2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-4721Directory traversal vulnerability in admin.php in CCleague Pro Sports CMS 1.0.1 RC1 allows remote attackers to read and ...
CVE-2006-4722PHP remote file inclusion vulnerability in Open Bulletin Board (OpenBB) 1.0.8 and earlier allows remote attackers to exe...
CVE-2006-4341Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-4340. Reason: This candidate was withdrawn by ...
CVE-2006-4623The Unidirectional Lightweight Encapsulation (ULE) decapsulation component in dvb-core/dvb_net.c in the dvb driver in th...
CVE-2006-4676TIBCO RendezVous 7.4.11 and earlier logs base64-encoded usernames and passwords in rvrd.db, which allows local users to ...
CVE-2006-4677PHP remote file inclusion vulnerability in contrib/yabbse/poc.php in phpopenchat before 3.0.2 allows remote attackers to...
CVE-2006-4675Unrestricted file upload vulnerability in lib/exe/media.php in DokuWiki before 2006-03-09c allows remote attackers to up...
CVE-2006-4678PHP remote file inclusion vulnerability in News Evolution 3.0.3 allows remote attackers to execute arbitrary PHP code vi...
CVE-2006-4679DokuWiki before 2006-03-09c enables the debug feature by default, which allows remote attackers to obtain sensitive info...
CVE-2006-4680The Remote UI in Canon imageRUNNER includes usernames and passwords when exporting an address book, which allows context...
CVE-2006-4681Directory traversal vulnerability in Redirect.bat in IBM Director before 5.10 allows remote attackers to read arbitrary ...
CVE-2006-4682Multiple unspecified vulnerabilities in IBM Director before 5.10 allow remote attackers to cause a denial of service (cr...
CVE-2006-4683IBM Director before 5.10 allows remote attackers to obtain sensitive information from HTTP headers via HTTP TRACE.
CVE-2006-4674Direct static code injection vulnerability in doku.php in DokuWiki before 2006-030-09c allows remote attackers to execut...
CVE-2006-4673Global variable overwrite vulnerability in maincore.php in PHP-Fusion 6.01.4 and earlier uses the extract function on th...
CVE-2006-4671PHP remote file inclusion vulnerability in headlines.php in Fantastic News 2.1.4, and possibly earlier, allows remote at...
CVE-2006-4672PHP remote file inclusion vulnerability in profitCode ppalCart 2.5 EE, possibly a component of PayProCart, allows remote...
CVE-2006-4659The Panda Platinum Internet Security 2006 10.02.01 and 2007 11.00.00 uses predictable URLs for the spam classification o...
CVE-2006-4294Directory traversal vulnerability in viewfile in TWiki 4.0.0 through 4.0.4 allows remote attackers to read arbitrary fil...
CVE-2006-4670Multiple PHP remote file inclusion vulnerabilities in PhotoKorn Gallery 1.52 and earlier allow remote attackers to execu...
CVE-2006-4650Cisco IOS 12.0, 12.1, and 12.2, when GRE IP tunneling is used and the RFC2784 compliance fixes are missing, does not ver...
CVE-2006-4658Panda Platinum Internet Security 2006 10.02.01 and 2007 11.00.00 uses sequential message numbers in generated URLs that ...
CVE-2006-4669PHP remote file inclusion vulnerability in admin/system/include.php in Somery 0.4.6 and earlier, when register_globals i...
CVE-2006-4651Directory traversal vulnerability in download/index.php, and possibly download.php, in threesquared.net (aka Ben Speakma...
CVE-2006-4652(1) Amazing Little Poll and (2) Amazing Little Picture Poll have a default password of "dsapoll", which allows remote at...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now