2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-7950 | — | — | — | Mar 5, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2015-7949 | — | — | — | Mar 5, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2015-7948 | — | — | — | Mar 5, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2015-7947 | — | — | — | Mar 5, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2015-7646 | — | — | — | Mar 5, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2015-4617 | — | — | 2.2% | Feb 15, 2019 | Vulnerability in Easy2map-photos WordPress Plugin v1.09 MapPinImageUpload.php and MapPinIconSave.php allows path travers... |
| CVE-2015-4615 | — | — | 2.2% | Feb 15, 2019 | Vulnerability in Easy2map-photos WordPress Plugin v1.09 allows SQL Injection via unsanitized mapTemplateName, mapName, m... |
| CVE-2015-9282 | — | — | 1.3% | Feb 6, 2019 | The Pie Chart Panel plugin through 2019-01-02 for Grafana is vulnerable to XSS via legend data or tooltip data. When a c... |
| CVE-2015-9281 | — | — | 0.6% | Jan 17, 2019 | Logon Manager in SAS Web Infrastructure Platform before 9.4M3 allows reflected XSS on the Timeout page. |
| CVE-2015-9279 | — | — | 1.3% | Jan 16, 2019 | MailEnable before 8.60 allows Stored XSS via malformed use of "<img/src" with no ">" character in the body of an e-mail ... |
| CVE-2015-9278 | — | — | 2.5% | Jan 16, 2019 | MailEnable before 8.60 allows Privilege Escalation because admin accounts could be created as a consequence of %0A misha... |
| CVE-2015-9277 | — | — | 2.2% | Jan 16, 2019 | MailEnable before 8.60 allows Directory Traversal for reading the messages of other users, uploading files, and deleting... |
| CVE-2015-9276 | — | — | 1.1% | Jan 16, 2019 | SmarterTools SmarterMail before 13.3.5535 was vulnerable to stored XSS by bypassing the anti-XSS mechanisms. It was poss... |
| CVE-2015-9275 | — | — | 2.4% | Jan 7, 2019 | ARC 5.21q allows directory traversal via a full pathname in an archive file. |
| CVE-2015-9274 | — | — | 1.5% | Nov 15, 2018 | HarfBuzz before 1.0.4 allows remote attackers to cause a denial of service (invalid read of two bytes and application cr... |
| CVE-2015-5159 | — | — | 2.2% | Oct 30, 2018 | python-kdcproxy before 0.3.2 allows remote attackers to cause a denial of service via a large POST request. |
| CVE-2015-7266 | — | — | 1.1% | Oct 30, 2018 | The Interactive Advertising Bureau (IAB) OpenRTB 2.3 protocol implementation might allow remote attackers to conceal the... |
| CVE-2015-4633 | — | — | 6.0% | Oct 18, 2018 | Multiple SQL injection vulnerabilities in Koha 3.14.x before 3.14.16, 3.16.x before 3.16.12, 3.18.x before 3.18.08, and ... |
| CVE-2015-4632 | — | — | 51.8% | Oct 18, 2018 | Multiple directory traversal vulnerabilities in Koha 3.14.x before 3.14.16, 3.16.x before 3.16.12, 3.18.x before 3.18.08... |
| CVE-2015-4631 | — | — | 3.7% | Oct 18, 2018 | Multiple cross-site scripting (XSS) vulnerabilities in Koha 3.14.x before 3.14.16, 3.16.x before 3.16.12, 3.18.x before ... |
| CVE-2015-4630 | — | — | 3.0% | Oct 18, 2018 | Multiple cross-site request forgery (CSRF) vulnerabilities in Koha 3.14.x before 3.14.16, 3.16.x before 3.16.12, 3.18.x ... |
| CVE-2015-9273 | — | — | 1.3% | Oct 7, 2018 | The wp-slimstat (aka Slimstat Analytics) plugin before 4.1.6.1 for WordPress has XSS via an HTTP Referer header, or via ... |
| CVE-2015-9272 | — | — | 5.0% | Oct 5, 2018 | The videowhisper-video-presentation plugin 3.31.17 for WordPress allows remote attackers to execute arbitrary code becau... |
| CVE-2015-9271 | — | — | 4.3% | Oct 4, 2018 | The VideoWhisper videowhisper-video-conference-integration plugin 4.91.8 for WordPress allows remote attackers to execut... |
| CVE-2015-9270 | — | — | 1.0% | Oct 1, 2018 | XSS exists in the the-holiday-calendar plugin before 1.11.3 for WordPress via the thc-month parameter. |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now