2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-1452 | — | — | 1.8% | Feb 2, 2015 | The Control and Provisioning of Wireless Access Points (CAPWAP) daemon in Fortinet FortiOS 5.0 Patch 7 build 4457 allows... |
| CVE-2015-1451 | — | — | 1.0% | Feb 2, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in Fortinet FortiOS 5.0 Patch 7 build 4457 allow remote authenticate... |
| CVE-2015-0223 | — | — | 6.6% | Feb 2, 2015 | Unspecified vulnerability in Apache Qpid 0.30 and earlier allows remote attackers to bypass access restrictions on qpidd... |
| CVE-2015-1450 | — | — | 1.3% | Feb 2, 2015 | SQL injection vulnerability in Restaurant Biller allows remote attackers to execute arbitrary SQL commands via the cid p... |
| CVE-2015-1449 | — | — | 3.8% | Feb 2, 2015 | Buffer overflow in the integrated web server on Siemens Ruggedcom WIN51xx devices with firmware before SS4.4.4624.35, WI... |
| CVE-2015-1448 | — | — | 3.3% | Feb 2, 2015 | The integrated management service on Siemens Ruggedcom WIN51xx devices with firmware before SS4.4.4624.35, WIN52xx devic... |
| CVE-2015-1393 | — | — | 1.7% | Feb 2, 2015 | SQL injection vulnerability in the Photo Gallery plugin before 1.2.11 for WordPress allows remote authenticated users to... |
| CVE-2015-1385 | — | — | 2.2% | Feb 2, 2015 | Cross-site scripting (XSS) vulnerability in the Blubrry PowerPress Podcasting plugin before 6.0.1 for WordPress allows r... |
| CVE-2015-1383 | — | — | 2.0% | Feb 2, 2015 | Cross-site scripting (XSS) vulnerability in the geo search widget in the Geo Mashup plugin before 1.8.3 for WordPress al... |
| CVE-2015-1357 | — | — | 1.1% | Feb 2, 2015 | Siemens Ruggedcom WIN51xx devices with firmware before SS4.4.4624.35, WIN52xx devices with firmware before SS4.4.4624.35... |
| CVE-2015-1049 | — | — | 1.7% | Feb 2, 2015 | The web server on Siemens SCALANCE X-200IRT switches with firmware before 5.2.0 allows remote attackers to hijack sessio... |
| CVE-2015-0866 | — | — | 2.3% | Feb 2, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in Zoho ManageEngine SupportCenter Plus 7.9 before hotfix 7941 allow... |
| CVE-2015-0597 | — | — | 2.6% | Feb 2, 2015 | The Forgot Password feature in Cisco WebEx Meetings Server 1.5(.1.131) and earlier allows remote attackers to enumerate ... |
| CVE-2015-0596 | — | — | 0.9% | Feb 2, 2015 | Cross-site request forgery (CSRF) vulnerability in Cisco WebEx Meetings Server 1.5(.1.131) and earlier allows remote att... |
| CVE-2015-0595 | — | — | 1.8% | Feb 2, 2015 | The XMLAPI in Cisco WebEx Meetings Server 1.5(.1.131) and earlier allows remote attackers to obtain sensitive informatio... |
| CVE-2015-0512 | — | — | 1.8% | Feb 2, 2015 | Open redirect vulnerability in EMC Unisphere Central before 4.0 allows remote attackers to redirect users to arbitrary w... |
| CVE-2015-0869 | — | — | 1.6% | Feb 1, 2015 | I-O DATA DEVICE NP-BBRM routers allow remote attackers to cause a denial of service (SSDP reflection) via UPnP requests. |
| CVE-2015-0868 | — | — | 2.6% | Feb 1, 2015 | Unrestricted file upload vulnerability in Mrs. Shiromuku Perl CGI shiromuku(bu2)BBS before 2.91 allows remote attackers ... |
| CVE-2015-0926 | — | — | 0.4% | Feb 1, 2015 | Labtech before 100.237 on Linux uses world-writable permissions for root-executed scripts, which allows local users to g... |
| CVE-2015-0870 | — | — | 1.2% | Feb 1, 2015 | Cross-site scripting (XSS) vulnerability in hb.cgi in Nishishi Factory Fumy News Clipper 2.x before 2.5.0 allows remote ... |
| CVE-2015-1044 | — | — | 0.8% | Jan 29, 2015 | vmware-authd (aka the Authorization process) in VMware Workstation 10.x before 10.0.5, VMware Player 6.x before 6.0.5, a... |
| CVE-2015-1043 | — | — | 0.8% | Jan 29, 2015 | The Host Guest File System (HGFS) in VMware Workstation 10.x before 10.0.5, VMware Player 6.x before 6.0.5, and VMware F... |
| CVE-2015-1424 | — | — | 2.3% | Jan 29, 2015 | Cross-site request forgery (CSRF) vulnerability in Gecko CMS 2.2 and 2.3 allows remote attackers to hijack the authentic... |
| CVE-2015-1423 | — | — | 1.8% | Jan 29, 2015 | Multiple SQL injection vulnerabilities in Gecko CMS 2.2 and 2.3 allow remote administrators to execute arbitrary SQL com... |
| CVE-2015-1422 | — | — | 4.1% | Jan 29, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in Gecko CMS 2.2 and 2.3 allow remote attackers to inject arbitrary ... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now