2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-2885 | — | — | 1.3% | Jun 7, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in KnowledgeTree Open Source 3.0.3 and earlier allow remote attacker... |
| CVE-2006-2884 | — | — | 1.3% | Jun 7, 2006 | SQL injection vulnerability in index.php in Kmita FAQ 1.0 allows remote attackers to execute arbitrary SQL commands via ... |
| CVE-2006-2883 | — | — | 1.9% | Jun 7, 2006 | Cross-site scripting (XSS) vulnerability in search.php in Kmita FAQ 1.0 allows remote attackers to inject arbitrary web ... |
| CVE-2006-2882 | — | — | 1.4% | Jun 7, 2006 | Multiple cross-site scripting (XSS) vulnerabilities submit.asp in ASPScriptz Guest Book 2.0 and earlier allow remote att... |
| CVE-2006-2895 | — | — | 1.4% | Jun 7, 2006 | Cross-site scripting (XSS) vulnerability in MediaWiki 1.6.0 up to versions before 1.6.7 allows remote attackers to injec... |
| CVE-2006-2892 | — | — | 1.8% | Jun 7, 2006 | Cross-site scripting (XSS) vulnerability in index.php in GANTTy 1.0.3 allows remote attackers to inject arbitrary HTML a... |
| CVE-2006-2896 | — | — | 9.2% | Jun 7, 2006 | profile.php in FunkBoard CF0.71 allows remote attackers to change arbitrary passwords via a modified uid hidden form fie... |
| CVE-2006-2897 | — | — | 1.2% | Jun 7, 2006 | Cross-site scripting (XSS) vulnerability in FunkBoard 0.71 allows remote attackers to inject arbitrary HTML or web scrip... |
| CVE-2006-2898 | — | — | 4.2% | Jun 7, 2006 | The IAX2 channel driver (chan_iax2) for Asterisk 1.2.x before 1.2.9 and 1.0.x before 1.0.11 allows remote attackers to c... |
| CVE-2006-2899 | — | — | 3.7% | Jun 7, 2006 | Unspecified vulnerability in ESTsoft InternetDISK versions before 2006/04/20 allows remote authenticated users to execut... |
| CVE-2006-2880 | — | — | 1.3% | Jun 7, 2006 | Cross-site scripting (XSS) vulnerability in the Contributed Packages for PyBlosxom 1.2.2 and earlier allows remote attac... |
| CVE-2006-2879 | — | — | 1.3% | Jun 7, 2006 | SQL injection vulnerability in newscomments.php in Alex News-Engine 1.5.0 and earlier allows remote attackers to execute... |
| CVE-2006-2881 | — | — | 17.7% | Jun 7, 2006 | Multiple PHP remote file inclusion vulnerabilities in DreamAccount 3.1 and earlier, when register_globals is enabled, al... |
| CVE-2006-2891 | — | — | 1.2% | Jun 7, 2006 | Cross-site scripting (XSS) vulnerability in admin/index.php for Pixelpost 1-5rc1-2 and earlier allows remote attackers t... |
| CVE-2006-2890 | — | — | 1.4% | Jun 7, 2006 | Pixelpost 1-5rc1-2 and earlier, when register_globals is enabled, allows remote attackers to gain administrator privileg... |
| CVE-2006-2876 | — | — | 1.2% | Jun 7, 2006 | Cross-site scripting (XSS) vulnerability in cat.php in PHP Pro Publish 2.0 allows remote attackers to inject arbitrary w... |
| CVE-2006-2875 | — | — | 6.7% | Jun 7, 2006 | Stack-based buffer overflow in the CL_ParseDownload function of Quake 3 Engine 1.32c and earlier, as used in multiple pr... |
| CVE-2006-2877 | — | — | 7.5% | Jun 7, 2006 | PHP remote file inclusion vulnerability in Bookmark4U 2.0.0 and earlier allows remote attackers to include arbitrary PHP... |
| CVE-2006-2878 | — | — | 14.0% | Jun 7, 2006 | The spellchecker (spellcheck.php) in DokuWiki 2006/06/04 and earlier allows remote attackers to insert and execute arbit... |
| CVE-2006-2447 | — | — | 74.3% | Jun 6, 2006 | SpamAssassin before 3.1.3, when running with vpopmail and the paranoid (-P) switch, allows remote attackers to execute a... |
| CVE-2006-2835 | — | — | 1.3% | Jun 6, 2006 | SQL injection vulnerability in saphplesson 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) for... |
| CVE-2006-2836 | — | — | 1.2% | Jun 6, 2006 | SQL injection vulnerability in comment.php in Pineapple Technologies Lore 1.5.6 and earlier allows remote attackers to e... |
| CVE-2006-2872 | — | — | 1.6% | Jun 6, 2006 | PHP remote file inclusion vulnerability in config.php in Rumble 1.02 allows remote attackers to execute arbitrary PHP co... |
| CVE-2006-2874 | — | — | 1.1% | Jun 6, 2006 | Unspecified vulnerability in OSADS Alliance Database before 1.4 has unknown impact and attack vectors related to a "Secu... |
| CVE-2006-2873 | — | — | 1.7% | Jun 6, 2006 | Cross-site scripting (XSS) vulnerability in hava.asp in Enigma Haber 4.2 allows remote attackers to inject arbitrary web... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now