2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-4528 | — | — | 1.3% | Sep 1, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in membrepass 1.5 allow remote attackers to inject arbitrary web scr... |
| CVE-2006-4529 | — | — | 2.1% | Sep 1, 2006 | SQL injection vulnerability in recherchemembre.php in membrepass 1.5. allows remote attackers to execute arbitrary SQL c... |
| CVE-2006-4530 | — | — | 1.7% | Sep 1, 2006 | Direct static code injection vulnerability in include/change.php in membrepass 1.5 allows remote attackers to execute ar... |
| CVE-2006-4531 | — | — | 4.1% | Sep 1, 2006 | PHP remote file inclusion vulnerability in lib/config.php in Pheap CMS 1.1 and earlier allows remote attackers to execut... |
| CVE-2006-4532 | — | — | 7.4% | Sep 1, 2006 | PHP remote file inclusion vulnerability in articles/article.php in Yet Another Community System (YACS) CMS 6.6.1 and ear... |
| CVE-2006-4506 | — | — | 0.5% | Aug 31, 2006 | idmlib.sh in nxdrv in Novell Identity Manager (IDM) 3.0.1 allows local users to execute arbitrary commands via unspecifi... |
| CVE-2006-4507 | — | — | 0.4% | Aug 31, 2006 | Unspecified vulnerability in the TIFF viewer (possibly libTIFF) in the Photo Viewer in the Sony PlaystationPortable (PSP... |
| CVE-2006-4508 | — | — | 2.2% | Aug 31, 2006 | Unspecified vulnerability in (1) Tor 0.1.0.x before 0.1.0.18 and 0.1.1.x before 0.1.1.23, and (2) ScatterChat before 1.0... |
| CVE-2006-4146 | — | — | 3.2% | Aug 31, 2006 | Buffer overflow in the (1) DWARF (dwarfread.c) and (2) DWARF2 (dwarf2read.c) debugging code in GNU Debugger (GDB) 6.5 al... |
| CVE-2006-4497 | — | — | 1.1% | Aug 31, 2006 | SQL injection vulnerability in comments.php in IwebNegar 1.1 allows remote attackers to execute arbitrary SQL commands v... |
| CVE-2006-4498 | — | — | 2.9% | Aug 31, 2006 | PHP remote file inclusion vulnerability in sommaire_admin.php in PhpAlbum (mod_phpalbum) 2.15 for PortailPHP allows remo... |
| CVE-2006-4490 | — | — | 3.3% | Aug 31, 2006 | Multiple directory traversal vulnerabilities in Cybozu Office before 6.6 Build 1.3 and Share 360 before 2.5 Build 0.3 al... |
| CVE-2006-4487 | — | — | 1.6% | Aug 31, 2006 | DUware DUpoll 3.0 and 3.1 stores _private/Dupoll.mdb under the web document root with insufficient access control, which... |
| CVE-2006-4488 | — | — | 3.1% | Aug 31, 2006 | PHP remote file inclusion vulnerability in modules/userstop/userstop.php in ExBB Italia 0.2 and earlier, when register_g... |
| CVE-2006-4489 | — | — | 9.5% | Aug 31, 2006 | Multiple PHP remote file inclusion vulnerabilities in MiniBill 2006-07-14 (1.2.2) allow remote attackers to execute arbi... |
| CVE-2006-4491 | — | — | 1.5% | Aug 31, 2006 | Directory traversal vulnerability in Cybozu Collaborex, AG before 1.2(1.5), AG Pocket before 5.2(0.8), Mailwise before 3... |
| CVE-2006-4492 | — | — | 1.3% | Aug 31, 2006 | Unspecified vulnerability in Cybozu Office 6.5 Build 1.2 for Windows allows remote attackers to obtain sensitive informa... |
| CVE-2006-4493 | — | — | 0.3% | Aug 31, 2006 | xbiff2 1.9 creates $HOME/.xbiff2rc in a user's home directory with insecure file permissions, which allows local users t... |
| CVE-2006-4494 | — | — | 21.6% | Aug 31, 2006 | Microsoft Visual Studio 6.0 allows remote attackers to cause a denial of service (memory corruption) and possibly execut... |
| CVE-2006-4495 | — | — | 20.2% | Aug 31, 2006 | Microsoft Internet Explorer allows remote attackers to cause a denial of service (memory corruption) and possibly execut... |
| CVE-2006-4496 | — | — | 1.1% | Aug 31, 2006 | Cross-site scripting (XSS) vulnerability in comments.php in IwebNegar 1.1 allows remote attackers to inject arbitrary we... |
| CVE-2006-4499 | — | — | 0.7% | Aug 31, 2006 | ModernBill 5.0.4 and earlier uses cURL with insecure settings for CURLOPT_SSL_VERIFYPEER and CURLOPT_SSL_VERIFYHOST that... |
| CVE-2006-4500 | — | — | 1.1% | Aug 31, 2006 | Cross-site scripting (XSS) vulnerability in index.php in ezPortal/ztml CMS 1.0 allows remote attackers to inject arbitra... |
| CVE-2006-4501 | — | — | 1.2% | Aug 31, 2006 | SQL injection vulnerability in index.php in ezPortal/ztml CMS 1.0 allows remote attackers to execute arbitrary SQL comma... |
| CVE-2006-4502 | — | — | 1.8% | Aug 31, 2006 | ezPortal/ztml CMS 1.0 allows remote attackers to bypass authentication controls via a direct request to the "Administrat... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now