2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-7085Rigter Portal System (RPS) 1.0, 2.0, and 3.0 allows remote attackers to add arbitrary content and conduct XSS attacks vi...
CVE-2006-7086The (1) dlback.php and (2) dlback.cgi scripts in Hot Links allow remote attackers to obtain sensitive information and do...
CVE-2006-7088Multiple SQL injection vulnerabilities in Simple PHP Forum before 0.4 allow remote attackers to execute arbitrary SQL co...
CVE-2006-7089SQL injection vulnerability in connexion.php in Ban 0.1 allows remote attackers to execute arbitrary SQL commands via th...
CVE-2006-7090PHP remote file inclusion vulnerability in phpbb_security.php in phpBB Security 1.0.1 and earlier allows remote attacker...
CVE-2006-7091PHP remote file inclusion vulnerability in config.php in phpht Topsites FREE 1.022b allows remote attackers to execute a...
CVE-2006-7092SQL injection vulnerability in includes/mambo.php in Mambo LaiThai 4.5.4 SP2 and earlier allows remote attackers to exec...
CVE-2006-7093Cross-site scripting (XSS) vulnerability in Mambo LaiThai 4.5.4 Security Patch 2 and earlier allows remote attackers to ...
CVE-2006-7094ftpd, as used by Gentoo and Debian Linux, sets the gid to the effective uid instead of the effective group id before exe...
CVE-2006-7095Integer signedness error in the network_receive_packet function in socket.c in dimension 3 engine (dim3) 1.5 and earlier...
CVE-2006-7096Buffer overflow in the network_host_handle_join function in host.c in dimension 3 engine (dim3) 1.5 and earlier allows r...
CVE-2006-7097Multiple unspecified vulnerabilities in TaskFreak! before 0.1.4 have unknown impact and attack vectors.
CVE-2006-7087CRLF injection vulnerability in the mail function in Dotdeb PHP before 5.2.0 Rev 3 allows remote attackers to bypass the...
CVE-2006-7057SQL injection vulnerability in search.php in Sphider before 1.3.1c allows remote attackers to execute arbitrary SQL comm...
CVE-2006-7058Multiple cross-site scripting (XSS) vulnerabilities in Sphider before 1.3.1c allow remote attackers to inject arbitrary ...
CVE-2006-7059Multiple cross-site scripting (XSS) vulnerabilities in Scriptsez.net E-Dating System allow remote attackers to inject ar...
CVE-2006-7060cindex.php in Scriptsez.net E-Dating System allows remote attackers to obtain the full path via an invalid id parameter ...
CVE-2006-7061Scriptsez.net E-Dating System stores data files with predictable names under the web document root with insufficient acc...
CVE-2006-7062calendar.php in Kamgaing Email System (kmail) 2.3 and earlier allows remote attackers to obtain the full path of the ser...
CVE-2006-7063Directory traversal vulnerability in profile.php in TinyPHPforum 3.6 and earlier allows remote attackers to include and ...
CVE-2006-7064Cross-site scripting (XSS) vulnerability in forum/admin.php for Invision Power Board (IPB) 2.1.6 and earlier allows remo...
CVE-2006-7044PHP remote file inclusion vulnerability in comment.core.inc.php in Clan Manager Pro (CMPRO) 1.11 and earlier allows remo...
CVE-2006-7042Cross-site scripting (XSS) vulnerability in directory/index.php in Chipmunk directory allows remote attackers to inject ...
CVE-2006-7043Multiple cross-site scripting (XSS) vulnerabilities in Chipmunk Blogger allow remote authenticated users to inject arbit...
CVE-2006-7045PHP remote file inclusion vulnerability in Clan Manager Pro (CMPRO) 1.1.0 and earlier allows remote attackers to execute...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now