2015 CVE Vulnerabilities

8,779 CVEs published in 2015.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2015-9098CRITICAL9.8In Redgate SQL Monitor before 3.10 and 4.x before 4.2, a remote attacker can gain unauthenticated access to the Base Mon...
CVE-2015-0936CRITICAL9.8Ceragon FibeAir IP-10 have a default SSH public key in the authorized_keys file for the mateidu user, which allows remot...
CVE-2015-5211CRITICAL9.6Under some situations, the Spring Framework 4.2.0 to 4.2.1, 4.0.0 to 4.1.7, 3.2.0 to 3.2.14 and older unsupported versio...
CVE-2015-2888CRITICAL9.8Summer Baby Zoom Wifi Monitor & Internet Viewing System allows remote attackers to bypass authentication, related to the...
CVE-2015-8965CRITICAL9.8Rogue Wave JViews before 8.8 patch 21 and 8.9 before patch 1 allows remote attackers to execute arbitrary Java code that...
CVE-2015-8972CRITICAL9.8Stack-based buffer overflow in the ValidateMove function in frontend/move.cc in GNU Chess (aka gnuchess) before 6.2.4 mi...
CVE-2015-8857CRITICAL9.8The uglify-js package before 2.4.24 for Node.js does not properly account for non-boolean values when rewriting boolean ...
CVE-2015-3210CRITICAL9.8Heap-based buffer overflow in PCRE 8.34 through 8.37 and PCRE2 10.10 allows remote attackers to execute arbitrary code v...
CVE-2015-8969CRITICAL9.8git-fastclone before 1.0.5 passes user modifiable strings directly to a shell command. An attacker can execute malicious...
CVE-2015-0573CRITICAL9.8drivers/media/platform/msm/broadcast/tsc.c in the TSC driver for the Linux kernel 3.x, as used in Qualcomm Innovation Ce...
CVE-2015-8880CRITICAL9.8Double free vulnerability in the format printer in PHP 7.x before 7.0.1 allows remote attackers to have an unspecified i...
CVE-2015-8866CRITICAL9.6ext/libxml/libxml.c in PHP before 5.5.22 and 5.6.x before 5.6.6, when PHP-FPM is used, does not isolate each thread from...
CVE-2015-8812CRITICAL9.8drivers/infiniband/hw/cxgb3/iwch_cm.c in the Linux kernel before 4.5 does not properly identify error conditions, which ...
CVE-2015-8841CRITICAL9.8Heap-based buffer overflow in the Archive support module in ESET NOD32 before update 11861 allows remote attackers to ex...
CVE-2015-8710CRITICAL9.8The htmlParseComment function in HTMLparser.c in libxml2 allows attackers to obtain sensitive information, cause a denia...
CVE-2015-7921CRITICAL9.1The FTP server in Pro-face GP-Pro EX EX-ED before 4.05.000, PFXEXEDV before 4.05.000, PFXEXEDLS before 4.05.000, and PFX...
CVE-2015-8787CRITICAL9.8The nf_nat_redirect_ipv4 function in net/netfilter/nf_nat_redirect.c in the Linux kernel before 4.4 allows remote attack...
CVE-2015-7512CRITICAL9Buffer overflow in the pcnet_receive function in hw/net/pcnet.c in QEMU, when a guest NIC has a larger MTU, allows remot...
CVE-2015-8668CRITICAL9.8Heap-based buffer overflow in the PackBitsPreEncode function in tif_packbits.c in bmp2tiff in libtiff 4.0.6 and earlier ...
CVE-2015-7450CRITICAL9.8Serialized-object interfaces in certain IBM analytics, business solutions, cognitive, IT infrastructure, and mobile and ...
CVE-2015-7755CRITICAL9.8Juniper ScreenOS 6.2.0r15 through 6.2.0r18, 6.3.0r12 before 6.3.0r12b, 6.3.0r13 before 6.3.0r13b, 6.3.0r14 before 6.3.0r...
CVE-2015-6420CRITICAL9.8Serialized-object interfaces in certain Cisco Collaboration and Social Media; Endpoint Clients and Client Software; Netw...
CVE-2015-6764CRITICAL9.8The BasicJsonStringifier::SerializeJSArray function in json-stringifier.h in the JSON stringifier in Google V8, as used ...
CVE-2015-8394CRITICAL9.8PCRE before 8.38 mishandles the (?(<digits>) and (?(R<digits>) conditions, which allows remote attackers to cause a deni...
CVE-2015-8391CRITICAL9.8The pcre_compile function in pcre_compile.c in PCRE before 8.38 mishandles certain [: nesting, which allows remote attac...

Check if your code is affected by 2015 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now