2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2006-7059Multiple cross-site scripting (XSS) vulnerabilities in Scriptsez.net E-Dating System allow remote attackers to inject ar...
CVE-2006-7060cindex.php in Scriptsez.net E-Dating System allows remote attackers to obtain the full path via an invalid id parameter ...
CVE-2006-7061Scriptsez.net E-Dating System stores data files with predictable names under the web document root with insufficient acc...
CVE-2006-7062calendar.php in Kamgaing Email System (kmail) 2.3 and earlier allows remote attackers to obtain the full path of the ser...
CVE-2006-7063Directory traversal vulnerability in profile.php in TinyPHPforum 3.6 and earlier allows remote attackers to include and ...
CVE-2006-7064Cross-site scripting (XSS) vulnerability in forum/admin.php for Invision Power Board (IPB) 2.1.6 and earlier allows remo...
CVE-2006-7042Cross-site scripting (XSS) vulnerability in directory/index.php in Chipmunk directory allows remote attackers to inject ...
CVE-2006-7043Multiple cross-site scripting (XSS) vulnerabilities in Chipmunk Blogger allow remote authenticated users to inject arbit...
CVE-2006-7045PHP remote file inclusion vulnerability in Clan Manager Pro (CMPRO) 1.1.0 and earlier allows remote attackers to execute...
CVE-2006-7046PHP remote file inclusion vulnerability in cmpro.intern/login.inc.php for Clan Manager Pro (CMPRO) 1.1.0 allows remote a...
CVE-2006-7047include.php in Shoutpro 1.0 might allow remote attackers to bypass IP ban restrictions via a URL in the path parameter t...
CVE-2006-7048Multiple PHP remote file inclusion vulnerabilities in Claroline 1.7.5 allow remote attackers to execute arbitrary PHP co...
CVE-2006-7049The Method method in WikkaWiki (Wikka Wiki) before 1.1.6.2 calls the strstr and strrpos functions with the wrong argumen...
CVE-2006-7050Cross-site scripting (XSS) vulnerability in WikkaWiki (Wikka Wiki) before 1.1.6.2 allows remote attackers to inject arbi...
CVE-2006-7051The sys_timer_create function in posix-timers.c for Linux kernel 2.6.x allows local users to cause a denial of service (...
CVE-2006-7052Multiple PHP remote file inclusion vulnerabilities in DotWidget For Articles (dotwidgeta) 0.2 allow remote attackers to ...
CVE-2006-7053Unspecified vulnerability in Arkoon FAST360 UTM appliances 3.0 through 3.0/29, 3.1, 3.2, and 3.3 allows remote attackers...
CVE-2006-7054The DNS module in Arkoon FAST360 UTM appliances 3.0 up to 3.0/29, 3.1 through 3.3, and 4.0 allows remote attackers to ca...
CVE-2006-7055PHP remote file inclusion vulnerability in index.php in TotalCalendar 2.30 and earlier allows remote attackers to execut...
CVE-2006-7056Multiple PHP remote file inclusion vulnerabilities in DreamCost HostAdmin 3.1 and earlier allow remote attackers to exec...
CVE-2006-7044PHP remote file inclusion vulnerability in comment.core.inc.php in Clan Manager Pro (CMPRO) 1.11 and earlier allows remo...
CVE-2006-5877The enigmail extension before 0.94.2 does not properly handle large, encrypted file e-mail attachments, which allows rem...
CVE-2006-7025SQL injection vulnerability in admin/config.php in Bookmark4U 2.0 and 2.1 allows remote attackers to inject arbitrary SQ...
CVE-2006-7041The SMTP service in MERCUR Messaging 2005 before Service Pack 4 allows remote attackers to cause a denial of service (in...
CVE-2006-7026PHP remote file inclusion vulnerability in sources/join.php in Aardvark Topsites PHP 4.2.2 and earlier, when register_gl...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now