2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2006-7040Unspecified vulnerability in MERCUR Messaging 2005 before Service Pack 4 allows remote attackers to cause a denial of se...
CVE-2006-7035Directory traversal vulnerability in make_thumbnail.php in Super Link Exchange Script 1.0 allows remote attackers to rea...
CVE-2006-7037Mathcad 12 through 13.1 allows local users to bypass the security features by directly accessing or editing the XML repr...
CVE-2006-7033Cross-site scripting (XSS) vulnerability in Super Link Exchange Script 1.0 allows remote attackers to inject arbitrary w...
CVE-2006-7034SQL injection vulnerability in directory.php in Super Link Exchange Script 1.0 might allow remote attackers to execute a...
CVE-2006-7038Multiple buffer overflows in MERCUR Messaging 2005 before Service Pack 4 allow remote attackers to cause a denial of ser...
CVE-2006-7026PHP remote file inclusion vulnerability in sources/join.php in Aardvark Topsites PHP 4.2.2 and earlier, when register_gl...
CVE-2006-7027Microsoft Internet Security and Acceleration (ISA) Server 2004 logs unusual ASCII characters in the Host header, includi...
CVE-2006-7025SQL injection vulnerability in admin/config.php in Bookmark4U 2.0 and 2.1 allows remote attackers to inject arbitrary SQ...
CVE-2006-7028Single CPU Sun systems running Solaris 7, 8, or 9, such as Netra, allows remote attackers to cause a denial of service (...
CVE-2006-7029Microsoft Internet Explorer 6 SP2 and earlier allows remote attackers to cause a denial of service (crash) via a framese...
CVE-2006-7030Microsoft Internet Explorer 6 SP2 and earlier allows remote attackers to cause a denial of service (crash) via certain m...
CVE-2006-7032PHP remote file inclusion vulnerability in phpbb/getmsg.php in FlashBB 1.1.5 and earlier allows remote attackers to exec...
CVE-2006-6490Multiple buffer overflows in the SupportSoft (1) SmartIssue (tgctlsi.dll) and (2) ScriptRunner (tgctlsr.dll) ActiveX con...
CVE-2006-5276Stack-based buffer overflow in the DCE/RPC preprocessor in Snort before 2.6.1.3, and 2.7 before beta 2; and Sourcefire I...
CVE-2006-7021PHP remote file inclusion vulnerability in manager/tools/link/dbinstall.php in Plume CMS 1.1.3 allows remote attackers t...
CVE-2006-7022The Tools module in fx-APP 0.0.8.1 allows remote attackers to misrepresent the contents of a web page via an arbitrary U...
CVE-2006-7023Multiple cross-site scripting (XSS) vulnerabilities in fx-APP 0.0.8.1 allow remote attackers to inject arbitrary HTML or...
CVE-2006-7016phpjobboard allows remote attackers to bypass authentication and gain administrator privileges via a direct request to a...
CVE-2006-7017Multiple PHP remote file inclusion vulnerabilities in Indexu 5.0.1 allow remote attackers to execute arbitrary PHP code ...
CVE-2006-7015PHP remote file inclusion vulnerability in admin.jobline.php in Jobline 1.1.1 allows remote attackers to execute arbitra...
CVE-2006-7018phpwcms 1.2.5-DEV and earlier, and 1.1 before RC4, allows remote attackers to execute arbitrary code via a crafted argum...
CVE-2006-7013QueryString.php in Simple Machines Forum (SMF) 1.0.7 and earlier, and 1.1rc2 and earlier, allows remote attackers to mor...
CVE-2006-7012scart.cgi in SCart 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the page parame...
CVE-2006-7014admin.php in BloggIT 1.01 and earlier does not properly establish a user session, which allows remote attackers to gain ...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now