2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-1874 | — | — | 1.5% | Mar 9, 2015 | Cross-site request forgery (CSRF) vulnerability in the Contact Form DB (aka CFDB and contact-form-7-to-database-extensio... |
| CVE-2015-2097 | — | — | 24.1% | Mar 9, 2015 | Multiple buffer overflows in WebGate Embedded Standard Protocol (WESP) SDK allow remote attackers to execute arbitrary c... |
| CVE-2015-2096 | — | — | 2.5% | Mar 9, 2015 | Use-after-free vulnerability in the Connect function in the WESPMonitor.WESPMonitorCtrl.1 ActiveX control in WebGate eDV... |
| CVE-2015-2095 | — | — | 2.7% | Mar 9, 2015 | Heap-based buffer overflow in the SetConnectInfo function in the WESPPTZ.WESPPTZCtrl.1 ActiveX control in WebGate eDVR M... |
| CVE-2015-2094 | — | — | 14.0% | Mar 9, 2015 | Stack-based buffer overflow in the WESPPlayback.WESPPlaybackCtrl.1 control in WebGate WinRDS allows remote attackers to ... |
| CVE-2015-2093 | — | — | 3.5% | Mar 9, 2015 | Stack-based buffer overflow in the Connect function in the WebGate WebEyeAudio ActiveX control allows remote attackers t... |
| CVE-2015-2092 | — | — | 2.8% | Mar 9, 2015 | The AnnotationX.AnnList.1 ActiveX control in Agilent Technologies Feature Extraction allows remote attackers to execute ... |
| CVE-2015-2063 | — | — | 2.9% | Mar 9, 2015 | Integer overflow in unace 1.2b allows remote attackers to cause a denial of service (crash) via a small file header in a... |
| CVE-2015-2061 | — | — | 3.9% | Mar 9, 2015 | Heap-based buffer overflow in the browser plugin for PTC Creo View allows remote attackers to execute arbitrary code via... |
| CVE-2015-1464 | — | — | 2.0% | Mar 9, 2015 | RT (aka Request Tracker) before 4.0.23 and 4.2.x before 4.2.10 allows remote attackers to hijack sessions via an RSS fee... |
| CVE-2015-1165 | — | — | 2.1% | Mar 9, 2015 | RT (aka Request Tracker) 3.8.8 through 4.x before 4.0.23 and 4.2.x before 4.2.10 allows remote attackers to obtain sensi... |
| CVE-2015-0254 | — | — | 13.3% | Mar 9, 2015 | Apache Standard Taglibs before 1.2.3 allows remote attackers to execute arbitrary code or conduct external XML entity (X... |
| CVE-2015-2239 | — | — | 1.2% | Mar 9, 2015 | Google Chrome before 41.0.2272.76, when Instant Extended mode is used, does not properly consider the interaction betwee... |
| CVE-2015-2238 | — | — | 0.6% | Mar 9, 2015 | Multiple unspecified vulnerabilities in Google V8 before 4.1.0.21, as used in Google Chrome before 41.0.2272.76, allow a... |
| CVE-2015-1232 | — | — | 1.1% | Mar 9, 2015 | Array index error in the MidiManagerUsb::DispatchSendMidiData function in media/midi/midi_manager_usb.cc in Google Chrom... |
| CVE-2015-1231 | — | — | 1.3% | Mar 9, 2015 | Multiple unspecified vulnerabilities in Google Chrome before 41.0.2272.76 allow attackers to cause a denial of service o... |
| CVE-2015-1230 | — | — | 2.1% | Mar 9, 2015 | The getHiddenProperty function in bindings/core/v8/V8EventListenerList.h in Blink, as used in Google Chrome before 41.0.... |
| CVE-2015-1229 | — | — | 0.9% | Mar 9, 2015 | net/http/proxy_client_socket.cc in Google Chrome before 41.0.2272.76 does not properly handle a 407 (aka Proxy Authentic... |
| CVE-2015-1228 | — | — | 1.4% | Mar 9, 2015 | The RenderCounter::updateCounter function in core/rendering/RenderCounter.cpp in Blink, as used in Google Chrome before ... |
| CVE-2015-1227 | — | — | 1.4% | Mar 9, 2015 | The DragImage::create function in platform/DragImage.cpp in Blink, as used in Google Chrome before 41.0.2272.76, does no... |
| CVE-2015-1226 | — | — | 1.2% | Mar 9, 2015 | The DebuggerFunction::InitAgentHost function in browser/extensions/api/debugger/debugger_api.cc in Google Chrome before ... |
| CVE-2015-1225 | — | — | 1.3% | Mar 9, 2015 | PDFium, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service (out-of-bound... |
| CVE-2015-1224 | — | — | 1.8% | Mar 9, 2015 | The VpxVideoDecoder::VpxDecode function in media/filters/vpx_video_decoder.cc in the vpxdecoder implementation in Google... |
| CVE-2015-1223 | — | — | 1.9% | Mar 9, 2015 | Multiple use-after-free vulnerabilities in core/html/HTMLInputElement.cpp in the DOM implementation in Blink, as used in... |
| CVE-2015-1222 | — | — | 1.4% | Mar 9, 2015 | Multiple use-after-free vulnerabilities in the ServiceWorkerScriptCacheMap implementation in content/browser/service_wor... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now