2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-0639 | — | — | 2.0% | Mar 26, 2015 | The Common Flow Table (CFT) feature in Cisco IOS XE 3.6 and 3.7 before 3.7.1S, 3.8 before 3.8.0S, 3.9 before 3.9.0S, 3.1... |
| CVE-2015-0638 | — | — | 1.7% | Mar 26, 2015 | Cisco IOS 12.2, 12.4, 15.0, 15.2, and 15.3, when a VRF interface is configured, allows remote attackers to cause a denia... |
| CVE-2015-0637 | — | — | 1.9% | Mar 26, 2015 | The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 12.2, 12.4, 15.0, 15.2, 15.3, and 15.4 and IOS... |
| CVE-2015-0636 | — | — | 2.0% | Mar 26, 2015 | The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 12.2, 12.4, 15.0, 15.2, 15.3, and 15.4 and IOS... |
| CVE-2015-0635 | — | — | 2.1% | Mar 26, 2015 | The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 12.2, 12.4, 15.0, 15.2, 15.3, and 15.4 and IOS... |
| CVE-2015-2703 | — | — | 2.5% | Mar 25, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in Websense TRITON AP-WEB before 8.0.0 and V-Series 7.7 appliances a... |
| CVE-2015-2702 | — | — | 2.1% | Mar 25, 2015 | Cross-site scripting (XSS) vulnerability in the Message Log in the Email Security Gateway in Websense TRITON AP-EMAIL be... |
| CVE-2015-2701 | — | — | 2.7% | Mar 25, 2015 | Cross-site request forgery (CSRF) vulnerability in CS-Cart 4.2.4 allows remote attackers to hijack the authentication of... |
| CVE-2015-2559 | — | — | 1.6% | Mar 25, 2015 | Drupal 6.x before 6.35 and 7.x before 7.35 allows remote authenticated users to reset the password of other accounts by ... |
| CVE-2015-2317 | — | — | 5.0% | Mar 25, 2015 | The utils.http.is_safe_url function in Django before 1.4.20, 1.5.x, 1.6.x before 1.6.11, 1.7.x before 1.7.7, and 1.8.x b... |
| CVE-2015-2316 | — | — | 5.0% | Mar 25, 2015 | The utils.html.strip_tags function in Django 1.6.x before 1.6.11, 1.7.x before 1.7.7, and 1.8.x before 1.8c1, when using... |
| CVE-2015-0295 | — | — | 6.4% | Mar 25, 2015 | The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, wh... |
| CVE-2015-0159 | — | — | — | Mar 25, 2015 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-3570. Reason: This candidate is a reservation ... |
| CVE-2015-0138 | — | — | 3.3% | Mar 25, 2015 | GSKit in IBM Tivoli Directory Server (ITDS) 6.0 before 6.0.0.73-ISS-ITDS-IF0073, 6.1 before 6.1.0.66-ISS-ITDS-IF0066, 6.... |
| CVE-2015-2284 | — | — | 74.2% | Mar 24, 2015 | userlogin.jsp in SolarWinds Firewall Security Manager (FSM) before 6.6.5 HotFix1 allows remote attackers to gain privile... |
| CVE-2015-2265 | — | — | 3.0% | Mar 24, 2015 | The remove_bad_chars function in utils/cups-browsed.c in cups-filters before 1.0.66 allows remote IPP printers to execut... |
| CVE-2015-2155 | — | — | 7.9% | Mar 24, 2015 | The force printer in tcpdump before 4.7.2 allows remote attackers to cause a denial of service (crash) and possibly exec... |
| CVE-2015-2154 | — | — | 4.5% | Mar 24, 2015 | The osi_print_cksum function in print-isoclns.c in the ethernet printer in tcpdump before 4.7.2 allows remote attackers ... |
| CVE-2015-2153 | — | — | 18.8% | Mar 24, 2015 | The rpki_rtr_pdu_print function in print-rpki-rtr.c in the TCP printer in tcpdump before 4.7.2 allows remote attackers t... |
| CVE-2015-1388 | — | — | 1.1% | Mar 24, 2015 | The "RAP console" feature in ArubaOS 5.x through 6.2.x, 6.3.x before 6.3.1.15, and 6.4.x before 6.4.2.4 on Aruba access ... |
| CVE-2015-0282 | — | — | 1.4% | Mar 24, 2015 | GnuTLS before 3.1.0 does not verify that the RSA PKCS #1 signature algorithm matches the signature algorithm in the cert... |
| CVE-2015-0261 | — | — | 6.9% | Mar 24, 2015 | Integer signedness error in the mobility_opt_print function in the IPv6 mobility printer in tcpdump before 4.7.2 allows ... |
| CVE-2015-0252 | — | — | 39.9% | Mar 24, 2015 | internal/XMLReader.cpp in Apache Xerces-C before 3.1.2 allows remote attackers to cause a denial of service (segmentatio... |
| CVE-2015-0250 | — | — | 16.7% | Mar 24, 2015 | XML external entity (XXE) vulnerability in the SVG to (1) PNG and (2) JPG conversion classes in Apache Batik 1.x before ... |
| CVE-2015-0199 | — | — | 0.4% | Mar 24, 2015 | The mmfslinux kernel module in IBM General Parallel File System (GPFS) 3.4 before 3.4.0.32, 3.5 before 3.5.0.24, and 4.1... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now