2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-1352 | — | — | 7.8% | Mar 30, 2015 | The build_tablename function in pgsql.c in the PostgreSQL (aka pgsql) extension in PHP through 5.6.7 does not validate t... |
| CVE-2015-1351 | — | — | 8.7% | Mar 30, 2015 | Use-after-free vulnerability in the _zend_shared_memdup function in zend_shared_alloc.c in the OPcache extension in PHP ... |
| CVE-2015-0273 | — | — | 41.3% | Mar 30, 2015 | Multiple use-after-free vulnerabilities in ext/date/php_date.c in PHP before 5.4.38, 5.5.x before 5.5.22, and 5.6.x befo... |
| CVE-2015-2786 | — | — | 1.4% | Mar 29, 2015 | Unspecified vulnerability in MyBB (aka MyBulletinBoard) before 1.8.4 has unknown attack vectors related to "Group join r... |
| CVE-2015-2785 | — | — | 2.9% | Mar 29, 2015 | The GIF encoder in Byzanz allows remote attackers to cause a denial of service (out-of-bounds heap write and crash) or p... |
| CVE-2015-0999 | — | — | 0.4% | Mar 29, 2015 | Schneider Electric InduSoft Web Studio before 7.1.3.4 SP3 Patch 4 and InTouch Machine Edition 2014 before 7.1.3.4 SP3 Pa... |
| CVE-2015-0998 | — | — | 0.8% | Mar 29, 2015 | Schneider Electric InduSoft Web Studio before 7.1.3.4 SP3 Patch 4 and InTouch Machine Edition 2014 before 7.1.3.4 SP3 Pa... |
| CVE-2015-0997 | — | — | 2.4% | Mar 29, 2015 | Schneider Electric InduSoft Web Studio before 7.1.3.4 SP3 Patch 4 and InTouch Machine Edition 2014 before 7.1.3.4 SP3 Pa... |
| CVE-2015-0996 | — | — | 0.4% | Mar 29, 2015 | Schneider Electric InduSoft Web Studio before 7.1.3.4 SP3 Patch 4 and InTouch Machine Edition 2014 before 7.1.3.4 SP3 Pa... |
| CVE-2015-0528 | — | — | 0.5% | Mar 29, 2015 | The RPC daemon in EMC Isilon OneFS 6.5.x and 7.0.x before 7.0.2.13, 7.1.0 before 7.1.0.6, 7.1.1 before 7.1.1.2, and 7.2.... |
| CVE-2015-0680 | — | — | 1.3% | Mar 28, 2015 | Cisco Unified Call Manager (CM) 9.1(2.1000.28) does not properly restrict resource requests, which allows remote authent... |
| CVE-2015-0679 | — | — | 0.6% | Mar 28, 2015 | The web-authentication functionality on Cisco Wireless LAN Controller (WLC) devices 7.3(103.8) and 7.4(110.0) allows rem... |
| CVE-2015-0658 | — | — | 1.1% | Mar 28, 2015 | The DHCP implementation in the PowerOn Auto Provisioning (POAP) feature in Cisco NX-OS does not properly restrict the in... |
| CVE-2015-2773 | — | — | 1.0% | Mar 27, 2015 | SVM in Websense TRITON V-Series appliances before 8.0.0 allows attackers to read arbitrary files via unspecified vectors... |
| CVE-2015-2772 | — | — | 1.1% | Mar 27, 2015 | SVM in Websense TRITON V-Series appliances before 8.0.0 allows attackers to upload arbitrary files via unspecified vecto... |
| CVE-2015-2771 | — | — | 1.2% | Mar 27, 2015 | The Mail Server in Websense TRITON AP-EMAIL and V-Series appliances before 8.0.0 uses plaintext credentials, which allow... |
| CVE-2015-2770 | — | — | 0.6% | Mar 27, 2015 | Cross-site request forgery (CSRF) vulnerability in the command line page in Websense TRITON V-Series appliances before 8... |
| CVE-2015-2769 | — | — | 0.6% | Mar 27, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Personal Email Manager (PEM) in Websense TRITON AP-EMA... |
| CVE-2015-2768 | — | — | 0.9% | Mar 27, 2015 | Cross-site scripting (XSS) vulnerability in Websense TRITON AP-EMAIL before 8.0.0 and V-Series 7.7 appliances allows rem... |
| CVE-2015-2767 | — | — | 1.4% | Mar 27, 2015 | Unspecified vulnerability in Websense TRITON AP-EMAIL before 8.0.0 has unknown impact and attack vectors, related to "Au... |
| CVE-2015-2766 | — | — | 1.0% | Mar 27, 2015 | The Personal Email Manager (PEM) in Websense TRITON AP-EMAIL before 8.0.0 allows attackers to have unspecified impact vi... |
| CVE-2015-2765 | — | — | 1.0% | Mar 27, 2015 | The Email Security Gateway in Websense TRITON AP-EMAIL before 8.0.0 allows remote attackers to conduct clickjacking atta... |
| CVE-2015-2764 | — | — | 0.9% | Mar 27, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in Websense TRITON AP-DATA before 8.0.0 allow remote attackers to in... |
| CVE-2015-2763 | — | — | 1.4% | Mar 27, 2015 | Unspecified vulnerability in Websense TRITON AP-EMAIL before 8.0.0 has unknown impact and attack vectors, related to por... |
| CVE-2015-2762 | — | — | 1.3% | Mar 27, 2015 | Websense TRITON AP-WEB before 8.0.0 allows remote attackers to enumerate Windows domain user accounts via vectors relate... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now