2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-0255 | — | — | 4.5% | Feb 13, 2015 | X.Org Server (aka xserver and xorg-server) before 1.16.3 and 1.17.x before 1.17.1 allows remote attackers to obtain sens... |
| CVE-2015-0245 | — | — | 0.3% | Feb 13, 2015 | D-Bus 1.4.x through 1.6.x before 1.6.30, 1.8.x before 1.8.16, and 1.9.x before 1.9.10 does not validate the source of Ac... |
| CVE-2015-0873 | — | — | 0.9% | Feb 13, 2015 | Cross-site scripting (XSS) vulnerability in Homepage Decorator PerlTreeBBS 2.30 and earlier allows remote attackers to i... |
| CVE-2015-0593 | — | — | 1.5% | Feb 13, 2015 | The Zone-Based Firewall implementation in Cisco IOS 12.4(122)T and earlier does not properly manage session-object struc... |
| CVE-2015-1546 | — | — | 3.4% | Feb 12, 2015 | Double free vulnerability in the get_vrFilter function in servers/slapd/filter.c in OpenLDAP 2.4.40 allows remote attack... |
| CVE-2015-1545 | — | — | 11.1% | Feb 12, 2015 | The deref_parseCtrl function in servers/slapd/overlays/deref.c in OpenLDAP 2.4.13 through 2.4.40 allows remote attackers... |
| CVE-2015-1471 | — | — | 3.8% | Feb 12, 2015 | SQL injection vulnerability in userprofile.lib.php in Pragyan CMS 3.0 allows remote attackers to execute arbitrary SQL c... |
| CVE-2015-1345 | — | — | 0.5% | Feb 12, 2015 | The bmexec_trans function in kwset.c in grep 2.19 through 2.21 allows local users to cause a denial of service (out-of-b... |
| CVE-2015-0227 | — | — | 7.5% | Feb 12, 2015 | Apache WSS4J before 1.6.17 and 2.x before 2.0.2 allows remote attackers to bypass the requireSignedEncryptedDataElements... |
| CVE-2015-0619 | — | — | 2.4% | Feb 12, 2015 | Memory leak in the embedded web server in the WebVPN subsystem in Cisco Adaptive Security Appliance (ASA) Software allow... |
| CVE-2015-0611 | — | — | 2.0% | Feb 12, 2015 | The administrative web-management portal in Cisco IX 8 (.0.1) and earlier on Cisco TelePresence IX5000 devices does not ... |
| CVE-2015-0610 | — | — | 1.4% | Feb 12, 2015 | Race condition in the object-group ACL feature in Cisco IOS 15.5(2)T and earlier allows remote attackers to bypass inten... |
| CVE-2015-0608 | — | — | 1.8% | Feb 12, 2015 | Race condition in the Measurement, Aggregation, and Correlation Engine (MACE) implementation in Cisco IOS 15.4(2)T3 and ... |
| CVE-2015-0606 | — | — | 0.3% | Feb 12, 2015 | The IOS Shell in Cisco IOS allows local users to cause a denial of service (device crash) via unspecified commands, aka ... |
| CVE-2015-0592 | — | — | 1.8% | Feb 12, 2015 | The Zone-Based Firewall implementation in Cisco IOS 15.4(2)T3 and earlier allows remote attackers to cause a denial of s... |
| CVE-2015-0580 | — | — | 0.9% | Feb 12, 2015 | Multiple SQL injection vulnerabilities in the ACS View reporting interface pages in Cisco Secure Access Control System (... |
| CVE-2015-1582 | — | — | 1.7% | Feb 11, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in the Spider Facebook plugin before 1.0.11 for WordPress allow (1) ... |
| CVE-2015-1581 | — | — | 1.0% | Feb 11, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Mobile Domain plugin 1.5.2 for WordPress allow remote ... |
| CVE-2015-1580 | — | — | 1.0% | Feb 11, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Redirection Page plugin 1.2 for WordPress allow remote... |
| CVE-2015-1579 | — | — | 22.1% | Feb 11, 2015 | Directory traversal vulnerability in the Elegant Themes Divi theme for WordPress allows remote attackers to read arbitra... |
| CVE-2015-1578 | — | — | 6.2% | Feb 11, 2015 | Multiple open redirect vulnerabilities in u5CMS before 3.9.4 allow remote attackers to redirect users to arbitrary web s... |
| CVE-2015-1577 | — | — | 7.3% | Feb 11, 2015 | Directory traversal vulnerability in u5admin/deletefile.php in u5CMS before 3.9.4 allows remote attackers to write to ar... |
| CVE-2015-1576 | — | — | 2.1% | Feb 11, 2015 | Multiple SQL injection vulnerabilities in u5CMS before 3.9.4 allow remote attackers to execute arbitrary SQL commands vi... |
| CVE-2015-1575 | — | — | 3.3% | Feb 11, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in u5CMS before 3.9.4 allow remote attackers to inject arbitrary web... |
| CVE-2015-1518 | — | — | 2.4% | Feb 11, 2015 | SQL injection vulnerability in the search_post function in includes/search.php in Redaxscript before 2.3.0 allows remote... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now