2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-0710 | — | — | 0.7% | Apr 29, 2015 | The Overlay Transport Virtualization (OTV) implementation in Cisco IOS XE 3.10S allows remote attackers to cause a denia... |
| CVE-2015-0709 | — | — | 1.1% | Apr 29, 2015 | Cisco IOS 15.5S and IOS XE allow remote authenticated users to cause a denial of service (device crash) by leveraging kn... |
| CVE-2015-0708 | — | — | 0.7% | Apr 29, 2015 | Cisco IOS 15.4S, 15.4SN, and 15.5S and IOS XE 3.13S and 3.14S allow remote attackers to cause a denial of service (devic... |
| CVE-2015-1151 | — | — | 1.9% | Apr 28, 2015 | Wiki Server in Apple OS X Server before 4.1 allows remote attackers to bypass intended restrictions on Activity and Peop... |
| CVE-2015-1150 | — | — | 2.0% | Apr 28, 2015 | The Firewall component in Apple OS X Server before 4.1 uses an incorrect pathname in configuration files, which allows r... |
| CVE-2015-3340 | — | — | 0.8% | Apr 28, 2015 | Xen 4.2.x through 4.5.x does not initialize certain fields, which allows certain remote service domains to obtain sensit... |
| CVE-2015-1863 | — | — | 5.2% | Apr 28, 2015 | Heap-based buffer overflow in wpa_supplicant 1.0 through 2.4 allows remote attackers to cause a denial of service (crash... |
| CVE-2015-1774 | — | — | 7.6% | Apr 28, 2015 | The HWP filter in LibreOffice before 4.3.7 and 4.4.x before 4.4.2 and Apache OpenOffice before 4.1.2 allows remote attac... |
| CVE-2015-2115 | — | — | 0.5% | Apr 27, 2015 | Unspecified vulnerability in HP Capture and Route Software (HPCR) 1.3 before Patch 7, 1.3 FP1 before Patch 1, and 1.4 be... |
| CVE-2015-2117 | — | — | 8.7% | Apr 27, 2015 | HP TippingPoint Security Management System (SMS) and TippingPoint Virtual Security Management System (vSMS) before 4.1 p... |
| CVE-2015-2116 | — | — | 4.9% | Apr 27, 2015 | Unspecified vulnerability in HP Storage Data Protector 7.x before 7.03 build 107 allows remote authenticated users to ex... |
| CVE-2015-1885 | — | — | 3.4% | Apr 27, 2015 | WebSphereOauth20SP.ear in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.39, 8.0 before 8.0.0.11, 8.5 Liberty P... |
| CVE-2015-1882 | — | — | 3.0% | Apr 27, 2015 | Multiple race conditions in IBM WebSphere Application Server (WAS) 8.5 Liberty Profile before 8.5.5.5 allow remote authe... |
| CVE-2015-0175 | — | — | 1.9% | Apr 27, 2015 | IBM WebSphere Application Server (WAS) 8.5 Liberty Profile before 8.5.5.5 does not properly implement authData elements,... |
| CVE-2015-0174 | — | — | 1.7% | Apr 27, 2015 | The SNMP implementation in IBM WebSphere Application Server (WAS) 8.5 before 8.5.5.5 does not properly handle configurat... |
| CVE-2015-2706 | — | — | 2.6% | Apr 27, 2015 | Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37.0.2 allows remote a... |
| CVE-2015-1908 | — | — | 1.8% | Apr 27, 2015 | Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27,... |
| CVE-2015-1886 | — | — | 3.5% | Apr 27, 2015 | The Remote Document Conversion Service (DCS) in IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 C... |
| CVE-2015-0176 | — | — | 1.6% | Apr 27, 2015 | Cross-site scripting (XSS) vulnerability in MQ XR WebSockets Listener in WMQ Telemetry in IBM WebSphere MQ 8.0 before 8.... |
| CVE-2015-0113 | — | — | 1.2% | Apr 27, 2015 | The Jazz help system in IBM Rational Collaborative Lifecycle Management 4.0 through 5.0.2, Rational Quality Manager 4.0 ... |
| CVE-2015-3417 | — | — | 2.6% | Apr 24, 2015 | Use-after-free vulnerability in the ff_h264_free_tables function in libavcodec/h264.c in FFmpeg before 2.3.6 allows remo... |
| CVE-2015-3416 | — | — | 5.5% | Apr 24, 2015 | The sqlite3VXPrintf function in printf.c in SQLite before 3.8.9 does not properly handle precision and width values duri... |
| CVE-2015-3415 | — | — | 4.9% | Apr 24, 2015 | The sqlite3VdbeExec function in vdbe.c in SQLite before 3.8.9 does not properly implement comparison operators, which al... |
| CVE-2015-3414 | — | — | 4.9% | Apr 24, 2015 | SQLite before 3.8.9 does not properly implement the dequoting of collation-sequence names, which allows context-dependen... |
| CVE-2015-3310 | — | — | 5.4% | Apr 24, 2015 | Buffer overflow in the rc_mksid function in plugins/radius/util.c in Paul's PPP Package (ppp) 2.4.6 and earlier, when th... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now