2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-3922 | — | — | 2.1% | May 27, 2015 | Open redirect vulnerability in mode.php in Coppermine Photo Gallery before 1.5.36 allows remote attackers to redirect us... |
| CVE-2015-3921 | — | — | 1.5% | May 27, 2015 | Cross-site scripting (XSS) vulnerability in contact.php in Coppermine Photo Gallery before 1.5.36 allows remote authenti... |
| CVE-2015-3339 | — | — | 0.3% | May 27, 2015 | Race condition in the prepare_binprm function in fs/exec.c in the Linux kernel before 3.19.6 allows local users to gain ... |
| CVE-2015-3332 | — | — | 0.4% | May 27, 2015 | A certain backport in the TCP Fast Open implementation for the Linux kernel before 3.18 does not properly maintain a cou... |
| CVE-2015-3331 | — | — | 10.0% | May 27, 2015 | The __driver_rfc4106_decrypt function in arch/x86/crypto/aesni-intel_glue.c in the Linux kernel before 3.19.3 does not p... |
| CVE-2015-2922 | — | — | 3.0% | May 27, 2015 | The ndisc_router_discovery function in net/ipv6/ndisc.c in the Neighbor Discovery (ND) protocol implementation in the IP... |
| CVE-2015-2830 | — | — | 0.4% | May 27, 2015 | arch/x86/kernel/entry_64.S in the Linux kernel before 3.19.2 does not prevent the TS_COMPAT flag from reaching a user-mo... |
| CVE-2015-2666 | — | — | 0.4% | May 27, 2015 | Stack-based buffer overflow in the get_matching_model_microcode function in arch/x86/kernel/cpu/microcode/intel_early.c ... |
| CVE-2015-3906 | — | — | 2.1% | May 26, 2015 | The logcat_dump_text function in wiretap/logcat.c in the Android Logcat file parser in Wireshark 1.12.x before 1.12.5 do... |
| CVE-2015-3903 | — | — | 1.6% | May 26, 2015 | libraries/Config.class.php in phpMyAdmin 4.0.x before 4.0.10.10, 4.2.x before 4.2.13.3, 4.3.x before 4.3.13.1, and 4.4.x... |
| CVE-2015-3902 | — | — | 1.1% | May 26, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the setup process in phpMyAdmin 4.0.x before 4.0.10.10, 4.... |
| CVE-2015-3815 | — | — | 2.5% | May 26, 2015 | The detect_version function in wiretap/logcat.c in the Android Logcat file parser in Wireshark 1.12.x before 1.12.5 does... |
| CVE-2015-3814 | — | — | 2.9% | May 26, 2015 | The (1) dissect_tfs_request and (2) dissect_tfs_response functions in epan/dissectors/packet-ieee80211.c in the IEEE 802... |
| CVE-2015-3813 | — | — | 2.7% | May 26, 2015 | The fragment_add_work function in epan/reassemble.c in the packet-reassembly feature in Wireshark 1.12.x before 1.12.5 d... |
| CVE-2015-3812 | — | — | 3.6% | May 26, 2015 | Multiple memory leaks in the x11_init_protocol function in epan/dissectors/packet-x11.c in the X11 dissector in Wireshar... |
| CVE-2015-3811 | — | — | 2.9% | May 26, 2015 | epan/dissectors/packet-wcp.c in the WCP dissector in Wireshark 1.10.x before 1.10.14 and 1.12.x before 1.12.5 improperly... |
| CVE-2015-3810 | — | — | 3.4% | May 26, 2015 | epan/dissectors/packet-websocket.c in the WebSocket dissector in Wireshark 1.12.x before 1.12.5 uses a recursive algorit... |
| CVE-2015-3809 | — | — | 2.8% | May 26, 2015 | The dissect_lbmr_pser function in epan/dissectors/packet-lbmr.c in the LBMR dissector in Wireshark 1.12.x before 1.12.5 ... |
| CVE-2015-3808 | — | — | 2.7% | May 26, 2015 | The dissect_lbmr_pser function in epan/dissectors/packet-lbmr.c in the LBMR dissector in Wireshark 1.12.x before 1.12.5 ... |
| CVE-2015-0986 | — | — | 2.4% | May 26, 2015 | Multiple stack-based buffer overflows in Moxa VPort ActiveX SDK Plus before 2.8 allow remote attackers to insert assembl... |
| CVE-2015-4092 | — | — | 3.2% | May 26, 2015 | Buffer overflow in the XComms process in SAP Afaria 7.00.6620.2 SP5 allows remote attackers to cause a denial of service... |
| CVE-2015-4091 | — | — | 2.9% | May 26, 2015 | XML external entity (XXE) vulnerability in SAP NetWeaver AS Java 7.4 allows remote attackers to send TCP requests to int... |
| CVE-2015-1013 | — | — | 1.3% | May 26, 2015 | OSIsoft PI AF 2.6 and 2.7 and PI SQL for AF 2.1.2.19 do not ensure that the PI SQL (AF) Trusted Users group lacks the Ev... |
| CVE-2015-1008 | — | — | 1.3% | May 26, 2015 | SQL injection vulnerability in Emerson AMS Device Manager before 13 allows remote authenticated users to gain privileges... |
| CVE-2015-0962 | — | — | 1.4% | May 25, 2015 | Barracuda Web Filter 7.x and 8.x before 8.1.0.005, when SSL Inspection is enabled, uses the same root Certification Auth... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now