2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-3358 | — | — | 1.2% | Apr 21, 2015 | Multiple open redirect vulnerabilities in the Tadaa! module before 7.x-1.4 for Drupal allow remote attackers to redirect... |
| CVE-2015-3357 | — | — | 1.0% | Apr 21, 2015 | Cross-site scripting (XSS) vulnerability in the Wishlist module before 6.x-2.7 and 7.x-2.x before 7.x-2.7 for Drupal all... |
| CVE-2015-3356 | — | — | 0.7% | Apr 21, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Tadaa! module before 7.x-1.4 for Drupal allow remote a... |
| CVE-2015-3355 | — | — | 0.7% | Apr 21, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Batch Jobs module before 7.x-1.2 for Drupal allow remo... |
| CVE-2015-3354 | — | — | 0.7% | Apr 21, 2015 | Cross-site request forgery (CSRF) vulnerability in the Wishlist module before 6.x-2.7 and 7.x-2.x before 7.x-2.7 for Dru... |
| CVE-2015-3353 | — | — | 1.0% | Apr 21, 2015 | Cross-site scripting (XSS) vulnerability in the Field Display Label module before 7.x-1.3 for Drupal allows remote authe... |
| CVE-2015-3352 | — | — | 0.7% | Apr 21, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Jammer module before 6.x-1.8 and 7.x-1.x before 7.x-1.... |
| CVE-2015-3351 | — | — | 0.7% | Apr 21, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Log Watcher module before 6.x-1.2 for Drupal allow rem... |
| CVE-2015-3350 | — | — | 0.7% | Apr 21, 2015 | Cross-site request forgery (CSRF) vulnerability in the Todo Filter module before 6.x-1.1 and 7.x-1.x before 7.x-1.1 for ... |
| CVE-2015-3349 | — | — | 0.7% | Apr 21, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Htaccess module before 7.x-2.3 for Drupal allow remote... |
| CVE-2015-3348 | — | — | 1.0% | Apr 21, 2015 | Cross-site scripting (XSS) vulnerability in the Cloudwords for Multilingual Drupal module before 7.x-2.3 for Drupal allo... |
| CVE-2015-3347 | — | — | 0.7% | Apr 21, 2015 | Cross-site request forgery (CSRF) vulnerability in the Cloudwords for Multilingual Drupal module before 7.x-2.3 for Drup... |
| CVE-2015-3346 | — | — | 1.3% | Apr 21, 2015 | SQL injection vulnerability in the WikiWiki module before 6.x-1.2 for Drupal allows remote attackers to execute arbitrar... |
| CVE-2015-3345 | — | — | 0.9% | Apr 21, 2015 | SQL injection vulnerability in the PHPlist Integration Module before 6.x-1.7 for Drupal allows remote administrators to ... |
| CVE-2015-3344 | — | — | 1.0% | Apr 21, 2015 | Cross-site scripting (XSS) vulnerability in the Course module 6.x-1.x before 6.x-1.2 and 7.x-1.x before 7.x-1.4 for Drup... |
| CVE-2015-3343 | — | — | 0.7% | Apr 21, 2015 | Cross-site request forgery (CSRF) vulnerability in the OPAC module before 7.x-2.3 for Drupal allows remote attackers to ... |
| CVE-2015-3342 | — | — | 1.2% | Apr 21, 2015 | Open redirect vulnerability in the Ubercart Currency Conversion module before 6.x-1.2 for Drupal allows remote attackers... |
| CVE-2015-0135 | — | — | 42.3% | Apr 21, 2015 | IBM Domino 8.5 before 8.5.3 FP6 IF4 and 9.0 before 9.0.1 FP3 IF2 allows remote attackers to execute arbitrary code or ca... |
| CVE-2015-2825 | — | — | 14.5% | Apr 21, 2015 | Unrestricted file upload vulnerability in sam-ajax-admin.php in the Simple Ads Manager plugin before 2.5.96 for WordPres... |
| CVE-2015-2042 | — | — | 0.4% | Apr 21, 2015 | net/rds/sysctl.c in the Linux kernel before 3.19 uses an incorrect data type in a sysctl table, which allows local users... |
| CVE-2015-2041 | — | — | 0.5% | Apr 21, 2015 | net/llc/sysctl_net_llc.c in the Linux kernel before 3.19 uses an incorrect data type in a sysctl table, which allows loc... |
| CVE-2015-1701 | HIGH | 7.8 | 56.2% | Apr 21, 2015 | Win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Vista SP2, and Server 2008 SP2 allows local ... |
| CVE-2015-0703 | — | — | 1.1% | Apr 21, 2015 | Cross-site scripting (XSS) vulnerability in the administrative web interface in Cisco Unified MeetingPlace 8.6(1.9) allo... |
| CVE-2015-0702 | — | — | 3.0% | Apr 21, 2015 | Unrestricted file upload vulnerability in the Custom Prompts upload implementation in Cisco Unified MeetingPlace 8.6(1.9... |
| CVE-2015-3336 | — | — | 1.5% | Apr 19, 2015 | Google Chrome before 42.0.2311.90 does not always ask the user before proceeding with CONTENT_SETTINGS_TYPE_FULLSCREEN a... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now