2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-6013 | — | — | 8.4% | Jan 22, 2016 | Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.5.0, 8.5.1, and 8.... |
| CVE-2015-8362 | — | — | 4.7% | Jan 22, 2016 | The setUpSubtleUserAccount function in /bin/bw on Harman AMX devices before 2015-10-12 has a hardcoded password for the ... |
| CVE-2015-7909 | — | — | 1.1% | Jan 22, 2016 | Stack-based buffer overflow in Hospira Communication Engine (CE) before 1.2 in LifeCare PCA Infusion System 5.07, Plum A... |
| CVE-2015-6435 | — | — | 8.7% | Jan 22, 2016 | An unspecified CGI script in Cisco FX-OS before 1.1.2 on Firepower 9000 devices and Cisco Unified Computing System (UCS)... |
| CVE-2015-6412 | — | — | 2.4% | Jan 22, 2016 | Cisco Modular Encoding Platform D9036 Software before 02.04.70 has hardcoded (1) root and (2) guest passwords, which mak... |
| CVE-2015-8472 | — | — | 6.1% | Jan 21, 2016 | Buffer overflow in the png_set_PLTE function in libpng before 1.0.65, 1.1.x and 1.2.x before 1.2.55, 1.3.x, 1.4.x before... |
| CVE-2015-4926 | — | — | 1.5% | Jan 21, 2016 | Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 11.5.10.2, 12.1, and... |
| CVE-2015-4925 | — | — | 1.7% | Jan 21, 2016 | Unspecified vulnerability in the Workspace Manager component in Oracle Database Server 11.2.0.4 allows remote authentica... |
| CVE-2015-4924 | — | — | 1.1% | Jan 21, 2016 | Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.1.1, 9.3.1.2, 9.3.... |
| CVE-2015-4923 | — | — | 1.5% | Jan 21, 2016 | Unspecified vulnerability in the XML Developer's Kit for C component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 1... |
| CVE-2015-4922 | — | — | 0.4% | Jan 21, 2016 | Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect availability via vectors related to Boot... |
| CVE-2015-4921 | — | — | 1.3% | Jan 21, 2016 | Unspecified vulnerability in the Database Vault component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 all... |
| CVE-2015-4920 | — | — | 0.4% | Jan 21, 2016 | Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect integrity via vectors related to NDMP Ba... |
| CVE-2015-4919 | — | — | 1.8% | Jan 21, 2016 | Unspecified vulnerability in the JD Edwards EnterpriseOne Tools component in Oracle JD Edwards Products 9.1 and 9.2 allo... |
| CVE-2015-4885 | — | — | 1.6% | Jan 21, 2016 | Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 12... |
| CVE-2015-4808 | — | — | 0.4% | Jan 21, 2016 | Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.5.0, 8.5.1, and 8.... |
| CVE-2015-5516 | — | — | 2.9% | Jan 20, 2016 | Memory leak in the last hop kernel module in F5 BIG-IP LTM, GTM, and Link Controller 10.1.x, 10.2.x before 10.2.4 HF13, ... |
| CVE-2015-5295 | — | — | 2.9% | Jan 20, 2016 | The template-validate command in OpenStack Orchestration API (Heat) before 2015.1.3 (kilo) and 5.0.x before 5.0.1 (liber... |
| CVE-2015-8705 | — | — | 7.7% | Jan 20, 2016 | buffer.c in named in ISC BIND 9.10.x before 9.10.3-P3, when debug logging is enabled, allows remote attackers to cause a... |
| CVE-2015-8704 | — | — | 20.2% | Jan 20, 2016 | apl_42.c in ISC BIND 9.x before 9.9.8-P3, 9.9.x, and 9.10.x before 9.10.3-P3 allows remote authenticated users to cause ... |
| CVE-2015-8777 | — | — | 0.6% | Jan 20, 2016 | The process_envvars function in elf/rtld.c in the GNU C Library (aka glibc or libc6) before 2.23 allows local users to b... |
| CVE-2015-4951 | — | — | 1.3% | Jan 20, 2016 | Client Acceptor Daemon (CAD) in the client in IBM Spectrum Protect (formerly Tivoli Storage Manager) 5.5 and 6.x before ... |
| CVE-2015-8617 | — | — | 23.9% | Jan 19, 2016 | Format string vulnerability in the zend_throw_or_error function in Zend/zend_execute_API.c in PHP 7.x before 7.0.1 allow... |
| CVE-2015-8616 | — | — | 2.2% | Jan 19, 2016 | Use-after-free vulnerability in the Collator::sortWithSortKeys function in ext/intl/collator/collator_sort.c in PHP 7.x ... |
| CVE-2015-6836 | — | — | 9.8% | Jan 19, 2016 | The SoapClient __call method in ext/soap/soap.c in PHP before 5.4.45, 5.5.x before 5.5.29, and 5.6.x before 5.6.13 does ... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now