2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-6434 | — | — | 0.9% | Jan 8, 2016 | Cisco Prime Infrastructure does not properly restrict use of IFRAME elements, which makes it easier for remote attackers... |
| CVE-2015-6433 | — | — | 1.2% | Jan 8, 2016 | SQL injection vulnerability in Cisco Unified Communications Manager 11.0(0.98000.225) allows remote authenticated users ... |
| CVE-2015-6647 | — | — | 0.7% | Jan 6, 2016 | The Widevine QSEE TrustZone application in Android 5.x before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to... |
| CVE-2015-6646 | — | — | 0.6% | Jan 6, 2016 | The System V IPC implementation in the kernel in Android before 6.0 2016-01-01 allows attackers to cause a denial of ser... |
| CVE-2015-6645 | — | — | 0.3% | Jan 6, 2016 | SyncManager in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to cause a denial of service (cont... |
| CVE-2015-6644 | — | — | 0.9% | Jan 6, 2016 | Bouncy Castle in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to obtain sensitive information ... |
| CVE-2015-6643 | — | — | 0.2% | Jan 6, 2016 | Setup Wizard in Android 5.x before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows physically proximate attackers to modif... |
| CVE-2015-6642 | — | — | 0.7% | Jan 6, 2016 | The kernel in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to obtain sensitive information, an... |
| CVE-2015-6641 | — | — | 0.4% | Jan 6, 2016 | Bluetooth in Android 6.0 before 2016-01-01 allows remote attackers to obtain sensitive Contacts information by leveragin... |
| CVE-2015-6640 | — | — | 0.7% | Jan 6, 2016 | The prctl_set_vma_anon_name function in kernel/sys.c in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 does not e... |
| CVE-2015-6639 | — | — | 6.8% | Jan 6, 2016 | The Widevine QSEE TrustZone application in Android 5.x before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to... |
| CVE-2015-6638 | — | — | 0.5% | Jan 6, 2016 | The Imagination Technologies driver in Android 5.x before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to gai... |
| CVE-2015-6637 | — | — | 0.6% | Jan 6, 2016 | The MediaTek misc-sd driver in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to gain privileges... |
| CVE-2015-6636 | — | — | 2.1% | Jan 6, 2016 | mediaserver in Android 5.x before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows remote attackers to execute arbitrary co... |
| CVE-2015-5310 | — | — | 1.2% | Jan 6, 2016 | The WNM Sleep Mode code in wpa_supplicant 2.x before 2.6 does not properly ignore key data in response frames when manag... |
| CVE-2015-6861 | — | — | 1.0% | Jan 5, 2016 | HPE Helion Eucalyptus 3.4.0 through 4.2.0 allows remote authenticated users to bypass an intended AssumeRole permission ... |
| CVE-2015-6860 | — | — | 0.6% | Jan 5, 2016 | HPE Network Switches with software 15.16.x and 15.17.x allow local users to bypass intended access restrictions via unsp... |
| CVE-2015-6859 | — | — | 0.5% | Jan 5, 2016 | HPE Network Switches with software 15.16.x and 15.17.x allow local users to bypass intended access restrictions via unsp... |
| CVE-2015-6858 | — | — | 2.5% | Jan 5, 2016 | HP Insight Control server provisioning before 7.5.0 RabbitMQ allows remote attackers to obtain sensitive information via... |
| CVE-2015-5447 | — | — | 1.2% | Jan 5, 2016 | Cross-site scripting (XSS) vulnerability in HP StoreOnce Backup system software before 3.13.1 allows remote authenticate... |
| CVE-2015-5446 | — | — | 2.5% | Jan 5, 2016 | HP StoreOnce Backup system software before 3.13.1 allows remote attackers to execute arbitrary code via unspecified vect... |
| CVE-2015-5445 | — | — | 1.3% | Jan 5, 2016 | Cross-site request forgery (CSRF) vulnerability in HP StoreOnce Backup system software before 3.13.1 allows remote authe... |
| CVE-2015-5434 | — | — | 2.0% | Jan 5, 2016 | HPE Networking Products, originally branded as Comware 5, Comware 7, H3C, or HP, allow remote attackers to bypass intend... |
| CVE-2015-6432 | — | — | 1.8% | Jan 5, 2016 | Cisco IOS XR 4.2.0, 4.3.0, 5.0.0, 5.1.0, 5.2.0, 5.2.2, 5.2.4, 5.3.0, and 5.3.2 does not properly restrict the number of ... |
| CVE-2015-8742 | — | — | 1.4% | Jan 4, 2016 | The dissect_CPMSetBindings function in epan/dissectors/packet-mswsp.c in the MS-WSP dissector in Wireshark 2.0.x before ... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now