2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-9035 | — | — | 0.8% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, a memory buffer fails to be freed after ... |
| CVE-2015-9034 | — | — | 0.9% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, a string can fail to be null-terminated ... |
| CVE-2015-8596 | — | — | 0.8% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, validation of buffer lengths is missing ... |
| CVE-2015-8595 | — | — | 0.8% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer over-read vulnerability exists ... |
| CVE-2015-8594 | — | — | 1.1% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer over-read vulnerability exists ... |
| CVE-2015-8593 | — | — | 1.2% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists i... |
| CVE-2015-8592 | — | — | 0.8% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, a pointer is not validated prior to bein... |
| CVE-2015-5153 | — | — | 1.2% | Aug 18, 2017 | Pulp does not remove permissions for named objects upon deletion, which allows authenticated users to gain the privilege... |
| CVE-2015-5081 | — | — | 1.0% | Aug 18, 2017 | Cross-site request forgery (CSRF) vulnerability in django CMS before 3.0.14, 3.1.x before 3.1.1 allows remote attackers ... |
| CVE-2015-5057 | — | — | 1.5% | Aug 18, 2017 | Cross-site scripting (XSS) vulnerability exists in the Wordpress admin panel when the Broken Link Checker plugin before ... |
| CVE-2015-4464 | — | — | 4.7% | Aug 18, 2017 | Kguard Digital Video Recorder 104, 108, v2 does not have any authorization or authentication between an ActiveX client a... |
| CVE-2015-4071 | — | — | 9.6% | Aug 18, 2017 | The Helpdesk Pro Plugin before 1.4.0 for Joomla! allows remote attackers to read the support tickets of arbitrary users ... |
| CVE-2015-2675 | — | — | 3.5% | Aug 18, 2017 | The OAuth implementation in librest before 0.7.93 incorrectly truncates the pointer returned by the rest_proxy_call_get_... |
| CVE-2015-0576 | — | — | 0.5% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists i... |
| CVE-2015-0575 | — | — | 0.5% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, insecure ciphersuites were included in t... |
| CVE-2015-0574 | — | — | 1.0% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, the validation of filesystem access was ... |
| CVE-2015-7945 | — | — | 9.4% | Aug 18, 2017 | The RESTful control interface (aka RAPI or ganeti-rapi) in Ganeti before 2.9.7, 2.10.x before 2.10.8, 2.11.x before 2.11... |
| CVE-2015-7944 | — | — | 14.2% | Aug 18, 2017 | The RESTful control interface (aka RAPI or ganeti-rapi) in Ganeti before 2.9.7, 2.10.x before 2.10.8, 2.11.x before 2.11... |
| CVE-2015-4082 | — | — | 2.5% | Aug 18, 2017 | attic before 0.15 does not confirm unencrypted backups with the user, which allows remote attackers with read and write ... |
| CVE-2015-3649 | HIGH | 7.8 | 0.4% | Aug 18, 2017 | The open-uri-cached rubygem allows local users to execute arbitrary Ruby code by creating a directory under /tmp contain... |
| CVE-2015-1878 | — | — | 0.3% | Aug 18, 2017 | Thales nShield Connect hardware models 500, 1500, 6000, 500+, 1500+, and 6000+ before 11.72 allows physically proximate ... |
| CVE-2015-1817 | — | — | 2.2% | Aug 18, 2017 | Stack-based buffer overflow in the inet_pton function in network/inet_pton.c in musl libc 0.9.15 through 1.0.4, and 1.1.... |
| CVE-2015-3616 | — | — | 2.3% | Aug 11, 2017 | SQL injection vulnerability in Fortinet FortiManager 5.0.x before 5.0.11, 5.2.x before 5.2.2 allows remote attackers to ... |
| CVE-2015-3615 | — | — | 1.2% | Aug 11, 2017 | Cross-site scripting (XSS) vulnerability in Fortinet FortiManager 5.0.x before 5.0.11, 5.2.x before 5.2.2 allows remote ... |
| CVE-2015-3614 | — | — | 2.0% | Aug 11, 2017 | Fortinet FortiManager 5.0.x before 5.0.11, 5.2.x before 5.2.2 allows remote attackers to obtain arbitrary files via vect... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now