2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2006-10002HIGH7.5XML::Parser versions through 2.45 for Perl could overflow the pre-allocated buffer size cause a heap corruption (double ...
CVE-2006-20001HIGH7.5A carefully crafted If: request header can cause a memory read, or write of a single zero byte, in a pool (heap) memory ...
CVE-2006-4245HIGH8.1archivemail 0.6.2 uses temporary files insecurely leading to a possible race condition.
CVE-2006-7229HIGH7.5The skge driver 1.5 in Linux kernel 2.6.15 on Ubuntu does not properly use the spin_lock and spin_unlock functions, whic...
CVE-2006-7221HIGH7.5Multiple off-by-one errors in fsplib.c in fsplib before 0.8 allow attackers to cause a denial of service via unspecified...
CVE-2006-7142HIGH7.8The centralized management feature for Utimaco Safeguard stores hard-coded cryptographic keys in executable programs for...
CVE-2006-6767HIGH7.5oftpd before 0.3.7 allows remote attackers to cause a denial of service (daemon abort) via a (1) LPRT or (2) LPASV comma...
CVE-2006-6679HIGH7.5Pedro Lineu Orso chetcpasswd before 2.4 relies on the X-Forwarded-For HTTP header when verifying a client's status on an...
CVE-2006-6165HIGH7.8ld.so in FreeBSD, NetBSD, and possibly other BSD distributions does not remove certain harmful environment variables, wh...
CVE-2006-6025HIGH7.5QUALCOMM Eudora WorldMail 4.0 allows remote attackers to cause a denial of service, as demonstrated by a certain module ...
CVE-2006-5779HIGH7.5OpenLDAP before 2.3.29 allows remote attackers to cause a denial of service (daemon crash) via LDAP BIND requests with l...
CVE-2006-5738HIGH7.2Multiple SQL injection vulnerabilities in PunBB before 1.2.14 allow remote authenticated administrators to execute arbit...
CVE-2006-5708HIGH7.5Multiple unspecified vulnerabilities in MDaemon and WorldClient in Alt-N Technologies MDaemon before 9.50 allow attacker...
CVE-2006-4574HIGH7.5Off-by-one error in the MIME Multipart dissector in Wireshark (formerly Ethereal) 0.10.1 through 0.99.3 allows remote at...
CVE-2006-4997HIGH7.5The clip_mkip function in net/atm/clip.c of the ATM subsystem in Linux kernel allows remote attackers to cause a denial ...
CVE-2006-5160HIGH8.1Multiple unspecified vulnerabilities in Mozilla Firefox have unspecified vectors and impact, as claimed during ToorCon 2...
CVE-2006-5158HIGH7.5The nlmclnt_mark_reclaim in clntlock.c in NFS lockd in Linux kernel before 2.6.16 allows remote attackers to cause a den...
CVE-2006-5051HIGH8.1Signal handler race condition in OpenSSH before 4.4 allows remote attackers to cause a denial of service (crash), and po...
CVE-2006-5014HIGH8.8Unspecified vulnerability in cPanel before 10.9.0 12 Tree allows remote authenticated users to gain privileges via unspe...
CVE-2006-4663HIGH7.8The source code tar archive of the Linux kernel 2.6.16, 2.6.17.11, and possibly other versions specifies weak permission...
CVE-2006-4095HIGH7.5BIND before 9.2.6-P1 and 9.3.x before 9.3.2-P1 allows remote attackers to cause a denial of service (crash) via certain ...
CVE-2006-4434HIGH7.5Use-after-free vulnerability in Sendmail before 8.13.8 allows remote attackers to cause a denial of service (crash) via ...
CVE-2006-3730HIGH8.8Integer overflow in Microsoft Internet Explorer 6 on Windows XP SP2 allows remote attackers to cause a denial of service...
CVE-2006-2916HIGH7.8artswrapper in aRts, when running setuid root on Linux 2.6.0 or later versions, does not check the return value of the s...
CVE-2006-2492HIGH8.8Buffer overflow in Microsoft Word in Office 2000 SP3, Office XP SP3, Office 2003 Sp1 and SP2, and Microsoft Works Suites...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now