2.1
    Low

    CVE-2015-1677

    Last Modified: 28 Mar 2019

    The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to bypass the ASLR protection mechanism via a crafted function call, aka "Microsoft Windows Kernel Memory Disclosure Vulnerability," a different vulnerability than CVE-2015-1676, CVE-2015-1678, CVE-2015-1679, and CVE-2015-1680.

    Source:hfiref0x
    Published:13 May 2015
    2.1
    Low

    CVE-2015-1676

    Last Modified: 28 Mar 2019

    The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to bypass the ASLR protection mechanism via a crafted function call, aka "Microsoft Windows Kernel Memory Disclosure Vulnerability," a different vulnerability than CVE-2015-1677, CVE-2015-1678, CVE-2015-1679, and CVE-2015-1680.

    Source:hfiref0x
    Published:13 May 2015
    4.6
    Medium

    CVE-2015-1674

    Last Modified: 21 May 2015

    The kernel in Microsoft Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 does not properly validate an unspecified address, which allows local users to bypass the KASLR protection mechanism, and consequently discover the cng.sys base address, via a crafted application, aka "Windows Kernel Security Feature Bypass Vulnerability."

    Source:4B5F5F4B
    Published:13 May 2015
    7.8
    High

    CVE-2015-1641

    Last Modified: 22 Apr 2026

    Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word for Mac 2011, Office Compatibility Pack SP3, Word Automation Services on SharePoint Server 2010 SP2 and 2013 SP1, and Office Web Apps Server 2010 SP2 and 2013 SP1 allow remote attackers to execute arbitrary code via a crafted RTF document, aka "Microsoft Office Memory Corruption Vulnerability."

    Published:14 Apr 2015
    9.8
    Critical

    CVE-2015-1635

    Last Modified: 15 Apr 2015

    HTTP.sys in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8, Windows 8.1, and Windows Server 2012 Gold and R2 allows remote attackers to execute arbitrary code via crafted HTTP requests, aka "HTTP.sys Remote Code Execution Vulnerability."

    Source:rhcp011235
    Published:14 Apr 2015
    7.5
    High

    CVE-2015-1592

    Last Modified: 23 Mar 2017

    Movable Type Pro, Open Source, and Advanced before 5.2.12 and Pro and Advanced 6.0.x before 6.0.7 does not properly use the Perl Storable::thaw function, which allows remote attackers to include and execute arbitrary local Perl files and possibly execute arbitrary code via unspecified vectors.

    Source:Metasploit
    Published:19 Feb 2015
    7.5
    High

    CVE-2015-1587

    Last Modified: 10 Oct 2016

    Unrestricted file upload vulnerability in file_to_index.php in Maarch LetterBox 2.8 and earlier and GEC/GED 1.4 and earlier allows remote attackers to execute arbitrary PHP code by uploading a file with a PHP extension, then accessing it via a request to a predictable filename in tmp/.

    Source:Adrien Thierry
    Published:19 Feb 2015
    5
    Medium

    CVE-2015-1579

    Last Modified: 1 Sept 2014

    Directory traversal vulnerability in the Elegant Themes Divi theme for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the img parameter in a revslider_show_image action to wp-admin/admin-ajax.php. NOTE: this vulnerability may be a duplicate of CVE-2014-9734.

    Source:Hugo Santiago
    Published:11 Feb 2015
    5.8
    Medium

    CVE-2015-1578

    Last Modified: 1 Dec 2015

    Multiple open redirect vulnerabilities in u5CMS before 3.9.4 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the (1) pidvesa cookie to u5admin/pidvesa.php or (2) uri parameter to u5admin/meta2.php.

    Source:KAhara MAnhara
    Published:11 Feb 2015
    6.4
    Medium

    CVE-2015-1577

    Last Modified: 9 Feb 2015

    Directory traversal vulnerability in u5admin/deletefile.php in u5CMS before 3.9.4 allows remote attackers to write to arbitrary files via a (1) .. (dot dot) or (2) full pathname in the f parameter.

    Source:LiquidWorm
    Published:11 Feb 2015
    7.5
    High

    CVE-2015-1576

    Last Modified: 9 Feb 2015

    Multiple SQL injection vulnerabilities in u5CMS before 3.9.4 allow remote attackers to execute arbitrary SQL commands via the name parameter to (1) copy2.php, (2) localize.php, (3) metai.php, (4) nc.php, (5) new2.php, or (6) rename2.php in u5admin/; (7) c parameter to u5admin/editor.php; (8) typ parameter to u5admin/meta2.php; or (9) newname parameter to u5admin/rename2.php.

    Source:LiquidWorm
    Published:11 Feb 2015
    4.3
    Medium

    CVE-2015-1575

    Last Modified: 9 Feb 2015

    Multiple cross-site scripting (XSS) vulnerabilities in u5CMS before 3.9.4 allow remote attackers to inject arbitrary web script or HTML via the (1) c, (2) i, (3) l, or (4) p parameter to index.php; the (5) a or (6) b parameter to u5admin/cookie.php; the name parameter to (7) copy.php or (8) delete.php in u5admin/; the (9) f or (10) typ parameter to u5admin/deletefile.php; the (11) n parameter to u5admin/done.php; the (12) c parameter to u5admin/editor.php; the (13) uri parameter to u5admin/meta2.php; the (14) n parameter to u5admin/notdone.php; the (15) newname parameter to u5admin/rename2.php; the (16) l parameter to u5admin/sendfile.php; the (17) s parameter to u5admin/characters.php; the (18) page parameter to u5admin/savepage.php; or the (19) name parameter to u5admin/new2.php.

    Source:LiquidWorm
    Published:11 Feb 2015
    6.5
    Medium

    CVE-2015-1561

    Last Modified: 8 Jul 2015

    The escape_command function in include/Administration/corePerformance/getStats.php in Centreon (formerly Merethis Centreon) 2.5.4 and earlier (fixed in Centreon 19.10.0) uses an incorrect regular expression, which allows remote authenticated users to execute arbitrary commands via shell metacharacters in the ns_id parameter.

    Source:Huy-Ngoc DAU
    Published:14 Jul 2015
    7.5
    High

    CVE-2015-1560

    Last Modified: 8 Jul 2015

    SQL injection vulnerability in the isUserAdmin function in include/common/common-Func.php in Centreon (formerly Merethis Centreon) 2.5.4 and earlier (fixed in Centreon web 2.7.0) allows remote attackers to execute arbitrary SQL commands via the sid parameter to include/common/XmlTree/GetXmlTree.php.

    Source:Huy-Ngoc DAU
    Published:14 Jul 2015
    10
    Critical

    CVE-2015-1538

    Last Modified: 21 Dec 2016

    Integer overflow in the SampleTable::setSampleToChunkParams function in SampleTable.cpp in libstagefright in Android before 5.1.1 LMY48I allows remote attackers to execute arbitrary code via crafted atoms in MP4 data that trigger an unchecked multiplication, aka internal bug 20139950, a related issue to CVE-2015-4496.

    Source:Joshua J. Drake
    Published:1 Oct 2015
    9.3
    Critical

    CVE-2015-1528

    Last Modified: 12 Apr 2025

    Integer overflow in the native_handle_create function in libcutils/native_handle.c in Android before 5.1.1 LMY48M allows attackers to obtain a different application's privileges or cause a denial of service (Binder heap memory corruption) via a crafted application, aka internal bug 19334482.

    Published:1 Oct 2015
    7.5
    High

    CVE-2015-1518

    Last Modified: 9 Feb 2015

    SQL injection vulnerability in the search_post function in includes/search.php in Redaxscript before 2.3.0 allows remote attackers to execute arbitrary SQL commands via the search_terms parameter.

    Source:ITAS Team
    Published:11 Feb 2015
    6
    Medium

    CVE-2015-1517

    Last Modified: 19 Feb 2015

    SQL injection vulnerability in Piwigo before 2.7.4, when all filters are activated, allows remote authenticated users to execute arbitrary SQL commands via the filter_level parameter in a "Refresh photo set" action in the batch_manager page to admin.php.

    Source:Sven Schleier
    Published:20 Feb 2015
    7.2
    High

    CVE-2015-1515

    Last Modified: 11 Feb 2015

    The dwall.sys driver in SoftSphere DefenseWall Personal Firewall 3.24 allows local users to write data to arbitrary memory locations, and consequently gain privileges, via a crafted 0x00222000, 0x00222004, 0x00222008, 0x0022200c, or 0x00222010 IOCTL call.

    Source:Parvez Anwar
    Published:19 Feb 2015
    7.5
    High

    CVE-2015-1503

    Last Modified: 4 May 2018

    Multiple directory traversal vulnerabilities in IceWarp Mail Server before 11.2 allow remote attackers to read arbitrary files via a (1) .. (dot dot) in the file parameter to a webmail/client/skins/default/css/css.php page or .../. (dot dot dot slash dot) in the (2) script or (3) style parameter to webmail/old/calendar/minimizer/index.php.

    Source:Trustwave's SpiderLabs
    Published:8 May 2018
    10
    Critical

    CVE-2015-1497

    Last Modified: 24 Feb 2015

    radexecd.exe in Persistent Systems Radia Client Automation (RCA) 7.9, 8.1, 9.0, and 9.1 allows remote attackers to execute arbitrary commands via a crafted request to TCP port 3465.

    Source:Metasploit
    Published:16 Feb 2015
    4.3
    Medium

    CVE-2015-1494

    Last Modified: 24 Feb 2015

    The FancyBox for WordPress plugin before 3.0.3 for WordPress does not properly restrict access, which allows remote attackers to conduct cross-site scripting (XSS) attacks via an mfbfw[*] parameter in an update action to wp-admin/admin-post.php, as demonstrated by the mfbfw[padding] parameter and exploited in the wild in February 2015.

    Source:NULLpOint7r
    Published:17 Feb 2015
    8.5
    High

    CVE-2015-1489

    Last Modified: 18 Aug 2015

    The management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote authenticated users to gain privileges via unspecified vectors.

    Source:Metasploit
    Published:1 Aug 2015
    5.5
    Medium

    CVE-2015-1487

    Last Modified: 18 Aug 2015

    The management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote authenticated users to write to arbitrary files, and consequently obtain administrator privileges, via a crafted filename.

    Source:Metasploit
    Published:1 Aug 2015
    7.5
    High

    CVE-2015-1486

    Last Modified: 18 Aug 2015

    The management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote attackers to bypass authentication via a crafted password-reset action that triggers a new administrative session.

    Source:Metasploit
    Published:1 Aug 2015
    5
    Medium

    CVE-2015-1482

    Last Modified: 14 Jan 2015

    Ansible Tower (aka Ansible UI) before 2.0.5 allows remote attackers to bypass authentication and obtain sensitive information via a websocket connection to socket.io/1/.

    Source:SEC Consult
    Published:4 Feb 2015
    6.5
    Medium

    CVE-2015-1481

    Last Modified: 14 Jan 2015

    Ansible Tower (aka Ansible UI) before 2.0.5 allows remote organization administrators to gain privileges by creating a superuser account.

    Source:SEC Consult
    Published:4 Feb 2015
    4
    Medium

    CVE-2015-1480

    Last Modified: 26 Jan 2015

    ZOHO ManageEngine ServiceDesk Plus (SDP) before 9.0 build 9031 allows remote authenticated users to obtain sensitive ticket information via a (1) getTicketData action to servlet/AJaxServlet or a direct request to (2) swf/flashreport.swf, (3) reports/flash/details.jsp, or (4) reports/CreateReportTable.jsp.

    Source:Rewterz - Research Group
    Published:4 Feb 2015
    6.5
    Medium

    CVE-2015-1479

    Last Modified: 26 Jan 2015

    SQL injection vulnerability in reports/CreateReportTable.jsp in ZOHO ManageEngine ServiceDesk Plus (SDP) before 9.0 build 9031 allows remote authenticated users to execute arbitrary SQL commands via the site parameter.

    Source:Muhammad Ahmed Siddiqui
    Published:4 Feb 2015
    4.3
    Medium

    CVE-2015-1478

    Last Modified: 26 Jan 2015

    Cross-site scripting (XSS) vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla! allows remote attackers to inject arbitrary web script or HTML via the view parameter to /classifieds.

    Source:Sarath Nair
    Published:4 Feb 2015
    7.5
    High

    CVE-2015-1477

    Last Modified: 26 Jan 2015

    SQL injection vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a viewad task to classifieds/offerring-ads.

    Source:Sarath Nair
    Published:4 Feb 2015
    7.5
    High

    CVE-2015-1476

    Last Modified: 26 Jan 2015

    Multiple SQL injection vulnerabilities in xlinkerz ecommerceMajor allow remote attackers to execute arbitrary SQL commands via the (1) productbycat parameter to product.php, or (2) username or (3) password parameter to __admin/index.php.

    Source:Manish Tanwar
    Published:4 Feb 2015
    10
    Critical

    CVE-2015-1474

    Last Modified: 12 Apr 2025

    Multiple integer overflows in the GraphicBuffer::unflatten function in platform/frameworks/native/libs/ui/GraphicBuffer.cpp in Android through 5.0 allow attackers to gain privileges or cause a denial of service (memory corruption) via vectors that trigger a large number of (1) file descriptors or (2) integer values.

    Published:16 Feb 2015
    7.5
    High

    CVE-2015-1471

    Last Modified: 4 Feb 2015

    SQL injection vulnerability in userprofile.lib.php in Pragyan CMS 3.0 allows remote attackers to execute arbitrary SQL commands via the user parameter to the default URI.

    Source:Steffen Rösemann
    Published:12 Feb 2015
    7.5
    High

    CVE-2015-1467

    Last Modified: 9 Feb 2015

    Multiple SQL injection vulnerabilities in Translations in Fork CMS before 3.8.6 allow remote authenticated users to execute arbitrary SQL commands via the (1) language[] or (2) type[] parameter to private/en/locale/index.

    Source:Sven Schleier
    Published:6 Feb 2015
    7.5
    High

    CVE-2015-1428

    Last Modified: 2 Feb 2015

    Multiple SQL injection vulnerabilities in Sefrengo before 1.6.2 allow (1) remote attackers to execute arbitrary SQL commands via the sefrengo cookie in a login to backend/main.php or (2) remote authenticated users to execute arbitrary SQL commands via the value_id parameter in a save_value action to backend/main.php.

    Source:ITAS Team
    Published:3 Feb 2015
    9.8
    Critical

    CVE-2015-1427

    Last Modified: 16 Mar 2015

    The Groovy scripting engine in Elasticsearch before 1.3.8 and 1.4.x before 1.4.3 allows remote attackers to bypass the sandbox protection mechanism and execute arbitrary shell commands via a crafted script.

    Source:Metasploit
    Published:11 Feb 2015
    6.8
    Medium

    CVE-2015-1424

    Last Modified: 13 Jan 2015

    Cross-site request forgery (CSRF) vulnerability in Gecko CMS 2.2 and 2.3 allows remote attackers to hijack the authentication of administrators for requests that add an administrator user via a newuser request to admin/index.php.

    Source:LiquidWorm
    Published:29 Jan 2015
    6.5
    Medium

    CVE-2015-1423

    Last Modified: 13 Jan 2015

    Multiple SQL injection vulnerabilities in Gecko CMS 2.2 and 2.3 allow remote administrators to execute arbitrary SQL commands via the (1) jak_delete_log[] or (2) ssp parameter to admin/index.php.

    Source:LiquidWorm
    Published:29 Jan 2015
    4.3
    Medium

    CVE-2015-1422

    Last Modified: 13 Jan 2015

    Multiple cross-site scripting (XSS) vulnerabilities in Gecko CMS 2.2 and 2.3 allow remote attackers to inject arbitrary web script or HTML via the (1) horder[], (2) jak_catid, (3) jak_content, (4) jak_css, (5) jak_delete_log[], (6) jak_email, (7) jak_extfile, (8) jak_file, (9) jak_hookshow[], (10) jak_img, (11) jak_javascript, (12) jak_lcontent, (13) jak_name, (14) jak_password, (15) jak_showcontact, (16) jak_tags, (17) jak_title, (18) jak_url, (19) jak_username, (20) real_hook_id[], (21) sp, (22) sreal_plugin_id[], (23) ssp, or (24) sssp parameter to admin/index.php or the (25) editor, (26) field_id, (27) fldr, (28) lang, (29) popup, (30) subfolder, or (31) type parameter to js/editor/plugins/filemanager/dialog.php.

    Source:LiquidWorm
    Published:29 Jan 2015
    7.5
    High

    CVE-2015-1400

    Last Modified: 3 Feb 2015

    SQL injection vulnerability in search.php in NPDS Revolution 13 allows remote attackers to execute arbitrary SQL commands via the query parameter.

    Source:Narendra Bhati
    Published:3 Feb 2015
    6.5
    Medium

    CVE-2015-1397

    Last Modified: 26 Aug 2015

    SQL injection vulnerability in the getCsvFile function in the Mage_Adminhtml_Block_Widget_Grid class in Magento Community Edition (CE) 1.9.1.0 and Enterprise Edition (EE) 1.14.1.0 allows remote administrators to execute arbitrary SQL commands via the popularity[field_expr] parameter when the popularity[from] or popularity[to] parameter is set.

    Source:Manish Tanwar
    Published:29 Apr 2015
    4.3
    Medium

    CVE-2015-1389

    Last Modified: 1 Jun 2015

    Cross-site scripting (XSS) vulnerability in Aruba Networks ClearPass Policy Manager (CPPM) before 6.4.5 allows remote attackers to inject arbitrary web script or HTML via the username parameter to tips/tipsLoginSubmit.action.

    Source:Cristiano Maruti
    Published:28 May 2015
    4
    Medium

    CVE-2015-1376

    Last Modified: 20 Jan 2015

    pixabay-images.php in the Pixabay Images plugin before 2.4 for WordPress does not validate hostnames, which allows remote authenticated users to write to arbitrary files via an upload URL with a host other than pixabay.com.

    Source:Hans-Martin Muench
    Published:28 Jan 2015
    7.5
    High

    CVE-2015-1375

    Last Modified: 20 Jan 2015

    pixabay-images.php in the Pixabay Images plugin before 2.4 for WordPress does not properly restrict access to the upload functionality, which allows remote attackers to write to arbitrary files.

    Source:Hans-Martin Muench
    Published:28 Jan 2015
    6.8
    Medium

    CVE-2015-1374

    Last Modified: 26 Jan 2015

    Multiple cross-site request forgery (CSRF) vulnerabilities in admin.php in ferretCMS 1.0.4-alpha allow remote attackers to hijack the authentication of administrators for requests that conduct (1) cross-site scripting (XSS), (2) SQL injection, or (3) unrestricted file upload attacks.

    Source:Steffen Rösemann
    Published:27 Jan 2015
    4.3
    Medium

    CVE-2015-1373

    Last Modified: 26 Jan 2015

    Multiple cross-site scripting (XSS) vulnerabilities in admin.php in ferretCMS 1.0.4-alpha allow remote attackers to inject arbitrary web script or HTML via the (1) action parameter in a search request, (2) username in a login request, which is not properly handled when logging the event, or (3) page title in an insert action.

    Source:Steffen Rösemann
    Published:27 Jan 2015
    7.5
    High

    CVE-2015-1372

    Last Modified: 26 Jan 2015

    SQL injection vulnerability in ferretCMS 1.0.4-alpha allows remote attackers to execute arbitrary SQL commands via the p parameter in an update action to admin.php.

    Source:Steffen Rösemann
    Published:27 Jan 2015
    7.5
    High

    CVE-2015-1371

    Last Modified: 26 Jan 2015

    Unrestricted file upload vulnerability in ferretCMS 1.0.4-alpha allows remote administrators to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in custom/uploads/.

    Source:Steffen Rösemann
    Published:27 Jan 2015
    4.3
    Medium

    CVE-2015-1368

    Last Modified: 14 Jan 2015

    Multiple cross-site scripting (XSS) vulnerabilities in Ansible Tower (aka Ansible UI) before 2.0.5 allow remote attackers to inject arbitrary web script or HTML via the (1) order_by parameter to credentials/, (2) inventories/, (3) projects/, or (4) users/3/permissions/ in api/v1/ or the (5) next_run parameter to api/v1/schedules/.

    Source:SEC Consult
    Published:27 Jan 2015