2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-4758 | — | — | 1.6% | Sep 13, 2006 | phpBB 2.0.21 does not properly handle pathnames ending in %00, which allows remote authenticated administrative users to... |
| CVE-2006-4760 | — | — | 1.3% | Sep 13, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in Benjamin Pasero and Tobias Eichert RSSOwl allow remote attackers ... |
| CVE-2006-4757 | — | — | 0.9% | Sep 13, 2006 | Multiple SQL injection vulnerabilities in the admin section in e107 0.7.5 allow remote authenticated administrative user... |
| CVE-2006-4761 | — | — | 1.2% | Sep 13, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in Luke Hutteman SharpReader allow remote attackers to inject arbitr... |
| CVE-2006-4759 | — | — | 2.2% | Sep 13, 2006 | PunBB 1.2.12 does not properly handle an avatar directory pathname ending in %00, which allows remote authenticated admi... |
| CVE-2006-4762 | — | — | 1.2% | Sep 13, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in Ykoon RssReader allow remote attackers to inject arbitrary web sc... |
| CVE-2006-4763 | — | — | 1.8% | Sep 13, 2006 | IBM Lotus Domino Web Access (DWA) 7.0.1 does not expire a client's Lightweight Third-Party Authentication token (LtpaTok... |
| CVE-2006-4764 | — | — | 2.7% | Sep 13, 2006 | PHP remote file inclusion vulnerability in common.php in Thomas LETE WTools 0.0.1-ALPH allows remote attackers to execut... |
| CVE-2006-4765 | — | — | 1.3% | Sep 13, 2006 | NETGEAR DG834GT Wireless ADSL router running firmware 1.01.28 allows attackers to cause a denial of service (device hang... |
| CVE-2006-4766 | — | — | 2.9% | Sep 13, 2006 | Directory traversal vulnerability in print.php in Stefan Ernst Newsscript (aka WM-News) 0.5 beta allows remote attackers... |
| CVE-2006-4767 | — | — | 1.5% | Sep 13, 2006 | Multiple directory traversal vulnerabilities in Stefan Ernst Newsscript (aka WM-News) 0.5beta allow remote attackers to ... |
| CVE-2006-4768 | — | — | 1.3% | Sep 13, 2006 | Multiple direct static code injection vulnerabilities in add_go.php in Stefan Ernst Newsscript (aka WM-News) 0.5 beta al... |
| CVE-2006-4769 | — | — | 2.7% | Sep 13, 2006 | PHP remote file inclusion vulnerability in abf_js.php in p4CMS 1.05 allows remote attackers to execute arbitrary PHP cod... |
| CVE-2006-4770 | — | — | 2.4% | Sep 13, 2006 | PHP remote file inclusion vulnerability in menu.php in MiniPort@l 2.0 and earlier allows remote attackers to execute arb... |
| CVE-2006-4748 | — | — | 2.5% | Sep 13, 2006 | Multiple SQL injection vulnerabilities in F-ART BLOG:CMS 4.1 allow remote attackers to execute arbitrary SQL commands vi... |
| CVE-2006-4749 | — | — | 2.1% | Sep 13, 2006 | Multiple PHP remote file inclusion vulnerabilities in PHP Advanced Transfer Manager (phpATM) 1.20 allow remote attackers... |
| CVE-2006-4732 | — | — | 6.6% | Sep 13, 2006 | Unspecified vulnerability in Microsoft Visual Basic (VB) 6 has an unknown impact ("overflow") via a project that contain... |
| CVE-2006-4736 | — | — | 1.3% | Sep 13, 2006 | Multiple SQL injection vulnerabilities in index.php in CMS.R. 5.5 allow remote attackers to execute arbitrary SQL comman... |
| CVE-2006-4733 | — | — | 3.2% | Sep 13, 2006 | PHP remote file inclusion vulnerability in sipssys/code/box.inc.php in Haakon Nilsen simple, integrated publishing syste... |
| CVE-2006-4734 | — | — | 1.4% | Sep 13, 2006 | Multiple SQL injection vulnerabilities in tiki-g-admin_processes.php in Tikiwiki 1.9.4 allow remote attackers to execute... |
| CVE-2006-4735 | — | — | 1.4% | Sep 13, 2006 | Kellan Elliott-McCrea MagpieRSS allows remote attackers to obtain sensitive information via a direct request for (1) rss... |
| CVE-2006-4744 | — | — | 1.4% | Sep 13, 2006 | Abidia (1) O-Anywhere and (2) Abidia Wireless transmit authentication credentials in cleartext, which allows remote atta... |
| CVE-2006-4737 | — | — | 1.2% | Sep 13, 2006 | SQL injection vulnerability in index.php in Jetbox CMS allows remote attackers to inject arbitrary web script or HTML vi... |
| CVE-2006-4738 | — | — | 1.4% | Sep 13, 2006 | PHP remote file inclusion vulnerability in phpthumb.php in Jetbox CMS allows remote attackers to execute arbitrary PHP c... |
| CVE-2006-4739 | — | — | 1.1% | Sep 13, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in Jetbox CMS allow remote attackers to inject arbitrary web script ... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now