2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2006-4587——Multiple cross-site scripting (XSS) vulnerabilities in vtiger CRM 4.2.4, and possibly earlier, allow remote attackers to...
CVE-2006-4588——vtiger CRM 4.2.4, and possibly earlier, allows remote attackers to bypass authentication and access administrative modul...
CVE-2006-4589——PHP remote file inclusion vulnerability in 0_admin/modules/Wochenkarte/frontend/index.php in DynCMS 6 and earlier allows...
CVE-2006-4590——SQL injection vulnerability in admin/default.asp in Jetstat.com JS ASP Faq Manager 1.10 and earlier allows remote attack...
CVE-2006-4591——Multiple PHP remote file inclusion vulnerabilities in AlstraSoft Template Seller, and possibly AltraSoft Template Seller...
CVE-2006-4592——Incomplete blacklist vulnerability in default.asp in 8pixel.net Simple Blog 2.3 and earlier allows remote attackers to c...
CVE-2006-4593——Cross-site scripting (XSS) vulnerability in index.php in SoftBB 0.1 and earlier allows remote attackers to inject arbitr...
CVE-2006-4594——Multiple PHP remote file inclusion vulnerabilities in PHP Advanced Transfer Manager (phpAtm) 1.21 and earlier allow remo...
CVE-2006-3742——The KDE PAM configuration shipped with Fedora Core 5 causes KDM passwords to be cached, which allows attackers to login ...
CVE-2006-4563——Cross-site scripting (XSS) vulnerability in the MyHeadlines before 4.3.2 module for PHP-Nuke allows remote attackers to ...
CVE-2006-4564——SQL injection vulnerability in Sources/ManageBoards.php in Simple Machines Forum 1.1 RC3 allows remote attackers to exec...
CVE-2006-3126——c2faxrecv in capi4hylafax 01.02.03 allows remote attackers to execute arbitrary commands via null (\0) and shell metacha...
CVE-2006-4096——BIND before 9.2.6-P1 and 9.3.x before 9.3.2-P1 allows remote attackers to cause a denial of service (crash) via a flood ...
CVE-2006-3636——Multiple cross-site scripting (XSS) vulnerabilities in Mailman before 2.1.9rc1 allow remote attackers to inject arbitrar...
CVE-2006-2941——Mailman before 2.1.9rc1 allows remote attackers to cause a denial of service via unspecified vectors involving "standard...
CVE-2006-4459——Integer overflow in AnywhereUSB/5 1.80.00 allows local users to cause a denial of service (crash) via a 1 byte header si...
CVE-2006-4554——Stack-based buffer overflow in the ReadFile function in the ZOO-processing exports in the BeCubed Compression Plus befor...
CVE-2006-4562——The proxy DNS service in Symantec Gateway Security (SGS) allows remote attackers to make arbitrary DNS queries to third-...
CVE-2006-4546——Lyris ListManager 8.95 allows remote authenticated users, who have administrative privileges for at least one list on th...
CVE-2006-4543——Cross-site scripting (XSS) vulnerability in index.php in HLStats 1.34 allows remote attackers to inject arbitrary web sc...
CVE-2006-4544——Multiple PHP remote file inclusion vulnerabilities in ExBB 1.9.1, when register_globals is enabled, allow remote attacke...
CVE-2006-4545——PHP remote file inclusion vulnerability in ModuleBased CMS Pre-Alpha allows remote attackers to execute arbitrary PHP co...
CVE-2006-4547——Lyris ListManager 8.95 allows remote authenticated users to obtain sensitive information by attempting to add a user wit...
CVE-2006-4548——e107 0.75 and earlier does not properly unset variables when the input data includes a numeric parameter with a value ma...
CVE-2006-4549——CHXO Feedsplitter 2006-01-21 allows remote attackers to read the source code of feedsplitter.php via the showsource func...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now