2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-8108 | — | — | 1.5% | Apr 12, 2016 | The management interface in LenovoEMC EZ Media & Backup (hm3), ix2/ix2-dl, ix4-300d, px12-400r/450r, px6-300d, px2-300d,... |
| CVE-2015-8708 | — | — | 1.3% | Apr 11, 2016 | Stack-based buffer overflow in the conv_euctojis function in codeconv.c in Claws Mail 3.13.1 allows remote attackers to ... |
| CVE-2015-8614 | — | — | 2.5% | Apr 11, 2016 | Multiple stack-based buffer overflows in the (1) conv_jistoeuc, (2) conv_euctojis, and (3) conv_sjistoeuc functions in c... |
| CVE-2015-8604 | — | — | 2.3% | Apr 11, 2016 | SQL injection vulnerability in the host_new_graphs function in graphs_new.php in Cacti 0.8.8f and earlier allows remote ... |
| CVE-2015-8399 | — | — | 61.1% | Apr 11, 2016 | Atlassian Confluence before 5.8.17 allows remote authenticated users to read configuration files via the decoratorName p... |
| CVE-2015-8398 | — | — | 2.3% | Apr 11, 2016 | Cross-site scripting (XSS) vulnerability in Atlassian Confluence before 5.8.17 allows remote attackers to inject arbitra... |
| CVE-2015-7528 | — | — | 2.1% | Apr 11, 2016 | Kubernetes before 1.2.0-alpha.5 allows remote attackers to read arbitrary pod logs via a container name. |
| CVE-2015-7502 | — | — | 0.3% | Apr 11, 2016 | Red Hat CloudForms 3.2 Management Engine (CFME) 5.4.4 and CloudForms 4.0 Management Engine (CFME) 5.5.0 do not properly ... |
| CVE-2015-7330 | — | — | 2.1% | Apr 11, 2016 | Puppet Enterprise 2015.3 before 2015.3.1 allows remote attackers to bypass a host whitelist protection mechanism by leve... |
| CVE-2015-5349 | — | — | 2.1% | Apr 11, 2016 | The CSV export in Apache LDAP Studio and Apache Directory Studio before 2.0.0-M10 does not properly escape field values,... |
| CVE-2015-5329 | — | — | 1.5% | Apr 11, 2016 | The TripleO Heat templates (tripleo-heat-templates), as used in Red Hat Enterprise Linux OpenStack Platform 7.0, do not ... |
| CVE-2015-5313 | — | — | 0.5% | Apr 11, 2016 | Directory traversal vulnerability in the virStorageBackendFileSystemVolCreate function in storage/storage_backend_fs.c i... |
| CVE-2015-5303 | — | — | 1.7% | Apr 11, 2016 | The TripleO Heat templates (tripleo-heat-templates), when deployed via the commandline interface, allow remote attackers... |
| CVE-2015-5233 | — | — | 1.2% | Apr 11, 2016 | Foreman before 1.8.4 and 1.9.x before 1.9.1 do not properly apply view_hosts permissions, which allows (1) remote authen... |
| CVE-2015-0266 | — | — | 2.1% | Apr 11, 2016 | The Policy Admin Tool in Apache Ranger before 0.5.0 allows remote authenticated users to bypass intended access restrict... |
| CVE-2015-0265 | — | — | 4.9% | Apr 11, 2016 | Cross-site scripting (XSS) vulnerability in the Policy Admin Tool in Apache Ranger before 0.5.0 allows remote attackers ... |
| CVE-2015-8240 | — | — | 1.8% | Apr 11, 2016 | The Traffic Management Microkernel (TMM) in F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, GTM, Link Controller, and BIG-... |
| CVE-2015-5969 | — | — | 0.4% | Apr 8, 2016 | The mysql-systemd-helper script in the mysql-community-server package before 5.6.28-2.17.1 in openSUSE 13.2 and before 5... |
| CVE-2015-5229 | — | — | 2.2% | Apr 8, 2016 | The calloc function in the glibc package in Red Hat Enterprise Linux (RHEL) 6.7 and 7.2 does not properly initialize mem... |
| CVE-2015-6541 | — | — | 3.0% | Apr 8, 2016 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Mail interface in Zimbra Collaboration Server (ZCS) be... |
| CVE-2015-2774 | — | — | 1.9% | Apr 7, 2016 | Erlang/OTP before 18.0-rc1 does not properly check CBC padding bytes when terminating connections, which makes it easier... |
| CVE-2015-8681 | — | — | 0.7% | Apr 7, 2016 | The ovisp driver in Huawei P8 smartphones with software GRA-TL00 before GRA-TL00C01B230, GRA-CL00 before GRA-CL00C92B230... |
| CVE-2015-8680 | — | — | 0.7% | Apr 7, 2016 | The Graphics driver in Huawei P8 smartphones with software GRA-TL00 before GRA-TL00C01B230, GRA-CL00 before GRA-CL00C92B... |
| CVE-2015-8679 | — | — | 0.6% | Apr 7, 2016 | The Maxim_smartpa_dev driver in Huawei P8 smartphones with software GRA-TL00 before GRA-TL00C01B230, GRA-CL00 before GRA... |
| CVE-2015-8319 | — | — | 0.8% | Apr 7, 2016 | Heap-based buffer overflow in the HIFI driver in Huawei P8 smartphones with software GRA-TL00 before GRA-TL00C01B230, GR... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now