2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-2270 | — | — | 1.9% | Jun 1, 2015 | lib/moodlelib.php in Moodle through 2.5.9, 2.6.x before 2.6.9, 2.7.x before 2.7.6, and 2.8.x before 2.8.4, when the them... |
| CVE-2015-2269 | — | — | 3.3% | Jun 1, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in lib/javascript-static.js in Moodle through 2.5.9, 2.6.x before 2.... |
| CVE-2015-2268 | — | — | 2.2% | Jun 1, 2015 | filter/urltolink/filter.php in Moodle through 2.5.9, 2.6.x before 2.6.9, 2.7.x before 2.7.6, and 2.8.x before 2.8.4 allo... |
| CVE-2015-2267 | — | — | 1.6% | Jun 1, 2015 | mdeploy.php in Moodle through 2.5.9, 2.6.x before 2.6.9, 2.7.x before 2.7.6, and 2.8.x before 2.8.4 allows remote authen... |
| CVE-2015-2266 | — | — | 1.7% | Jun 1, 2015 | message/index.php in Moodle through 2.5.9, 2.6.x before 2.6.9, 2.7.x before 2.7.6, and 2.8.x before 2.8.4 does not consi... |
| CVE-2015-1493 | — | — | 2.6% | Jun 1, 2015 | Directory traversal vulnerability in the min_get_slash_argument function in lib/configonlylib.php in Moodle through 2.5.... |
| CVE-2015-0218 | — | — | 1.0% | Jun 1, 2015 | Cross-site request forgery (CSRF) vulnerability in auth/shibboleth/logout.php in Moodle through 2.5.9, 2.6.x before 2.6.... |
| CVE-2015-0217 | — | — | 2.2% | Jun 1, 2015 | filter/mediaplugin/filter.php in Moodle through 2.5.9, 2.6.x before 2.6.7, 2.7.x before 2.7.4, and 2.8.x before 2.8.2 al... |
| CVE-2015-0216 | — | — | 1.5% | Jun 1, 2015 | access.php in the Lesson module in Moodle 2.8.x before 2.8.2 does not set the RISK_XSS bit for graders, which allows rem... |
| CVE-2015-0215 | — | — | 1.7% | Jun 1, 2015 | calendar/externallib.php in Moodle through 2.5.9, 2.6.x before 2.6.7, 2.7.x before 2.7.4, and 2.8.x before 2.8.2 allows ... |
| CVE-2015-0214 | — | — | 1.7% | Jun 1, 2015 | message/externallib.php in Moodle through 2.5.9, 2.6.x before 2.6.7, 2.7.x before 2.7.4, and 2.8.x before 2.8.2 allows r... |
| CVE-2015-0213 | — | — | 1.0% | Jun 1, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in (1) editcategories.html and (2) editcategories.php in the ... |
| CVE-2015-0212 | — | — | 1.5% | Jun 1, 2015 | Cross-site scripting (XSS) vulnerability in course/pending.php in Moodle through 2.5.9, 2.6.x before 2.6.7, 2.7.x before... |
| CVE-2015-0211 | — | — | 1.7% | Jun 1, 2015 | mod/lti/ajax.php in Moodle through 2.5.9, 2.6.x before 2.6.7, 2.7.x before 2.7.4, and 2.8.x before 2.8.2 does not consid... |
| CVE-2015-3939 | — | — | 2.6% | May 31, 2015 | Directory traversal vulnerability in the NC854 and NC856 modules for IDS RTU 850C devices allows remote authenticated us... |
| CVE-2015-3292 | — | — | 12.2% | May 31, 2015 | The installer in NetApp OnCommand Workflow Automation before 2.2.1P1 and 3.x before 3.0P1 sets up the Java Debugging Wir... |
| CVE-2015-2949 | — | — | 1.2% | May 31, 2015 | Cross-site scripting (XSS) vulnerability in ZenPhoto20 1.1.3 and earlier allows remote attackers to inject arbitrary web... |
| CVE-2015-2948 | — | — | 1.2% | May 31, 2015 | Cross-site scripting (XSS) vulnerability in the image processor in Zenphoto before 1.4.8 allows remote attackers to inje... |
| CVE-2015-1010 | — | — | 0.6% | May 31, 2015 | Rockwell Automation RSView32 7.60.00 (aka CPR9 SR4) and earlier does not properly encrypt credentials, which allows loca... |
| CVE-2015-6593 | — | — | — | May 30, 2015 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-6593. Reason: This candidate is a duplicate of... |
| CVE-2015-4138 | — | — | 1.4% | May 30, 2015 | The WebUI component in Blue Coat SSL Visibility Appliance SV800, SV1800, SV2800, and SV3800 3.6.x through 3.8.x before 3... |
| CVE-2015-2855 | — | — | 1.4% | May 30, 2015 | The WebUI component in Blue Coat SSL Visibility Appliance SV800, SV1800, SV2800, and SV3800 3.6.x through 3.8.x before 3... |
| CVE-2015-2854 | — | — | 1.4% | May 30, 2015 | The WebUI component in Blue Coat SSL Visibility Appliance SV800, SV1800, SV2800, and SV3800 3.6.x through 3.8.x before 3... |
| CVE-2015-2853 | — | — | 1.5% | May 30, 2015 | Session fixation vulnerability in the WebUI component in Blue Coat SSL Visibility Appliance SV800, SV1800, SV2800, and S... |
| CVE-2015-2852 | — | — | 0.7% | May 30, 2015 | Cross-site request forgery (CSRF) vulnerability in the WebUI component in Blue Coat SSL Visibility Appliance SV800, SV18... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now