2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2006-3289——Cross-site scripting (XSS) vulnerability in the login page of the HTTP interface for the Cisco Wireless Control System (...
CVE-2006-3290——HTTP server in Cisco Wireless Control System (WCS) for Linux and Windows before 3.2(51) stores sensitive information und...
CVE-2006-3292——SQL injection vulnerability in the Search gadget in Jaws 0.6.2 allows remote attackers to execute arbitrary SQL commands...
CVE-2006-3286——The internal database in Cisco Wireless Control System (WCS) for Linux and Windows before 3.2(63) stores a hard-coded us...
CVE-2006-3287——Cisco Wireless Control System (WCS) for Linux and Windows 4.0(1) and earlier uses a default administrator username "root...
CVE-2006-3288——Unspecified vulnerability in the TFTP server in Cisco Wireless Control System (WCS) for Linux and Windows before 3.2(51)...
CVE-2006-3271——Multiple SQL injection vulnerabilities in Softbiz Dating 1.0 allow remote attackers to execute SQL commands via the (1) ...
CVE-2006-3285——The internal database in Cisco Wireless Control System (WCS) for Linux and Windows before 3.2(51) uses an undocumented, ...
CVE-2006-3284——Cross-site scripting (XSS) vulnerability in Dating Agent PRO 4.7.1 allows remote attackers to inject arbitrary web scrip...
CVE-2006-3283——SQL injection vulnerability in Dating Agent PRO 4.7.1 allows remote attackers to execute arbitrary SQL commands via the ...
CVE-2006-3282——requirements.php in Dating Agent PRO 4.7.1 allows remote attackers to obtain sensitive information via a direct request,...
CVE-2006-3281——Microsoft Internet Explorer 6.0 does not properly handle Drag and Drop events, which allows remote user-assisted attacke...
CVE-2006-3280——Cross-domain vulnerability in Microsoft Internet Explorer 6.0 allows remote attackers to access restricted information f...
CVE-2006-3279——Cross-site scripting (XSS) vulnerability in aeDating 4.1 allows remote attackers to inject arbitrary web script or HTML ...
CVE-2006-3278——Cross-site scripting (XSS) vulnerability in H-Sphere 2.5.1 Beta 1 and earlier allows remote attackers to inject arbitrar...
CVE-2006-3277——The SMTP service of MailEnable Standard 1.92 and earlier, Professional 2.0 and earlier, and Enterprise 2.0 and earlier b...
CVE-2006-3276——Heap-based buffer overflow in RealNetworks Helix DNA Server 10.0 and 11.0 allows remote attackers to execute arbitrary c...
CVE-2006-3275——SQL injection vulnerability in profile.php in YaBB SE 1.5.5 and earlier allows remote attackers to execute SQL commands ...
CVE-2006-3274——Directory traversal vulnerability in Webmin before 1.280, when run on Windows, allows remote attackers to read arbitrary...
CVE-2006-3273——Cross-site scripting (XSS) vulnerability in menu.php in Some Chess 1.5 rc1 allows remote attackers to inject arbitrary w...
CVE-2006-3272——Cross-site request forgery (CSRF) vulnerability in menu.php in Some Chess 1.5 rc2 allows remote attackers to conduct act...
CVE-2006-3270——SQL injection vulnerability in cms_admin.php in THoRCMS 1.3.1 allows remote attackers to execute arbitrary SQL commands ...
CVE-2006-3269——PHP remote file inclusion vulnerability in includes/functions_cms.php in THoRCMS 1.3.1 allows remote attackers to execut...
CVE-2006-3253——Cross-site scripting (XSS) vulnerability in member.php in vBulletin 3.5.x allows remote attackers to inject arbitrary we...
CVE-2006-3254——SQL injection vulnerability in newthread.php in Woltlab Burning Board (WBB) 2.0 RC2 allows remote attackers to execute a...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now