2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-2275 | — | — | 3.7% | Mar 12, 2015 | Cross-site scripting (XSS) vulnerability in WoltLab Community Gallery 2.0 before 2014-12-26 allows remote attackers to i... |
| CVE-2015-2237 | — | — | 2.4% | Mar 12, 2015 | Multiple SQL injection vulnerabilities in Betster (aka PHP Betoffice) 1.0.4 allow remote attackers to execute arbitrary ... |
| CVE-2015-2285 | — | — | 1.0% | Mar 12, 2015 | The logrotation script (/etc/cron.daily/upstart) in the Ubuntu Upstart package before 1.13.2-0ubuntu9, as used in Ubuntu... |
| CVE-2015-2241 | — | — | 2.1% | Mar 12, 2015 | Cross-site scripting (XSS) vulnerability in the contents function in admin/helpers.py in Django before 1.7.6 and 1.8 bef... |
| CVE-2015-2208 | — | — | 62.0% | Mar 12, 2015 | The saveObject function in moadmin.php in phpMoAdmin 1.1.2 allows remote attackers to execute arbitrary commands via she... |
| CVE-2015-2151 | — | — | 0.6% | Mar 12, 2015 | The x86 emulator in Xen 3.2.x through 4.5.x does not properly ignore segment overrides for instructions with register op... |
| CVE-2015-2150 | — | — | 0.5% | Mar 12, 2015 | Xen 3.3.x through 4.5.x and the Linux kernel through 3.19.1 do not properly restrict access to PCI command registers, wh... |
| CVE-2015-2045 | — | — | 0.5% | Mar 12, 2015 | The HYPERVISOR_xen_version hypercall in Xen 3.2.x through 4.5.x does not properly initialize data structures, which allo... |
| CVE-2015-2044 | — | — | 0.4% | Mar 12, 2015 | The emulation routines for unspecified X86 devices in Xen 3.2.x through 4.5.x does not properly initialize data, which a... |
| CVE-2015-1066 | — | — | 2.8% | Mar 12, 2015 | Off-by-one error in IOAcceleratorFamily in Apple OS X through 10.10.2 allows attackers to execute arbitrary code in a pr... |
| CVE-2015-1065 | — | — | 0.9% | Mar 12, 2015 | Multiple buffer overflows in iCloud Keychain in Apple iOS before 8.2 and Apple OS X through 10.10.2 allow man-in-the-mid... |
| CVE-2015-1064 | — | — | 0.3% | Mar 12, 2015 | Springboard in Apple iOS before 8.2 allows physically proximate attackers to bypass an intended activation requirement a... |
| CVE-2015-1063 | — | — | 2.6% | Mar 12, 2015 | CoreTelephony in Apple iOS before 8.2 allows remote attackers to cause a denial of service (NULL pointer dereference and... |
| CVE-2015-1062 | — | — | 1.5% | Mar 12, 2015 | MobileStorageMounter in Apple iOS before 8.2 and Apple TV before 7.1 does not delete invalid disk-image folders, which a... |
| CVE-2015-1061 | — | — | 4.2% | Mar 12, 2015 | IOSurface in Apple iOS before 8.2, Apple OS X through 10.10.2, and Apple TV before 7.1 allows attackers to execute arbit... |
| CVE-2015-0525 | — | — | 3.7% | Mar 12, 2015 | The Gateway Provisioning service in EMC Secure Remote Services Virtual Edition (ESRS VE) 3.02 and 3.03 allows remote att... |
| CVE-2015-0524 | — | — | 2.1% | Mar 12, 2015 | SQL injection vulnerability in the Gateway Provisioning service in EMC Secure Remote Services Virtual Edition (ESRS VE) ... |
| CVE-2015-0523 | — | — | 2.3% | Mar 12, 2015 | EMC RSA Certificate Manager (RCM) before 6.9 build 558 and RSA Registration Manager (RRM) before 6.9 build 558 allow rem... |
| CVE-2015-0522 | — | — | 1.2% | Mar 12, 2015 | Cross-site scripting (XSS) vulnerability in EMC RSA Certificate Manager (RCM) before 6.9 build 558 and RSA Registration ... |
| CVE-2015-0521 | — | — | 0.9% | Mar 12, 2015 | Cross-site scripting (XSS) vulnerability in EMC RSA Certificate Manager (RCM) before 6.9 build 558 and RSA Registration ... |
| CVE-2015-2182 | — | — | 4.5% | Mar 11, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in ZeusCart 4 allow remote attackers to inject arbitrary web script ... |
| CVE-2015-1875 | — | — | 1.3% | Mar 11, 2015 | SQL injection vulnerability in a2billing/customer/iridium_threed.php in Elastix 2.5.0 and earlier allows remote attacker... |
| CVE-2015-1026 | — | — | 3.6% | Mar 11, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in ZOHO ManageEngine ADManager Plus before 6.2 Build 6270 allow remo... |
| CVE-2015-1636 | — | — | 6.9% | Mar 11, 2015 | Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Foundation 2013 Gold and SP1 and SharePoint Server 2013... |
| CVE-2015-1634 | — | — | 15.5% | Mar 11, 2015 | Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now