2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-7411 | — | — | 3.3% | Mar 12, 2016 | The portal client in IBM Tivoli Monitoring (ITM) 6.2.2 through FP9, 6.2.3 through FP5, and 6.3.0 through FP6 allows remo... |
| CVE-2015-6485 | — | — | 1.2% | Mar 12, 2016 | Schneider Electric Telvent Sage 2300 RTUs with firmware before C3413-500-S01, and LANDAC II-2, Sage 1410, Sage 1430, Sag... |
| CVE-2015-6184 | — | — | 14.3% | Mar 9, 2016 | The CAttrArray object implementation in Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbi... |
| CVE-2015-7490 | — | — | 1.1% | Mar 3, 2016 | IBM InfoSphere Information Server 8.5 through FP3, 8.7 through FP2, 9.1 through 9.1.2.0, 11.3 through 11.3.1.2, and 11.5... |
| CVE-2015-6260 | — | — | 2.3% | Mar 3, 2016 | Cisco NX-OS 7.1(1)N1(1) on Nexus 5500, 5600, and 6000 devices does not properly validate PDUs in SNMP packets, which all... |
| CVE-2015-0718 | — | — | 3.9% | Mar 3, 2016 | Cisco NX-OS 4.0 through 6.1 on Nexus 1000V 3000, 4000, 5000, 6000, and 7000 devices and Unified Computing System (UCS) p... |
| CVE-2015-8524 | — | — | 1.4% | Feb 29, 2016 | Cross-site scripting (XSS) vulnerability in Process Portal in IBM Business Process Manager 8.5.0.x through 8.5.0.2, 8.5.... |
| CVE-2015-7491 | — | — | 0.6% | Feb 29, 2016 | Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 8.0.x before 8.0.0.1 CF20 and 8.5.x before 8.5.0.0 CF09... |
| CVE-2015-7457 | — | — | 0.8% | Feb 29, 2016 | Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 8.0.x before 8.0.0.1 CF20 and 8.5.x before 8.5.0.0 CF09... |
| CVE-2015-7455 | — | — | 0.7% | Feb 29, 2016 | IBM WebSphere Portal 7.x through 7.0.0.2 CF29, 8.0.x before 8.0.0.1 CF20, and 8.5.x before 8.5.0.0 CF09 uses weak permis... |
| CVE-2015-7428 | — | — | 1.0% | Feb 29, 2016 | Open redirect vulnerability in IBM WebSphere Portal 8.0.x before 8.0.0.1 CF20 and 8.5.x before 8.5.0.0 CF09 allows remot... |
| CVE-2015-7262 | — | — | 1.5% | Feb 27, 2016 | QNAP iArtist Lite before 1.4.54, as distributed with QNAP Signage Station before 2.0.1, allows remote authenticated user... |
| CVE-2015-7261 | — | — | 1.6% | Feb 27, 2016 | The FTP service in QNAP iArtist Lite before 1.4.54, as distributed with QNAP Signage Station before 2.0.1, has hardcoded... |
| CVE-2015-6036 | — | — | 1.7% | Feb 27, 2016 | QNAP Signage Station before 2.0.1 allows remote attackers to bypass authentication, and consequently upload files, via a... |
| CVE-2015-6022 | — | — | 3.1% | Feb 27, 2016 | Unrestricted file upload vulnerability in QNAP Signage Station before 2.0.1 allows remote authenticated users to execute... |
| CVE-2015-3591 | — | — | — | Feb 25, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-3591. Reason: This candidate is a duplicate of... |
| CVE-2015-5351 | — | — | 9.2% | Feb 25, 2016 | The (1) Manager and (2) Host Manager applications in Apache Tomcat 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before ... |
| CVE-2015-5346 | — | — | 10.6% | Feb 25, 2016 | Session fixation vulnerability in Apache Tomcat 7.x before 7.0.66, 8.x before 8.0.30, and 9.x before 9.0.0.M2, when diff... |
| CVE-2015-5345 | — | — | 18.4% | Feb 25, 2016 | The Mapper component in Apache Tomcat 6.x before 6.0.45, 7.x before 7.0.68, 8.x before 8.0.30, and 9.x before 9.0.0.M2 p... |
| CVE-2015-5174 | — | — | 12.6% | Feb 25, 2016 | Directory traversal vulnerability in RequestUtil.java in Apache Tomcat 6.x before 6.0.45, 7.x before 7.0.65, and 8.x bef... |
| CVE-2015-8277 | — | — | 28.7% | Feb 24, 2016 | Multiple buffer overflows in (1) lmgrd and (2) Vendor Daemon in Flexera FlexNet Publisher before 11.13.1.2 Security Upda... |
| CVE-2015-8805 | — | — | 2.7% | Feb 23, 2016 | The ecc_256_modq function in ecc-256.c in Nettle before 3.2 does not properly handle carry propagation and produces inco... |
| CVE-2015-8804 | — | — | 3.9% | Feb 23, 2016 | x86_64/ecc-384-modp.asm in Nettle before 3.2 does not properly handle carry propagation and produces incorrect output in... |
| CVE-2015-8803 | — | — | 4.1% | Feb 23, 2016 | The ecc_256_modp function in ecc-256.c in Nettle before 3.2 does not properly handle carry propagation and produces inco... |
| CVE-2015-5294 | — | — | — | Feb 23, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now