2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-2982Multiple PHP remote file inclusion vulnerabilities in Enterprise Timesheet and Payroll Systems (EPS) 1.1 and earlier all...
CVE-2006-3004Multiple cross-site scripting (XSS) vulnerabilities in Ez Ringtone Manager allow remote attackers to inject arbitrary we...
CVE-2006-3002Cross-site scripting (XSS) vulnerability in details.php in Easy Ad-Manager allows remote attackers to inject arbitrary w...
CVE-2006-3001Cross-site scripting (XSS) vulnerability in search.php in OkScripts OkMall 1.0 allow remote attackers to inject arbitrar...
CVE-2006-2908The domecode function in inc/functions_post.php in MyBulletinBoard (MyBB) 1.1.2, and possibly other versions, allows rem...
CVE-2006-3000Cross-site scripting (XSS) vulnerability in search.php in OkScripts OkArticles 1.0 allows remote attackers to inject arb...
CVE-2006-2981SQL injection vulnerability in vs_search.php in Arantius Vice Stats before 1.0.1 allows remote attackers to execute arbi...
CVE-2006-2977SQL injection vulnerability in big.php in Mafia Moblog 0.6M1 and earlier allows remote attackers to execute arbitrary SQ...
CVE-2006-2975Multiple cross-site scripting (XSS) vulnerabilities in pblguestbook.php in PBL Guestbook 1.31 allow remote attackers to ...
CVE-2006-2976Unspecified vulnerability in usermgr.php in Coppermine Photo Gallery before 1.4.7 has unknown impact and remote attack v...
CVE-2006-2979Multiple cross-site scripting (XSS) vulnerabilities in ViArt Shop Free 2.5.5, and possibly other distributions including...
CVE-2006-2978Mafia Moblog 0.6M1 and earlier allows remote attackers to obtain the installation path in an error message via a direct ...
CVE-2006-2980SQL injection vulnerability in block_forum_topic_new.php in ViArt Shop Free 2.5.5, and possibly other distributions incl...
CVE-2006-2972SQL injection vulnerability in vs_resource.php in Arantius Vice Stats 0.5b and 1.0 allows remote attackers to execute ar...
CVE-2006-2974Multiple cross-site scripting (XSS) vulnerabilities in EmailArchitect Email Server 6.1.0.5 and earlier allow remote atta...
CVE-2006-2973Multiple SQL injection vulnerabilities in month.php in PHP Lite Calendar Express 2.2 allow remote attackers to execute a...
CVE-2006-2953Cross-site scripting (XSS) vulnerability in default.asp in OfficeFlow 2.6 and earlier allows remote attackers to inject ...
CVE-2006-2943Unspecified vulnerability in CGI-RESCUE WebFORM 4.1 and earlier allows remote attackers to inject email headers, which f...
CVE-2006-2944Unspecified vulnerability in CGI-RESCUE FORM2MAIL 1.21 and earlier allows remote attackers to inject email headers, whic...
CVE-2006-2945Unspecified vulnerability in the user profile change functionality in DokuWiki, when Access Control Lists are enabled, a...
CVE-2006-2946Dmx Forum 2.1a stores _includes/bd.inc under the web root with insufficient access control, which allows remote attacker...
CVE-2006-2947Dmx Forum 2.1a allows remote attackers to obtain username and password information via a direct request to pops/edit.php...
CVE-2006-2948A-CART 2.0 stores the acart2_0.mdb file under the web document root with insufficient access control, which allows remot...
CVE-2006-2949Cross-site scripting (XSS) vulnerability in private.php in MyBB 1.1.2 allows remote attackers to inject arbitrary web sc...
CVE-2006-2950Net Portal Dynamic System (NPDS) 5.10 and earlier allows remote attackers to obtain sensitive information via a direct r...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now