2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-2090 | — | — | 4.7% | Feb 26, 2015 | SQL injection vulnerability in the ajax_survey function in settings.php in the WordPress Survey and Poll plugin 1.1.7 fo... |
| CVE-2015-2089 | — | — | 1.0% | Feb 26, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the CrossSlide jQuery (crossslide-jquery-plugin-for-wordpr... |
| CVE-2015-2088 | — | — | 1.8% | Feb 26, 2015 | Cross-site scripting (XSS) vulnerability in unspecified administration pages in the Term Queue module before 6.x-1.1 for... |
| CVE-2015-2087 | — | — | 1.8% | Feb 26, 2015 | Unrestricted file upload vulnerability in the Avatar Uploader module before 6.x-1.3 for Drupal allows remote authenticat... |
| CVE-2015-2086 | — | — | 0.9% | Feb 26, 2015 | Cross-site scripting (XSS) vulnerability in the live preview in the Panopoly Magic module before 7.x-1.17 for Drupal all... |
| CVE-2015-0633 | — | — | 1.0% | Feb 26, 2015 | The Integrated Management Controller (IMC) in Cisco Unified Computing System (UCS) 1.4(7h) and earlier on C-Series serve... |
| CVE-2015-2084 | — | — | 2.6% | Feb 25, 2015 | Cross-site request forgery (CSRF) vulnerability in the Easy Social Icons plugin before 1.2.3 for WordPress allows remote... |
| CVE-2015-2083 | — | — | 0.6% | Feb 25, 2015 | Cross-site request forgery (CSRF) vulnerability in Ilch CMS allows remote attackers to hijack the authentication of admi... |
| CVE-2015-2082 | — | — | 1.9% | Feb 25, 2015 | Cross-site scripting (XSS) vulnerability in Login.aspx in UNIT4 Prosoft HRMS before 8.14.330.43 allows remote attackers ... |
| CVE-2015-2043 | — | — | 1.0% | Feb 25, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in Visualware MyConnection Server 8.2b allow remote attackers to inj... |
| CVE-2015-0836 | — | — | 4.4% | Feb 25, 2015 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 36.0, Firefox ESR 31.x before 31.5,... |
| CVE-2015-0835 | — | — | 4.1% | Feb 25, 2015 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 36.0 allow remote attackers to caus... |
| CVE-2015-0834 | — | — | 1.3% | Feb 25, 2015 | The WebRTC subsystem in Mozilla Firefox before 36.0 recognizes turns: and stuns: URIs but accesses the TURN or STUN serv... |
| CVE-2015-0833 | — | — | 0.3% | Feb 25, 2015 | Multiple untrusted search path vulnerabilities in updater.exe in Mozilla Firefox before 36.0, Firefox ESR 31.x before 31... |
| CVE-2015-0832 | — | — | 1.1% | Feb 25, 2015 | Mozilla Firefox before 36.0 does not properly recognize the equivalence of domain names with and without a trailing . (d... |
| CVE-2015-0831 | — | — | 4.2% | Feb 25, 2015 | Use-after-free vulnerability in the mozilla::dom::IndexedDB::IDBObjectStore::CreateIndex function in Mozilla Firefox bef... |
| CVE-2015-0830 | — | — | 2.0% | Feb 25, 2015 | The WebGL implementation in Mozilla Firefox before 36.0 does not properly allocate memory for copying an unspecified str... |
| CVE-2015-0829 | — | — | 6.0% | Feb 25, 2015 | Buffer overflow in libstagefright in Mozilla Firefox before 36.0 allows remote attackers to execute arbitrary code via a... |
| CVE-2015-0828 | — | — | 3.9% | Feb 25, 2015 | Double free vulnerability in the nsXMLHttpRequest::GetResponse function in Mozilla Firefox before 36.0, when a nonstanda... |
| CVE-2015-0827 | — | — | 2.9% | Feb 25, 2015 | Heap-based buffer overflow in the mozilla::gfx::CopyRect function in Mozilla Firefox before 36.0, Firefox ESR 31.x befor... |
| CVE-2015-0826 | — | — | 3.4% | Feb 25, 2015 | The nsTransformedTextRun::SetCapitalization function in Mozilla Firefox before 36.0 allows remote attackers to execute a... |
| CVE-2015-0825 | — | — | 1.5% | Feb 25, 2015 | Stack-based buffer underflow in the mozilla::MP3FrameParser::ParseBuffer function in Mozilla Firefox before 36.0 allows ... |
| CVE-2015-0824 | — | — | 3.7% | Feb 25, 2015 | The mozilla::layers::BufferTextureClient::AllocateForSurface function in Mozilla Firefox before 36.0 allows remote attac... |
| CVE-2015-0823 | — | — | 3.9% | Feb 25, 2015 | Multiple use-after-free vulnerabilities in OpenType Sanitiser, as used in Mozilla Firefox before 36.0, might allow remot... |
| CVE-2015-0822 | — | — | 2.5% | Feb 25, 2015 | The Form Autocompletion feature in Mozilla Firefox before 36.0, Firefox ESR 31.x before 31.5, and Thunderbird before 31.... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now