2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2006-4501——SQL injection vulnerability in index.php in ezPortal/ztml CMS 1.0 allows remote attackers to execute arbitrary SQL comma...
CVE-2006-4502——ezPortal/ztml CMS 1.0 allows remote attackers to bypass authentication controls via a direct request to the "Administrat...
CVE-2006-4503——Directory traversal vulnerability in link.php in NX5Linx 1.0 allows remote attackers to read arbitrary files via the log...
CVE-2006-4504——SQL injection vulnerability in NX5Linx 1.0 allows remote attackers to execute arbitrary SQL commands via the (1) c and (...
CVE-2006-4505——CRLF injection vulnerability in links.php in NX5Linx 1.0 allows remote attackers to inject arbitrary HTTP headers and co...
CVE-2006-3125——Array index error in tetrinet.c in gtetrinet 0.7.8 and earlier allows remote attackers to execute arbitrary code via a p...
CVE-2006-4486——Integer overflow in memory allocation routines in PHP before 5.1.6, when running on a 64-bit system, allows context-depe...
CVE-2006-4479——Cross-site scripting (XSS) vulnerability in loginreq2.php in Visual Shapers ezContents 2.0.3 allows remote attackers to ...
CVE-2006-4477——Multiple PHP remote file inclusion vulnerabilities in Visual Shapers ezContents 2.0.3 allow remote attackers to execute ...
CVE-2006-4478——SQL injection vulnerability in headeruserdata.php in Visual Shapers ezContents 2.0.3 allows remote attackers to execute ...
CVE-2006-4480——Incomplete blacklist vulnerability in the nk_CSS function in nuked.php in Nuked-Klan 1.7 SP4.3 allows remote attackers t...
CVE-2006-4481——The (1) file_exists and (2) imap_reopen functions in PHP before 5.1.5 do not check for the safe_mode and open_basedir se...
CVE-2006-4482——Multiple heap-based buffer overflows in the (1) str_repeat and (2) wordwrap functions in ext/standard/string.c in PHP be...
CVE-2006-4483——The cURL extension files (1) ext/curl/interface.c and (2) ext/curl/streams.c in PHP before 5.1.5 permit the CURLOPT_FOLL...
CVE-2006-4484——Buffer overflow in the LWZReadByte_ function in ext/gd/libgd/gd_gif_in.c in the GD extension in PHP before 5.1.5 allows ...
CVE-2006-4485——The stripos function in PHP before 5.1.5 has unknown impact and attack vectors related to an out-of-bounds read.
CVE-2006-4460——Cross-site scripting (XSS) vulnerability in PHP iAddressBook before 0.96 allows remote attackers to inject arbitrary web...
CVE-2006-4461——Paessler IPCheck Server Monitor before 5.3.3.639/640 does not properly implement a "list of acceptable host IP addresses...
CVE-2006-4462——Gonafish.com LinksCaffe 2.0 and 3.0 do not properly restrict access to administrator functions, which allows remote atta...
CVE-2006-4463——SQL injection vulnerability in the administrator control panel in Jetstat.com JS ASP Faq Manager 1.10 allows remote atta...
CVE-2006-4464——The Nokia Browser, possibly Nokia Symbian 60 Browser 3rd edition, allows remote attackers to cause a denial of service (...
CVE-2006-4465——Microsoft Terminal Server, when running an application session with the "Start program at logon" and "Override settings ...
CVE-2006-4466——Joomla! before 1.0.11 does not properly unset variables when the input data includes a numeric parameter with a value ma...
CVE-2006-4467——Simple Machines Forum (SMF) 1.1RCx before 1.1RC3, and 1.0.x before 1.0.8, does not properly unset variables when the inp...
CVE-2006-4468——Multiple unspecified vulnerabilities in Joomla! before 1.0.11, related to unvalidated input, allow attackers to have an ...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now