2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-4471 | — | — | 2.3% | Aug 31, 2006 | The Admin Upload Image functionality in Joomla! before 1.0.11 allows remote authenticated users to upload files outside ... |
| CVE-2006-4472 | — | — | 2.8% | Aug 31, 2006 | Multiple unspecified vulnerabilities in Joomla! before 1.0.11 allow attackers to bypass user authentication via unknown ... |
| CVE-2006-4473 | — | — | 1.1% | Aug 31, 2006 | Unspecified vulnerability in com_content in Joomla! before 1.0.11, when $mosConfig_hideEmail is set, allows attackers to... |
| CVE-2006-4474 | — | — | 1.3% | Aug 31, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.0.11 allow remote attackers to inject arbitrary ... |
| CVE-2006-4475 | — | — | 1.3% | Aug 31, 2006 | Joomla! before 1.0.11 does not limit access to the Admin Popups functionality, which has unknown impact and attack vecto... |
| CVE-2006-4476 | — | — | 1.3% | Aug 31, 2006 | Multiple unspecified vulnerabilities in Joomla! before 1.0.11, related to "Injection Flaws," allow attackers to have an ... |
| CVE-2006-4458 | — | — | 3.2% | Aug 31, 2006 | Directory traversal vulnerability in calendar/inc/class.holidaycalc.inc.php in phpGroupWare 0.9.16.010 and earlier allow... |
| CVE-2006-4457 | — | — | 1.3% | Aug 31, 2006 | PHP remote file inclusion vulnerability in index.php in phpECard 2.1.4 and earlier allows remote attackers to execute ar... |
| CVE-2006-4456 | — | — | 3.3% | Aug 31, 2006 | PHP remote file inclusion vulnerability in functions.php in phpECard 2.1.4 and earlier allows remote attackers to execut... |
| CVE-2006-4244 | — | — | 1.8% | Aug 31, 2006 | SQL-Ledger 2.4.4 through 2.6.17 authenticates users by verifying that the value of the sql-ledger-[username] cookie matc... |
| CVE-2006-4452 | — | — | 3.2% | Aug 30, 2006 | PHP remote file inclusion vulnerability in security/include/_class.security.php in Web3news 0.95 and earlier, when regis... |
| CVE-2006-4453 | — | — | 1.1% | Aug 30, 2006 | Cross-site scripting (XSS) vulnerability in PmWiki before 2.1.18 allows remote attackers to inject arbitrary web script ... |
| CVE-2006-4454 | — | — | 1.6% | Aug 30, 2006 | Cross-site scripting (XSS) vulnerability in hlstats.php in HLstats 1.34 allows remote attackers to inject arbitrary web ... |
| CVE-2006-4455 | — | — | 5.0% | Aug 30, 2006 | Unspecified vulnerability in Xchat 2.6.7 and earlier allows remote attackers to cause a denial of service (crash) via un... |
| CVE-2006-4305 | — | — | 70.5% | Aug 30, 2006 | Buffer overflow in SAP DB and MaxDB before 7.6.00.30 allows remote attackers to execute arbitrary code via a long databa... |
| CVE-2006-4449 | — | — | 2.3% | Aug 30, 2006 | Cross-site scripting (XSS) vulnerability in attachment.php in MyBulletinBoard (MyBB) 1.1.7 and possibly other versions a... |
| CVE-2006-4450 | — | — | 4.0% | Aug 30, 2006 | usercp_avatar.php in PHPBB 2.0.20, when avatar uploading is enabled, allows remote attackers to use the server as a web ... |
| CVE-2006-4446 | — | — | 60.3% | Aug 30, 2006 | Heap-based buffer overflow in DirectAnimation.PathControl COM object (daxctle.ocx) in Microsoft Internet Explorer 6.0 SP... |
| CVE-2006-4451 | — | — | 1.5% | Aug 30, 2006 | Direct static code injection vulnerability in CJ Tag Board 3.0 allows remote attackers to execute arbitrary PHP code via... |
| CVE-2006-4447 | — | — | 0.4% | Aug 30, 2006 | X.Org and XFree86, including libX11, xdm, xf86dga, xinit, xload, xtrans, and xterm, does not check the return values for... |
| CVE-2006-4448 | — | — | 2.5% | Aug 30, 2006 | Multiple PHP remote file inclusion vulnerabilities in interact 2.2, when register_globals is enabled, allow remote attac... |
| CVE-2006-4444 | — | — | 2.8% | Aug 29, 2006 | Multiple SQL injection vulnerabilities in Cybozu Garoon 2.1.0 for Windows allow remote authenticated users to execute ar... |
| CVE-2006-4445 | — | — | 1.8% | Aug 29, 2006 | Multiple PHP remote file inclusion vulnerabilities in CuteNews 1.3.x allow remote attackers to execute arbitrary PHP cod... |
| CVE-2006-4442 | — | — | 1.3% | Aug 29, 2006 | Cross-site scripting (XSS) vulnerability in PHP iAddressBook before 0.95 allows remote attackers to inject arbitrary web... |
| CVE-2006-4439 | — | — | 0.4% | Aug 29, 2006 | pkgadd in Sun Solaris 10 before 20060825 installs files with insecure file and directory permissions (755 or 777) if the... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now