2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-9550 | HIGH | 7.5 | 1.5% | Nov 24, 2020 | An issue was discovered on TOTOLINK A850R-V1 through 1.0.1-B20150707.1612 and F1-V2 through 1.1-B20150708.1646 devices. ... |
| CVE-2015-9548 | HIGH | 7.5 | 1.1% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 1.2.0. It allows attackers to cause a denial of service (memory cons... |
| CVE-2015-9547 | HIGH | 7.5 | 0.5% | Apr 10, 2020 | An issue was discovered on Samsung mobile devices with JBP(4.3) and KK(4.4.2) software. Because the READ_LOGS permission... |
| CVE-2015-9545 | HIGH | 7.1 | 1.3% | Apr 7, 2020 | An issue was discovered in xdLocalStorage through 2.0.5. The receiveMessage() function in xdLocalStorage.js does not imp... |
| CVE-2015-9544 | HIGH | 7.1 | 1.3% | Apr 7, 2020 | An issue was discovered in xdLocalStorage through 2.0.5. The receiveMessage() function in xdLocalStoragePostMessageApi.j... |
| CVE-2015-8536 | HIGH | 8.8 | 0.5% | Mar 27, 2020 | MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A vulnerability was discovered (fixe... |
| CVE-2015-8535 | HIGH | 7.8 | 0.8% | Mar 27, 2020 | MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A directory traversal vulnerability ... |
| CVE-2015-8534 | HIGH | 7.8 | 0.4% | Mar 27, 2020 | MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A local privilege escalation vulnera... |
| CVE-2015-7336 | HIGH | 7.5 | 0.6% | Mar 27, 2020 | MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A vulnerability was reported (fixed ... |
| CVE-2015-7335 | HIGH | 7 | 0.2% | Mar 27, 2020 | MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A race condition was reported (fixed... |
| CVE-2015-7334 | HIGH | 7.8 | 0.4% | Mar 27, 2020 | MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A local privilege escalation vulnera... |
| CVE-2015-7333 | HIGH | 7.8 | 0.4% | Mar 27, 2020 | MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A local privilege escalation vulnera... |
| CVE-2015-3641 | HIGH | 7.5 | 1.8% | Mar 12, 2020 | bitcoind and Bitcoin-Qt prior to 0.10.2 allow attackers to cause a denial of service (disabled functionality such as a c... |
| CVE-2015-7342 | HIGH | 7.2 | 1.0% | Mar 9, 2020 | JNews Joomla Component before 8.5.0 allows SQL injection via upload thumbnail, Queue Search Field, Subscribers Search Fi... |
| CVE-2015-7341 | HIGH | 8.8 | 1.1% | Mar 9, 2020 | JNews Joomla Component before 8.5.0 allows arbitrary File Upload via Subscribers or Templates, as demonstrated by the .p... |
| CVE-2015-7340 | HIGH | 7.2 | 1.0% | Mar 9, 2020 | JEvents Joomla Component before 3.4.0 RC6 has SQL Injection via evid in a Manage Events action. |
| CVE-2015-7339 | HIGH | 8.8 | 1.1% | Mar 9, 2020 | JCE Joomla Component 2.5.0 to 2.5.2 allows arbitrary file upload via a .php file extension for an image file to the /com... |
| CVE-2015-7338 | HIGH | 7.2 | 1.0% | Mar 9, 2020 | SQL Injection exists in AcyMailing Joomla Component before 4.9.5 via exportgeolocorder in a geolocation_longitude reques... |
| CVE-2015-1583 | HIGH | 8.8 | 1.2% | Mar 2, 2020 | Multiple cross-site request forgery (CSRF) vulnerabilities in ATutor 2.2 allow remote attackers to hijack the authentica... |
| CVE-2015-5686 | HIGH | 8.8 | 0.5% | Feb 27, 2020 | Parts of the Puppet Enterprise Console 3.x were found to be susceptible to clickjacking and CSRF (Cross-Site Request For... |
| CVE-2015-5201 | HIGH | 7.5 | 1.5% | Feb 25, 2020 | VDSM and libvirt in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H) 7-7.x before 7-7.2-20151119.0 and 6-6.x be... |
| CVE-2015-9542 | HIGH | 7.5 | 3.4% | Feb 24, 2020 | add_password in pam_radius_auth.c in pam_radius 1.4.0 does not correctly check the length of the input password, and is ... |
| CVE-2015-4411 | HIGH | 7.5 | 6.4% | Feb 20, 2020 | The Moped::BSON::ObjecId.legal? method in mongodb/bson-ruby before 3.0.4 as used in rubygem-moped allows remote attacker... |
| CVE-2015-4410 | HIGH | 7.5 | 5.7% | Feb 20, 2020 | The Moped::BSON::ObjecId.legal? method in rubygem-moped before commit dd5a7c14b5d2e466f7875d079af71ad19774609b allows re... |
| CVE-2015-7747 | HIGH | 8.8 | 8.8% | Feb 19, 2020 | Buffer overflow in the afReadFrames function in audiofile (aka libaudiofile and Audio File Library) allows user-assisted... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now