2015 CVE Vulnerabilities

8,779 CVEs published in 2015.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2015-0107——IBM Tivoli IT Asset Management for IT, Tivoli Service Request Manager, and Change and Configuration Management Database ...
CVE-2015-0104——IBM Tivoli IT Asset Management for IT, Tivoli Service Request Manager, and Change and Configuration Management Database ...
CVE-2015-8285——The webssx.sys driver in QuickHeal 16.00 allows remote attackers to cause a denial of service.
CVE-2015-8958——coders/sun.c in ImageMagick before 6.9.0-4 Beta allows remote attackers to cause a denial of service (out-of-bounds read...
CVE-2015-8957——Buffer overflow in ImageMagick before 6.9.0-4 Beta allows remote attackers to cause a denial of service (application cra...
CVE-2015-8256——Multiple cross-site scripting (XSS) vulnerabilities in Axis network cameras.
CVE-2015-6568——Wolf CMS before 0.8.3.1 allows unrestricted file rename and PHP Code Execution because admin/plugin/file_manager/browse/...
CVE-2015-6567——Wolf CMS before 0.8.3.1 allows unrestricted file upload and PHP Code Execution because admin/plugin/file_manager/browse/...
CVE-2015-8356——Multiple SQL injection vulnerabilities in the mcart.xls module 6.5.2 and earlier for Bitrix allow remote authenticated u...
CVE-2015-2947——KanColleViewer versions 3.8.1 and earlier operates as an open proxy which allows remote attackers to trigger outbound ne...
CVE-2015-8780——Samsung wssyncmlnps before 2015-10-31 allows directory traversal in a Kies restore, aka ZipFury.
CVE-2015-8864——Cross-site scripting (XSS) vulnerability in Roundcube Webmail before 1.0.9 and 1.1.x before 1.1.5 allows remote attacker...
CVE-2015-8284——SeaWell Networks Spectrum SDC 02.05.00 allows remote viewer users to perform administrative functions.
CVE-2015-8283——Directory traversal vulnerability in configure_manage.php in SeaWell Networks Spectrum SDC 02.05.00.
CVE-2015-8282——SeaWell Networks Spectrum SDC 02.05.00 has a default password of "admin" for the "admin" account.
CVE-2015-8272——RTMPDump 2.4 allows remote attackers to trigger a denial of service (NULL pointer dereference and process crash).
CVE-2015-8271——The AMF3CD_AddProp function in amf.c in RTMPDump 2.4 allows remote RTMP Media servers to execute arbitrary code.
CVE-2015-8270——The AMF3ReadString function in amf.c in RTMPDump 2.4 allows remote RTMP Media servers to cause a denial of service (inva...
CVE-2015-8223——Huawei P7 before P7-L00C17B851, P7-L05C00B851, and P7-L09C92B85, and P8 ALE-UL00 before ALE-UL00B211 allows local users ...
CVE-2015-8107——Format string vulnerability in GNU a2ps 4.14 allows remote attackers to execute arbitrary code.
CVE-2015-7740——Huawei P7 before P7-L00C17B851, P7-L05C00B851, and P7-L09C92B851 and P8 ALE-UL00 before ALE-UL00B211 allows local users ...
CVE-2015-7565——Cross-site scripting (XSS) vulnerability in Ember.js 1.8.x through 1.10.x, 1.11.x before 1.11.4, 1.12.x before 1.12.2, 1...
CVE-2015-6674——Buffer underflow vulnerability in the Debian inspircd package before 2.0.5-1+deb7u1 for wheezy and before 2.0.16-1 for j...
CVE-2015-1839——modules/chef.py in SaltStack before 2014.7.4 does not properly handle files in /tmp.
CVE-2015-1838——modules/serverdensity_device.py in SaltStack before 2014.7.4 does not properly handle files in /tmp.

Check if your code is affected by 2015 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now