-2015-3712The NVIDIA graphics driver in Apple OS X before 10.10.4 allows attackers to execute arbitrary code in a privileged conte...
CVE-2015-3711The NTFS implementation in Apple OS X before 10.10.4 allows attackers to obtain sensitive memory-layout information for ...
CVE-2015-3710Mail in Apple iOS before 8.4 and OS X before 10.10.4 allows remote attackers to trigger a refresh operation, and consequ...
CVE-2015-3709Race condition in kext tools in Apple OS X before 10.10.4 allows local users to bypass intended signature requirements f...
CVE-2015-3708kextd in kext tools in Apple OS X before 10.10.4 allows attackers to write to arbitrary files via a crafted app that con...
CVE-2015-3707The FireWire driver in IOFireWireFamily in Apple OS X before 10.10.4 allows attackers to execute arbitrary code in a pri...

Check if your code is affected by 2015 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now