2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-2195 | — | — | 1.6% | Mar 3, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in the WP Media Cleaner plugin 2.2.6 for WordPress allow remote atta... |
| CVE-2015-2194 | — | — | 3.2% | Mar 3, 2015 | Unrestricted file upload vulnerability in the fusion_options function in functions.php in the Fusion theme 3.1 for Wordp... |
| CVE-2015-2168 | — | — | — | Mar 3, 2015 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2015-0890 | — | — | 2.4% | Mar 3, 2015 | The BestWebSoft Google Captcha (aka reCAPTCHA) plugin before 1.13 for WordPress allows remote attackers to bypass the CA... |
| CVE-2015-0239 | — | — | 0.6% | Mar 2, 2015 | The em_sysenter function in arch/x86/kvm/emulate.c in the Linux kernel before 3.18.5, when the guest OS lacks SYSENTER M... |
| CVE-2015-0889 | — | — | 2.6% | Feb 28, 2015 | KENT-WEB Joyful Note before 5.3 allows remote attackers to delete files or write to files, and consequently execute arbi... |
| CVE-2015-0888 | — | — | 1.5% | Feb 28, 2015 | KENT-WEB Clip Board before 4.1 allows remote attackers to delete arbitrary files via unspecified vectors. |
| CVE-2015-0887 | — | — | 1.5% | Feb 28, 2015 | npppd in the PPP Access Concentrator (PPPAC) on SEIL SEIL/x86 Fuji routers 1.00 through 3.30, SEIL/X1 routers 3.50 throu... |
| CVE-2015-0886 | — | — | 4.8% | Feb 28, 2015 | Integer overflow in the crypt_raw method in the key-stretching implementation in jBCrypt before 0.4 makes it easier for ... |
| CVE-2015-0885 | — | — | 2.4% | Feb 28, 2015 | checkpw 1.02 and earlier allows remote attackers to cause a denial of service (infinite loop) via a -- (dash dash) in a ... |
| CVE-2015-0884 | — | — | 0.4% | Feb 28, 2015 | Unquoted Windows search path vulnerability in Toshiba Bluetooth Stack for Windows before 9.10.32(T) and Service Station ... |
| CVE-2015-0655 | — | — | 1.8% | Feb 28, 2015 | Cross-site scripting (XSS) vulnerability in Unified Web Interaction Manager in Cisco Unified Web and E-Mail Interaction ... |
| CVE-2015-2103 | — | — | 1.5% | Feb 27, 2015 | Cross-site scripting (XSS) vulnerability in the admin-login panel (admin/index.cgi) in Cosmoshop allows remote attackers... |
| CVE-2015-2102 | — | — | 2.4% | Feb 27, 2015 | SQL injection vulnerability in view_item.php in ClipBucket 2.7 RC3 (2.7.0.4.v2929-rc3) allows remote attackers to execut... |
| CVE-2015-2101 | — | — | 1.5% | Feb 27, 2015 | Cross-site scripting (XSS) vulnerability in the Navigate bar in the Navigate module before 6.x-1.1 and 7.x-1.x before 7.... |
| CVE-2015-2076 | — | — | 2.3% | Feb 27, 2015 | The Auditing service in SAP BusinessObjects Edge 4.0 allows remote attackers to obtain sensitive information by reading ... |
| CVE-2015-2075 | — | — | 2.8% | Feb 27, 2015 | SAP BusinessObjects Edge 4.0 allows remote attackers to delete audit events from the auditee queue via a clearData CORBA... |
| CVE-2015-2072 | — | — | 1.9% | Feb 27, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in SAP HANA 73 (1.00.73.00.389160) and HANA Developer Edition 80 (1.... |
| CVE-2015-1414 | — | — | 4.2% | Feb 27, 2015 | Integer overflow in FreeBSD before 8.4 p24, 9.x before 9.3 p10. 10.0 before p18, and 10.1 before p6 allows remote attack... |
| CVE-2015-0977 | — | — | 2.4% | Feb 27, 2015 | Network Vision IntraVue before 2.3.0a14 on Windows allows remote attackers to execute arbitrary OS commands via unspecif... |
| CVE-2015-0883 | — | — | 2.3% | Feb 27, 2015 | SYNCK GRAPHICA Mailform Pro CGI 4.1.4 and 4.1.5, when the mailauth module is enabled, does not properly send e-mail mess... |
| CVE-2015-0882 | — | — | 2.2% | Feb 27, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in zencart-ja (aka Zen Cart Japanese edition) 1.3 jp through 1.3.0.2... |
| CVE-2015-0651 | — | — | 0.6% | Feb 27, 2015 | Cross-site request forgery (CSRF) vulnerability in the web GUI in Cisco Application Networking Manager (ANM), and Device... |
| CVE-2015-0632 | — | — | 0.6% | Feb 27, 2015 | Race condition in the Neighbor Discovery (ND) protocol implementation in Cisco IOS and IOS XE allows remote attackers to... |
| CVE-2015-0594 | — | — | 1.8% | Feb 27, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in the help pages in Cisco Common Services, as used in Cisco Prime L... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now