2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-2700 | — | — | 1.4% | May 31, 2006 | SQL injection vulnerability in admin/auth.inc.php in Geeklog 1.4.0sr2 and earlier allows remote attackers to execute arb... |
| CVE-2006-2701 | — | — | 1.3% | May 31, 2006 | SQL injection vulnerability in Geeklog 1.4.0sr2 and earlier allows remote attackers to execute arbitrary SQL commands vi... |
| CVE-2006-2702 | — | — | 2.9% | May 31, 2006 | vars.php in WordPress 2.0.2, possibly when running on Mac OS X, allows remote attackers to spoof their IP address via a ... |
| CVE-2006-2686 | — | — | 13.4% | May 31, 2006 | PHP remote file inclusion vulnerabilities in ActionApps 2.8.1 allow remote attackers to execute arbitrary PHP code via a... |
| CVE-2006-2676 | — | — | 1.4% | May 31, 2006 | Dispatch.cgi/_user/uservCard/ in SiteScape Forum 7.2 and possibly earlier generates different responses in a way that al... |
| CVE-2006-2677 | — | — | 1.4% | May 31, 2006 | SiteScape Forum 7.2 and possibly earlier stores the avf.rc configuraiton file under the web document root with insuffici... |
| CVE-2006-2678 | — | — | 2.8% | May 31, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in Pre News Manager 1.0 allow remote attackers to inject arbitrary w... |
| CVE-2006-2679 | — | — | 0.4% | May 31, 2006 | Unspecified vulnerability in the VPN Client for Windows Graphical User Interface (GUI) (aka the VPN client dialer) in Ci... |
| CVE-2006-2680 | — | — | 1.8% | May 31, 2006 | Cross-site scripting (XSS) vulnerability in index.php in AZ Photo Album Script Pro allows remote attackers to inject arb... |
| CVE-2006-2681 | — | — | 2.3% | May 31, 2006 | PHP remote file inclusion vulnerability in SocketMail Lite and Pro 2.2.6 and earlier, when register_globals and magic_qu... |
| CVE-2006-2682 | — | — | 2.4% | May 31, 2006 | PHP remote file inclusion vulnerability in BE_config.php in Back-End CMS 0.7.2.1 and earlier allows remote attackers to ... |
| CVE-2006-2683 | — | — | 2.2% | May 31, 2006 | PHP remote file inclusion vulnerability in 404.php in open-medium.CMS 0.25 allows remote attackers to execute arbitrary ... |
| CVE-2006-2684 | — | — | 1.3% | May 31, 2006 | Cross-site scripting (XSS) vulnerability in the search module in CMS Mundo 1.0 allows remote attackers to inject arbitra... |
| CVE-2006-2685 | — | — | 48.5% | May 31, 2006 | PHP remote file inclusion vulnerability in Basic Analysis and Security Engine (BASE) 1.2.4 and earlier, with register_gl... |
| CVE-2006-2687 | — | — | 1.1% | May 31, 2006 | Cross-site scripting (XSS) vulnerability in adduser.php in PHP-AGTC Membership System 1.1a and earlier allows remote att... |
| CVE-2006-2688 | — | — | 1.3% | May 31, 2006 | SQL injection vulnerability in the employees node (class.employee.inc) in Achievo 1.1.0 and earlier and 1.2 and earlier ... |
| CVE-2006-2689 | — | — | 2.0% | May 31, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in EVA-Web 2.1.2 and earlier allow remote attackers to inject arbitr... |
| CVE-2006-2690 | — | — | 1.5% | May 31, 2006 | An unspecified script in EVA-Web 2.1.2 and earlier, probably index.php, allows remote attackers to obtain the full path ... |
| CVE-2006-2698 | — | — | 2.0% | May 31, 2006 | Geeklog 1.4.0sr2 and earlier allows remote attackers to obtain the full installation path via a direct request and possi... |
| CVE-2006-1175 | — | — | 2.2% | May 31, 2006 | The WeOnlyDo! SFTP (wodSFTP) ActiveX control is marked as safe for scripting, which allows remote attackers to read and ... |
| CVE-2006-2667 | — | — | 14.3% | May 30, 2006 | Direct static code injection vulnerability in WordPress 2.0.2 and earlier allows remote attackers to execute arbitrary c... |
| CVE-2006-2663 | — | — | 2.0% | May 30, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in iFlance 1.1 allow remote attackers to inject arbitrary web script... |
| CVE-2006-2664 | — | — | 1.3% | May 30, 2006 | Cross-site scripting (XSS) vulnerability in iFdate 1.2 allows remote attackers to inject arbitrary web script or HTML vi... |
| CVE-2006-2672 | — | — | 1.6% | May 30, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in Realty Pro One allow remote attackers to inject arbitrary web scr... |
| CVE-2006-2670 | — | — | 1.2% | May 30, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in ChatPat 1.0 allow remote attackers to inject arbitrary web script... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now