2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-3564Multiple cross-site scripting (XSS) vulnerabilities in HiveMail 1.3 and earlier allow remote attackers to inject arbitra...
CVE-2006-3563Cross-site scripting (XSS) vulnerability in gallery/thumb.php in Winged Gallery 1.0 allows remote attackers to inject ar...
CVE-2006-3562PHP remote file inclusion vulnerabilities in plume cms 1.0.4 allow remote attackers to execute arbitrary PHP code via a ...
CVE-2006-3561BT Voyager 2091 Wireless firmware 2.21.05.08m_A2pB018c1.d16d and earlier, and 3.01m and earlier, allow remote attackers ...
CVE-2006-3560SQL injection vulnerability in topics.php in Blue Dojo Graffiti Forums 1.0 allows remote attackers to execute arbitrary ...
CVE-2006-3570Cross-site scripting (XSS) vulnerability in the webform module in Drupal 4.6 before July 8, 2006 and 4.7 before July 8, ...
CVE-2006-3569Unspecified vulnerability in NetApp Data ONTAP 7.0x through 7.0.4P8D9, 7.1x, 7.1.0.1x, and 7.2RC1, RC2, and RC3, as used...
CVE-2006-3571Multiple cross-site scripting (XSS) vulnerabilities in interna/hilfe.php in Papoo 3 RC3 and earlier allow remote attacke...
CVE-2006-3572SQL injection vulnerability in forumthread.php in Papoo 3 RC3 and earlier allows remote attackers to execute arbitrary S...
CVE-2006-3567Cross-site scripting (XSS) vulnerability in the web administration interface logging feature in Juniper Networks (Redlin...
CVE-2006-3566search.results.php in HiveMail 3.1 and earlier allows remote attackers to obtain the installation path via certain manip...
CVE-2006-3565SQL injection vulnerability in search.results.php in HiveMail 1.3 and earlier allows remote attackers to execute arbitra...
CVE-2006-3568Multiple cross-site scripting (XSS) vulnerabilities in guestbook.php in Fantastic Guestbook 2.0.1, and possibly earlier ...
CVE-2006-3550Multiple cross-site scripting (XSS) vulnerabilities in F5 Networks FirePass 4100 5.x allow remote attackers to inject ar...
CVE-2006-3559Multiple SQL injection vulnerabilities in Arif Supriyanto auraCMS 1.62 allow remote attackers to execute arbitrary SQL c...
CVE-2006-3558Multiple cross-site scripting (XSS) vulnerabilities in Arif Supriyanto auraCMS 1.62 allow remote attackers to inject arb...
CVE-2006-3547MEDIUM5.5EMC VMware Player allows user-assisted attackers to cause a denial of service (unrecoverable application failure) via a ...
CVE-2006-3557MT Orumcek Toplist 2.2 stores DB/orumcektoplist.mdb under the web root with insufficient access control, which allows re...
CVE-2006-3556PHP remote file inclusion vulnerability in extcalendar.php in Mohamed Moujami ExtCalendar 2.0 allows remote attackers to...
CVE-2006-3555Multiple cross-site scripting (XSS) vulnerabilities in submit.php in PHP-Fusion before 6.01.3 allow remote attackers to ...
CVE-2006-3554Directory traversal vulnerability in index.php in MKPortal 1.0.1 Final allows remote attackers to include and execute ar...
CVE-2006-3553PlaNet Concept planetNews allows remote attackers to bypass authentication and execute arbitrary code via a direct reque...
CVE-2006-3552Premium Anti-Spam in Ipswitch IMail Secure Server 2006 and Collaboration Suite 2006 Premium, when using a certain .dat f...
CVE-2006-3551NCP Secure Enterprise Client (aka VPN/PKI client) 8.30 Build 59, and possibly earlier versions, when the Link Firewall a...
CVE-2006-3549services/go.php in Horde Application Framework 3.0.0 through 3.0.10 and 3.1.0 through 3.1.1 does not properly restrict i...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now