2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-1396 | HIGH | 7.5 | 3.2% | Nov 25, 2019 | A Directory Traversal vulnerability exists in the GNU patch before 2.7.4. A remote attacker can write to arbitrary files... |
| CVE-2015-3140 | HIGH | 8.8 | 1.3% | Nov 21, 2019 | Multiple cross-site request forgery (CSRF) vulnerabilities in Synametrics Technologies SynaMan before 3.5 Build 1451, Sy... |
| CVE-2015-3167 | HIGH | 7.5 | 4.0% | Nov 20, 2019 | contrib/pgcrypto in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x be... |
| CVE-2015-9498 | HIGH | 8.8 | 0.7% | Oct 22, 2019 | The wps-hide-login plugin before 1.1 for WordPress has CSRF that affects saving an option value. |
| CVE-2015-9497 | HIGH | 8.8 | 1.0% | Oct 22, 2019 | The ad-inserter plugin before 1.5.3 for WordPress has CSRF with resultant XSS via wp-admin/options-general.php?page=ad-i... |
| CVE-2015-9496 | HIGH | 8.8 | 2.2% | Oct 22, 2019 | The freshmail-newsletter plugin before 1.6 for WordPress has shortcode.php SQL Injection via the 'FM_form id=' substring... |
| CVE-2015-9492 | HIGH | 7.5 | 3.1% | Oct 11, 2019 | The ThemeMakers SmartIT Premium Responsive theme through 2015-05-15 for WordPress allows remote attackers to obtain sens... |
| CVE-2015-9491 | HIGH | 7.5 | 3.1% | Oct 11, 2019 | The ThemeMakers Blessing Premium Responsive theme through 2015-05-15 for WordPress allows remote attackers to obtain sen... |
| CVE-2015-9490 | HIGH | 7.5 | 3.1% | Oct 11, 2019 | The ThemeMakers GamesTheme Premium theme through 2015-05-15 for WordPress allows remote attackers to obtain sensitive in... |
| CVE-2015-9489 | HIGH | 7.5 | 3.1% | Oct 11, 2019 | The ThemeMakers Goodnex Premium Responsive theme through 2015-05-15 for WordPress allows remote attackers to obtain sens... |
| CVE-2015-9488 | HIGH | 7.5 | 3.1% | Oct 11, 2019 | The ThemeMakers Almera Responsive Portfolio Site Template component through 2015-05-15 for WordPress allows remote attac... |
| CVE-2015-9487 | HIGH | 7.5 | 3.1% | Oct 11, 2019 | The ThemeMakers Almera Responsive Portfolio theme through 2015-05-15 for WordPress allows remote attackers to obtain sen... |
| CVE-2015-9486 | HIGH | 7.5 | 3.1% | Oct 11, 2019 | The ThemeMakers Axioma Premium Responsive theme through 2015-05-15 for WordPress allows remote attackers to obtain sensi... |
| CVE-2015-9485 | HIGH | 7.5 | 3.1% | Oct 11, 2019 | The ThemeMakers Accio Responsive Parallax One Page Site Template component through 2015-05-15 for WordPress allows remot... |
| CVE-2015-9484 | HIGH | 7.5 | 3.1% | Oct 11, 2019 | The ThemeMakers Accio One Page Parallax Responsive theme through 2015-05-15 for WordPress allows remote attackers to obt... |
| CVE-2015-9483 | HIGH | 7.5 | 3.1% | Oct 11, 2019 | The ThemeMakers Invento Responsive Gallery/Architecture Template component through 2015-05-15 for WordPress allows remot... |
| CVE-2015-9482 | HIGH | 7.5 | 3.1% | Oct 11, 2019 | The ThemeMakers Car Dealer / Auto Dealer Responsive theme through 2015-05-15 for WordPress allows remote attackers to ob... |
| CVE-2015-9481 | HIGH | 7.5 | 3.1% | Oct 11, 2019 | The ThemeMakers Diplomat | Political theme through 2015-05-15 for WordPress allows remote attackers to obtain sensitive ... |
| CVE-2015-9480 | HIGH | 7.5 | 12.6% | Oct 10, 2019 | The RobotCPA plugin 5 for WordPress has directory traversal via the f.php l parameter. |
| CVE-2015-9477 | HIGH | 8.8 | 1.4% | Oct 10, 2019 | The Vernissage theme 1.2.8 for WordPress has insufficient restrictions on option updates. |
| CVE-2015-9476 | HIGH | 8.8 | 1.4% | Oct 10, 2019 | The Teardrop theme 1.8.1 for WordPress has insufficient restrictions on option updates. |
| CVE-2015-9475 | HIGH | 8.8 | 1.5% | Oct 10, 2019 | The Pont theme 1.5 for WordPress has insufficient restrictions on option updates. |
| CVE-2015-9474 | HIGH | 8.8 | 1.5% | Oct 10, 2019 | The Simpolio theme 1.3.2 for WordPress has insufficient restrictions on option updates. |
| CVE-2015-9473 | HIGH | 7.5 | 3.7% | Oct 10, 2019 | The estrutura-basica theme through 2015-09-13 for WordPress has directory traversal via the scripts/download.php arquivo... |
| CVE-2015-9470 | HIGH | 7.5 | 4.1% | Oct 10, 2019 | The history-collection plugin through 1.1.1 for WordPress has directory traversal via the download.php var parameter. |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now