2015 CVE Vulnerabilities

8,779 CVEs published in 2015.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2015-6434Cisco Prime Infrastructure does not properly restrict use of IFRAME elements, which makes it easier for remote attackers...
CVE-2015-6433SQL injection vulnerability in Cisco Unified Communications Manager 11.0(0.98000.225) allows remote authenticated users ...
CVE-2015-6647The Widevine QSEE TrustZone application in Android 5.x before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to...
CVE-2015-6646The System V IPC implementation in the kernel in Android before 6.0 2016-01-01 allows attackers to cause a denial of ser...
CVE-2015-6645SyncManager in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to cause a denial of service (cont...
CVE-2015-6644Bouncy Castle in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to obtain sensitive information ...
CVE-2015-6643Setup Wizard in Android 5.x before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows physically proximate attackers to modif...
CVE-2015-6642The kernel in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to obtain sensitive information, an...
CVE-2015-6641Bluetooth in Android 6.0 before 2016-01-01 allows remote attackers to obtain sensitive Contacts information by leveragin...
CVE-2015-6640The prctl_set_vma_anon_name function in kernel/sys.c in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 does not e...
CVE-2015-6639The Widevine QSEE TrustZone application in Android 5.x before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to...
CVE-2015-6638The Imagination Technologies driver in Android 5.x before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to gai...
CVE-2015-6637The MediaTek misc-sd driver in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to gain privileges...
CVE-2015-6636mediaserver in Android 5.x before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows remote attackers to execute arbitrary co...
CVE-2015-5310The WNM Sleep Mode code in wpa_supplicant 2.x before 2.6 does not properly ignore key data in response frames when manag...
CVE-2015-6861HPE Helion Eucalyptus 3.4.0 through 4.2.0 allows remote authenticated users to bypass an intended AssumeRole permission ...
CVE-2015-6860HPE Network Switches with software 15.16.x and 15.17.x allow local users to bypass intended access restrictions via unsp...
CVE-2015-6859HPE Network Switches with software 15.16.x and 15.17.x allow local users to bypass intended access restrictions via unsp...
CVE-2015-6858HP Insight Control server provisioning before 7.5.0 RabbitMQ allows remote attackers to obtain sensitive information via...
CVE-2015-5447Cross-site scripting (XSS) vulnerability in HP StoreOnce Backup system software before 3.13.1 allows remote authenticate...
CVE-2015-5446HP StoreOnce Backup system software before 3.13.1 allows remote attackers to execute arbitrary code via unspecified vect...
CVE-2015-5445Cross-site request forgery (CSRF) vulnerability in HP StoreOnce Backup system software before 3.13.1 allows remote authe...
CVE-2015-5434HPE Networking Products, originally branded as Comware 5, Comware 7, H3C, or HP, allow remote attackers to bypass intend...
CVE-2015-6432Cisco IOS XR 4.2.0, 4.3.0, 5.0.0, 5.1.0, 5.2.0, 5.2.2, 5.2.4, 5.3.0, and 5.3.2 does not properly restrict the number of ...
CVE-2015-8742The dissect_CPMSetBindings function in epan/dissectors/packet-mswsp.c in the MS-WSP dissector in Wireshark 2.0.x before ...

Check if your code is affected by 2015 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now