2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-2917Directory traversal vulnerability in the IMAP server in WinGate 6.1.2.1094 and 6.1.3.1096, and possibly other versions b...
CVE-2006-1176Buffer overflow in eBay Enhanced Picture Services (aka EPUImageControl Class) in EUPWALcontrol.dll before 1.0.3.48, as u...
CVE-2006-3458Zope 2.7.0 to 2.7.8, 2.8.0 to 2.8.7, and 2.9.0 to 2.9.3 (Zope2) does not disable the "raw" command when providing untrus...
CVE-2006-2451The suid_dumpable support in Linux kernel 2.6.13 up to versions before 2.6.17.4, and 2.6.16 before 2.6.16.24, allows a l...
CVE-2006-3431Buffer overflow in certain Asian language versions of Microsoft Excel might allow user-assisted attackers to execute arb...
CVE-2006-3422PHP remote file inclusion vulnerability in WonderEdit Pro CMS allows remote attackers to execute arbitrary PHP code via ...
CVE-2006-3423WebEx Downloader ActiveX Control and WebEx Downloader Java before 2.1.0.0 do not validate downloaded components, which a...
CVE-2006-3416Tor before 0.1.1.20 kills the circuit when it receives an unrecognized relay command, which causes network circuits to b...
CVE-2006-3417Tor client before 0.1.1.20 prefers entry points based on is_fast or is_stable flags, which could allow remote attackers ...
CVE-2006-3415Tor before 0.1.1.20 uses improper logic to validate the "OR" destination, which allows remote attackers to perform a man...
CVE-2006-3414Tor before 0.1.1.20 supports server descriptors that contain hostnames instead of IP addresses, which allows remote atta...
CVE-2006-3413The privoxy configuration file in Tor before 0.1.1.20, when run on Apple OS X, logs all data via the "logfile", which al...
CVE-2006-3424Multiple buffer overflows in WebEx Downloader ActiveX Control, possibly in versions before November 2005, allow remote a...
CVE-2006-3425FastPatch for (a) PatchLink Update Server (PLUS) before 6.1 P1 and 6.2.x before 6.2 SR1 P1, and (b) Novell ZENworks 6.2 ...
CVE-2006-3426Directory traversal vulnerability in (a) PatchLink Update Server (PLUS) before 6.1 P1 and 6.2.x before 6.2 SR1 P1 and (b...
CVE-2006-3427Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (crash) by declaring the sourceURL at...
CVE-2006-3428Cross-site scripting (XSS) vulnerability in TigerTom TTCalc 1.0 allows remote attackers to inject arbitrary web script o...
CVE-2006-3429Cross-site scripting (XSS) vulnerability in TigerTom TTCalc 1.0 allows remote attackers to inject arbitrary web script o...
CVE-2006-3430SQL injection vulnerability in checkprofile.asp in (1) PatchLink Update Server (PLUS) before 6.1 P1 and 6.2.x before 6.2...
CVE-2006-3405Cross-site scripting (XSS) vulnerability in qtofm.php in QTOFileManager 1.0 allows remote attackers to inject arbitrary ...
CVE-2006-3406Directory traversal vulnerability in qtofm.php in QTOFileManager 1.0 allows remote attackers to modify arbitrary files v...
CVE-2006-3407Tor before 0.1.1.20 allows remote attackers to spoof log entries or possibly execute shell code via strings with non-pri...
CVE-2006-3412Tor before 0.1.1.20 does not sufficiently obey certain firewall options, which allows remote attackers to bypass intende...
CVE-2006-3410Tor before 0.1.1.20 creates "internal circuits" primarily consisting of nodes with "useful exit nodes," which allows rem...
CVE-2006-3409Integer overflow in Tor before 0.1.1.20 allows remote attackers to execute arbitrary code via crafted large inputs, whic...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now