2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-3441 | — | — | 2.0% | Jan 5, 2017 | The Parental Control panel in Genexis devices with DRGOS before 1.14.1 allows remote authenticated users to execute arbi... |
| CVE-2015-8817 | — | — | 0.4% | Dec 29, 2016 | QEMU (aka Quick Emulator) built to use 'address_space_translate' to map an address to a MemoryRegionSection is vulnerabl... |
| CVE-2015-0854 | — | — | 2.5% | Dec 29, 2016 | App/HelperFunctions.pm in Shutter through 0.93.1 allows user-assisted remote attackers to execute arbitrary commands via... |
| CVE-2015-6574 | — | — | 5.4% | Dec 15, 2016 | The SNAP Lite component in certain SISCO MMS-EASE and AX-S4 ICCP products allows remote attackers to cause a denial of s... |
| CVE-2015-3271 | — | — | 6.5% | Dec 15, 2016 | Apache Tika server (aka tika-server) in Apache Tika 1.9 might allow remote attackers to read arbitrary files via the HTT... |
| CVE-2015-8542 | — | — | 2.2% | Dec 15, 2016 | An issue was discovered in Open-Xchange Guard before 2.2.0-rev8. The "getprivkeybyid" API call is used to download a PGP... |
| CVE-2015-5073 | — | — | 7.7% | Dec 13, 2016 | Heap-based buffer overflow in the find_fixedlength function in pcre_compile.c in PCRE before 8.38 allows remote attacker... |
| CVE-2015-3418 | — | — | 2.3% | Dec 13, 2016 | The ProcPutImage function in dix/dispatch.c in X.Org Server (aka xserver and xorg-server) before 1.16.4 allows attackers... |
| CVE-2015-3217 | — | — | 6.2% | Dec 13, 2016 | PCRE 7.8 and 8.32 through 8.37, and PCRE2 10.10 mishandle group empty matches, which might allow remote attackers to cau... |
| CVE-2015-8786 | — | — | 3.5% | Dec 9, 2016 | The Management plugin in RabbitMQ before 3.6.1 allows remote authenticated users with certain privileges to cause a deni... |
| CVE-2015-8966 | — | — | 0.5% | Dec 8, 2016 | arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 4.4 allows local users to gain privileges via a crafted (1)... |
| CVE-2015-8870 | — | — | 2.0% | Dec 6, 2016 | Integer overflow in tools/bmp2tiff.c in LibTIFF before 4.0.4 allows remote attackers to cause a denial of service (heap-... |
| CVE-2015-8970 | — | — | 0.5% | Nov 28, 2016 | crypto/algif_skcipher.c in the Linux kernel before 4.4.2 does not verify that a setkey operation has been performed on a... |
| CVE-2015-1328 | — | — | 37.7% | Nov 28, 2016 | The overlayfs implementation in the linux (aka Linux kernel) package before 3.19.0-21.21 in Ubuntu through 15.04 does no... |
| CVE-2015-4961 | — | — | 0.5% | Nov 24, 2016 | IBM Tealeaf Customer Experience 8.x before 8.7.1.8847 FP10, 8.8.x before 8.8.0.9049 FP9, 9.0.0 and 9.0.1 before 9.0.1.11... |
| CVE-2015-8978 | — | — | 1.5% | Nov 22, 2016 | In Soap Lite (aka the SOAP::Lite extension for Perl) 1.14 and earlier, an example attack consists of defining 10 or more... |
| CVE-2015-8964 | — | — | 1.5% | Nov 16, 2016 | The tty_set_termios_ldisc function in drivers/tty/tty_ldisc.c in the Linux kernel before 4.5 allows local users to obtai... |
| CVE-2015-0787 | — | — | 0.8% | Oct 27, 2016 | XSS in NetIQ Designer for Identity Manager before 4.5.3 allows remote attackers to inject arbitrary HTML code via the ac... |
| CVE-2015-8953 | — | — | 0.5% | Oct 16, 2016 | fs/overlayfs/copy_up.c in the Linux kernel before 4.2.6 uses an incorrect cleanup code path, which allows local users to... |
| CVE-2015-8952 | — | — | 0.5% | Oct 16, 2016 | The mbcache feature in the ext2 and ext4 filesystem implementations in the Linux kernel before 4.6 mishandles xattr bloc... |
| CVE-2015-8956 | — | — | 0.2% | Oct 10, 2016 | The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock.c in the Linux kernel before 4.2 allows local users to obtain... |
| CVE-2015-8951 | — | — | 0.5% | Oct 10, 2016 | Multiple use-after-free vulnerabilities in sound/soc/msm/qdsp6v2/msm-lsm-client.c in the Qualcomm sound driver in Androi... |
| CVE-2015-8950 | — | — | 1.5% | Oct 10, 2016 | arch/arm64/mm/dma-mapping.c in the Linux kernel before 4.0.3, as used in the ION subsystem in Android and other products... |
| CVE-2015-7363 | — | — | 0.7% | Oct 7, 2016 | Cross-site scripting (XSS) vulnerability in the advanced settings page in Fortinet FortiManager 5.x before 5.0.12 and 5.... |
| CVE-2015-5162 | — | — | 3.1% | Oct 7, 2016 | The image parser in OpenStack Cinder 7.0.2 and 8.0.0 through 8.1.1; Glance before 11.0.1 and 12.0.0; and Nova before 12.... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now