2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-7074——admin.php in SmartSiteCMS 1.0 allows remote attackers to bypass authentication and gain administrator privileges by sett...
CVE-2006-7073——Cross-site scripting (XSS) vulnerability in Opentools Attachment Mod before 2.4.5 allows remote attackers to inject arbi...
CVE-2006-7072——Cross-site scripting (XSS) vulnerability in GeoClassifieds Enterprise 2.0.5.2 and earlier allows remote attackers to inj...
CVE-2006-7071——SQL injection vulnerability in classes/class_session.php in Invision Power Board (IPB) 2.1 up to 2.1.6 allows remote att...
CVE-2006-7070——Unrestricted file upload vulnerability in manager/media/ibrowser/scripts/rfiles.php in Etomite CMS 0.6.1 and earlier all...
CVE-2006-7069——PHP remote file inclusion vulnerability in smarty_config.php in Socketwiz Bookmarks 2.0 and earlier allows remote attack...
CVE-2006-7068——PHP remote file inclusion vulnerability in CliServ Web Community 0.65 and earlier allows remote attackers to execute arb...
CVE-2006-7066——Microsoft Internet Explorer 6 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) by creating...
CVE-2006-7065——Microsoft Internet Explorer allows remote attackers to cause a denial of service (crash) via an IFRAME with a certain XM...
CVE-2006-7067——Oracle 10g R2 and possibly other versions allows remote attackers to trigger internal errors, and possibly have other im...
CVE-2006-7079CRITICAL9.8Variable extraction vulnerability in include/common.php in exV2 2.0.4.3 and earlier allows remote attackers to overwrite...
CVE-2006-7084——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-7083. Reason: This candidate is a duplicate of...
CVE-2006-7087——CRLF injection vulnerability in the mail function in Dotdeb PHP before 5.2.0 Rev 3 allows remote attackers to bypass the...
CVE-2006-7064——Cross-site scripting (XSS) vulnerability in forum/admin.php for Invision Power Board (IPB) 2.1.6 and earlier allows remo...
CVE-2006-7063——Directory traversal vulnerability in profile.php in TinyPHPforum 3.6 and earlier allows remote attackers to include and ...
CVE-2006-7062——calendar.php in Kamgaing Email System (kmail) 2.3 and earlier allows remote attackers to obtain the full path of the ser...
CVE-2006-7061——Scriptsez.net E-Dating System stores data files with predictable names under the web document root with insufficient acc...
CVE-2006-7060——cindex.php in Scriptsez.net E-Dating System allows remote attackers to obtain the full path via an invalid id parameter ...
CVE-2006-7059——Multiple cross-site scripting (XSS) vulnerabilities in Scriptsez.net E-Dating System allow remote attackers to inject ar...
CVE-2006-7058——Multiple cross-site scripting (XSS) vulnerabilities in Sphider before 1.3.1c allow remote attackers to inject arbitrary ...
CVE-2006-7057——SQL injection vulnerability in search.php in Sphider before 1.3.1c allows remote attackers to execute arbitrary SQL comm...
CVE-2006-7056——Multiple PHP remote file inclusion vulnerabilities in DreamCost HostAdmin 3.1 and earlier allow remote attackers to exec...
CVE-2006-7055——PHP remote file inclusion vulnerability in index.php in TotalCalendar 2.30 and earlier allows remote attackers to execut...
CVE-2006-7054——The DNS module in Arkoon FAST360 UTM appliances 3.0 up to 3.0/29, 3.1 through 3.3, and 4.0 allows remote attackers to ca...
CVE-2006-7053——Unspecified vulnerability in Arkoon FAST360 UTM appliances 3.0 through 3.0/29, 3.1, 3.2, and 3.3 allows remote attackers...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now