2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2006-2641——** UNVERIFIABLE ** NOTE: this issue does not contain any verifiable or actionable details. Cross-site scripting (XSS) ...
CVE-2006-2640——Cross-site scripting (XSS) vulnerability in OmegaMw7a.ASP in OMEGA (aka Omegasoft) INterneSErvicesLosungen (INSEL) allow...
CVE-2006-2639——Cross-site scripting (XSS) vulnerability in the input forms in prattmic and Master5006 PHPSimpleChoose 0.3 allows remote...
CVE-2006-2638——SQL injection vulnerability in member.asp in qjForum allows remote attackers to execute arbitrary SQL commands via the u...
CVE-2006-2637——Cross-site scripting (XSS) vulnerability in view.php in TuttoPhp (1) Morris Guestbook 1, (2) Pretty Guestbook 1, and (3)...
CVE-2006-2636——newsadmin.asp in Katy Whitton NewsCMSLite allows remote attackers to bypass authentication and gain administrative acces...
CVE-2006-2649——Multiple cross-site scripting (XSS) vulnerabilities in (a) search.php, (b) search_cat.php, (c) search_price.php, and (d)...
CVE-2006-2651——Cross-site scripting (XSS) vulnerability in index.php in Vacation Rental Script 1.0 allows remote attackers to inject ar...
CVE-2006-2563——The cURL library (libcurl) in PHP 4.4.2 and 5.1.4 allows attackers to bypass safe mode and read files via a file:// requ...
CVE-2006-1174——useradd in shadow-utils before 4.0.3, and possibly other versions before 4.0.8, does not provide a required argument to ...
CVE-2006-2453——Multiple unspecified format string vulnerabilities in Dia have unspecified impact and attack vectors, a different set of...
CVE-2006-2630——Stack-based buffer overflow in Symantec Antivirus 10.1 and Client Security 3.1 allows remote attackers to execute arbitr...
CVE-2006-2631——phpFoX allows remote authenticated users to modify arbitrary accounts via a modified NATIO cookie value, possibly the ph...
CVE-2006-2629——Race condition in Linux kernel 2.6.15 to 2.6.17, when running on SMP platforms, allows local users to cause a denial of ...
CVE-2006-1054——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-1861. Reason: This candidate is a reservation ...
CVE-2006-2608——artmedic newsletter 4.1 and possibly other versions, when register_globals is enabled, allows remote attackers to modify...
CVE-2006-2618——Cross-site scripting (XSS) vulnerability in (1) AlstraSoft Web Host Directory 1.2, aka (2) HyperStop WebHost Directory 1...
CVE-2006-2615——ping.php in Russcom.Ping allows remote attackers to execute arbitrary commands via shell metacharacters in the domain pa...
CVE-2006-2616——SQL injection vulnerability in the search script in (1) AlstraSoft Web Host Directory 1.2, aka (2) HyperStop WebHost Dir...
CVE-2006-2617——(1) AlstraSoft Web Host Directory 1.2, aka (2) HyperStop WebHost Directory 1.2, allows remote attackers to obtain the in...
CVE-2006-2611——Cross-site scripting (XSS) vulnerability in includes/Sanitizer.php in the variable handler in MediaWiki 1.6.x before r14...
CVE-2006-2610——Cross-site scripting (XSS) vulnerability in view.php in phpRaid 2.9.5 allows remote attackers to inject arbitrary web sc...
CVE-2006-2613——Mozilla Suite 1.7.13, Mozilla Firefox 1.5.0.3 and possibly other versions before before 1.8.0, and Netscape 7.2 and 8.1,...
CVE-2006-2612——Novell Client for Windows 4.8 and 4.9 does not restrict access to the clipboard contents while a machine is locked, whic...
CVE-2006-2614——Sun N1 System Manager 1.1 for Solaris 10 before patch 121161-01 records system passwords in the world-readable scripts (...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now