2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-8716 | — | — | 1.5% | Jan 4, 2016 | The init_t38_info_conv function in epan/dissectors/packet-t38.c in the T.38 dissector in Wireshark 1.12.x before 1.12.9 ... |
| CVE-2015-8715 | — | — | 1.5% | Jan 4, 2016 | epan/dissectors/packet-alljoyn.c in the AllJoyn dissector in Wireshark 1.12.x before 1.12.9 does not check for empty arg... |
| CVE-2015-8714 | — | — | 1.5% | Jan 4, 2016 | The dissect_dcom_OBJREF function in epan/dissectors/packet-dcom.c in the DCOM dissector in Wireshark 1.12.x before 1.12.... |
| CVE-2015-8713 | — | — | 2.9% | Jan 4, 2016 | epan/dissectors/packet-umts_fp.c in the UMTS FP dissector in Wireshark 1.12.x before 1.12.9 does not properly reserve me... |
| CVE-2015-8712 | — | — | 1.5% | Jan 4, 2016 | The dissect_hsdsch_channel_info function in epan/dissectors/packet-umts_fp.c in the UMTS FP dissector in Wireshark 1.12.... |
| CVE-2015-8711 | — | — | 1.8% | Jan 4, 2016 | epan/dissectors/packet-nbap.c in the NBAP dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not va... |
| CVE-2015-3182 | — | — | 1.5% | Jan 4, 2016 | epan/dissectors/packet-dec-dnart.c in the DECnet NSP/RT dissector in Wireshark 1.10.12 through 1.10.14 mishandles a cert... |
| CVE-2015-8509 | — | — | 1.9% | Jan 3, 2016 | Template.pm in Bugzilla 2.x, 3.x, and 4.x before 4.2.16, 4.3.x and 4.4.x before 4.4.11, and 4.5.x and 5.0.x before 5.0.2... |
| CVE-2015-8508 | — | — | 1.5% | Jan 3, 2016 | Cross-site scripting (XSS) vulnerability in showdependencygraph.cgi in Bugzilla 2.x, 3.x, and 4.x before 4.2.16, 4.3.x a... |
| CVE-2015-5051 | — | — | 0.9% | Jan 3, 2016 | IBM Maximo Asset Management 7.5 before 7.5.0.8 IF6 and 7.6 before 7.6.0.2 IF1 and Maximo Asset Management 7.5 before 7.5... |
| CVE-2015-5038 | — | — | 1.5% | Jan 3, 2016 | IBM Connections 3.x before 3.0.1.1 CR3, 4.0 before CR4, 4.5 before CR5, and 5.0 before CR3 does not properly detect recu... |
| CVE-2015-5037 | — | — | 0.4% | Jan 3, 2016 | Cross-site request forgery (CSRF) vulnerability in IBM Connections 3.x before 3.0.1.1 CR3, 4.0 before CR4, 4.5 before CR... |
| CVE-2015-5036 | — | — | 0.6% | Jan 3, 2016 | Cross-site scripting (XSS) vulnerability in IBM Connections 3.x before 3.0.1.1 CR3, 4.0 before CR4, 4.5 before CR5, and ... |
| CVE-2015-5035 | — | — | 0.7% | Jan 3, 2016 | Cross-site scripting (XSS) vulnerability in IBM Connections 3.x before 3.0.1.1 CR3, 4.0 before CR4, 4.5 before CR5, and ... |
| CVE-2015-5023 | — | — | 0.7% | Jan 3, 2016 | SQL injection vulnerability in IBM Curam Social Program Management 6.1 before 6.1.1 allows remote authenticated users to... |
| CVE-2015-5017 | — | — | 0.7% | Jan 3, 2016 | IBM Maximo Asset Management 7.1 through 7.1.1.13, 7.5.0 before 7.5.0.8 IFIX005, and 7.6.0 before 7.6.0.2 IFIX002; Maximo... |
| CVE-2015-5003 | — | — | 3.4% | Jan 3, 2016 | The portal in IBM Tivoli Monitoring (ITM) 6.2.2 through FP9, 6.2.3 through FP5, and 6.3.0 before FP7 allows remote authe... |
| CVE-2015-4962 | — | — | 0.5% | Jan 3, 2016 | Jazz Team Server in Jazz Foundation in IBM Rational Collaborative Lifecycle Management (CLM) 3.x and 4.x before 4.0.7 IF... |
| CVE-2015-4946 | — | — | 0.3% | Jan 3, 2016 | Rational LifeCycle Project Administration in Jazz Team Server in IBM Rational Collaborative Lifecycle Management (CLM) 3... |
| CVE-2015-2007 | — | — | 1.3% | Jan 3, 2016 | Directory traversal vulnerability in IBM Security QRadar SIEM 7.2.x before 7.2.5 Patch 6 allows remote authenticated use... |
| CVE-2015-1985 | — | — | 0.2% | Jan 3, 2016 | The queue manager on IBM MQ M2000 appliances before 8.0.0.4 allows local users to bypass an intended password requiremen... |
| CVE-2015-1971 | — | — | 0.5% | Jan 3, 2016 | Unspecified vulnerability in Jazz Team Server in Jazz Foundation in IBM Rational Collaborative Lifecycle Management (CLM... |
| CVE-2015-8027 | — | — | 5.4% | Jan 2, 2016 | Node.js 0.12.x before 0.12.9, 4.x before 4.2.3, and 5.x before 5.1.1 does not ensure the availability of a parser for ea... |
| CVE-2015-7452 | — | — | 0.9% | Jan 2, 2016 | IBM Maximo Asset Management 7.5 before 7.5.0.9 FP9 and 7.6 before 7.6.0.3 FP3 and Maximo Asset Management 7.5 before 7.5... |
| CVE-2015-7438 | — | — | 0.3% | Jan 2, 2016 | IBM Sterling B2B Integrator 5.2 allows local users to obtain sensitive cleartext web-services information by leveraging ... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now