2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-8150 | — | — | 0.3% | Feb 18, 2016 | Symantec Encryption Management Server (SEMS) 3.3.2 before MP12 allows local users to obtain root access by modifying a b... |
| CVE-2015-8149 | — | — | 1.9% | Feb 18, 2016 | The LDAP service in Symantec Encryption Management Server (SEMS) 3.3.2 before MP12 allows remote attackers to cause a de... |
| CVE-2015-8148 | — | — | 1.6% | Feb 18, 2016 | The LDAP service in Symantec Encryption Management Server (SEMS) 3.3.2 before MP12 allows remote attackers to obtain sen... |
| CVE-2015-5970 | — | — | 1.3% | Feb 18, 2016 | The ChangePassword RPC method in Novell ZENworks Configuration Management (ZCM) 11.3 and 11.4 allows remote attackers to... |
| CVE-2015-7547 | — | — | 89.6% | Feb 18, 2016 | Multiple stack-based buffer overflows in the (1) send_dg and (2) send_vc functions in the libresolv library in the GNU C... |
| CVE-2015-8287 | — | — | 1.4% | Feb 18, 2016 | Swann SRNVW-470LCD devices with firmware through 0114 and SWNVW-470CAM devices with firmware through 1022 allow remote a... |
| CVE-2015-8286 | — | — | 4.6% | Feb 18, 2016 | Zhuhai RaySharp firmware has a hardcoded root password, which makes it easier for remote attackers to obtain access via ... |
| CVE-2015-8489 | — | — | 1.6% | Feb 17, 2016 | customapp in Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to cause a denial of service (excessiv... |
| CVE-2015-8488 | — | — | 1.2% | Feb 17, 2016 | Cybozu Office 10.3.0 allows remote attackers to read image files via a crafted e-mail message, a different vulnerability... |
| CVE-2015-8487 | — | — | 1.2% | Feb 17, 2016 | Cybozu Office 9.0.0 through 10.3 allows remote attackers to discover CSRF tokens via unspecified vectors, a different vu... |
| CVE-2015-8486 | — | — | 1.2% | Feb 17, 2016 | Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to bypass intended access restrictions and read arb... |
| CVE-2015-8485 | — | — | 1.2% | Feb 17, 2016 | Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to bypass intended access restrictions and read arb... |
| CVE-2015-8484 | — | — | 1.2% | Feb 17, 2016 | Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to bypass intended calendar-viewing restrictions vi... |
| CVE-2015-8483 | — | — | 1.3% | Feb 17, 2016 | Open redirect vulnerability in Cybozu Office 10.2.0 through 10.3.0 allows remote attackers to redirect users to arbitrar... |
| CVE-2015-7798 | — | — | 1.1% | Feb 17, 2016 | Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitra... |
| CVE-2015-7797 | — | — | 1.1% | Feb 17, 2016 | Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitra... |
| CVE-2015-7796 | — | — | 1.1% | Feb 17, 2016 | Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitra... |
| CVE-2015-7795 | — | — | 1.1% | Feb 17, 2016 | Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitra... |
| CVE-2015-7581 | — | — | 6.5% | Feb 16, 2016 | actionpack/lib/action_dispatch/routing/route_set.rb in Action Pack in Ruby on Rails 4.x before 4.2.5.1 and 5.x before 5.... |
| CVE-2015-7580 | — | — | 2.0% | Feb 16, 2016 | Cross-site scripting (XSS) vulnerability in lib/rails/html/scrubbers.rb in the rails-html-sanitizer gem before 1.0.3 for... |
| CVE-2015-7579 | — | — | 2.3% | Feb 16, 2016 | Cross-site scripting (XSS) vulnerability in the rails-html-sanitizer gem 1.0.2 for Ruby on Rails 4.2.x and 5.x allows re... |
| CVE-2015-7578 | — | — | 2.3% | Feb 16, 2016 | Cross-site scripting (XSS) vulnerability in the rails-html-sanitizer gem before 1.0.3 for Ruby on Rails 4.2.x and 5.x al... |
| CVE-2015-7577 | — | — | 4.3% | Feb 16, 2016 | activerecord/lib/active_record/nested_attributes.rb in Active Record in Ruby on Rails 3.1.x and 3.2.x before 3.2.22.1, 4... |
| CVE-2015-7576 | — | — | 4.9% | Feb 16, 2016 | The http_basic_authenticate_with method in actionpack/lib/action_controller/metal/http_authentication.rb in the Basic Au... |
| CVE-2015-8797 | — | — | 3.3% | Feb 15, 2016 | Cross-site scripting (XSS) vulnerability in webapp/web/js/scripts/plugins.js in the stats page in the Admin UI in Apache... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now