2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2006-2461——BEA WebLogic Server before 8.1 Service Pack 4 does not properly set the Quality of Service in certain circumstances, whi...
CVE-2006-2462——BEA WebLogic Server 8.1 before Service Pack 4 and 7.0 before Service Pack 6, may send sensitive data over non-secure cha...
CVE-2006-2463——view_album.php in SelectaPix 1.31 and earlier allows remote attackers to obtain the installation path via a certain requ...
CVE-2006-2464——stopWebLogic.sh in BEA WebLogic Server 8.1 before Service Pack 4 and 7.0 before Service Pack 6 displays the administrato...
CVE-2006-2465——Buffer overflow in MP3Info 0.8.4 allows attackers to execute arbitrary code via a long command line argument. NOTE: if ...
CVE-2006-2466——BEA WebLogic Server 8.1 up to SP4 and 7.0 up to SP6 allows remote attackers to obtain the source code of JSP pages durin...
CVE-2006-2467——BEA WebLogic Server 8.1 up to SP4, 7.0 up to SP6, and 6.1 up to SP7 displays the internal IP address of the WebLogic ser...
CVE-2006-2468——The WebLogic Server Administration Console in BEA WebLogic Server 8.1 up to SP4 and 7.0 up to SP6 displays the domain na...
CVE-2006-2469——The HTTP handlers in BEA WebLogic Server 9.0, 8.1 up to SP5, 7.0 up to SP6, and 6.1 up to SP7 stores the username and pa...
CVE-2006-2470——Unspecified vulnerability in the WebLogic Server Administration Console for BEA WebLogic Server 9.0 prevents the console...
CVE-2006-2471——Multiple vulnerabilities in BEA WebLogic Server 8.1 through SP4, 7.0 through SP6, and 6.1 through SP7 leak sensitive inf...
CVE-2006-2458——Multiple heap-based buffer overflows in Libextractor 0.5.13 and earlier allow remote attackers to execute arbitrary code...
CVE-2006-1528——Linux kernel before 2.6.13 allows local users to cause a denial of service (crash) via a dio transfer from the sg driver...
CVE-2006-1855——choose_new_parent in Linux kernel before 2.6.11.12 includes certain debugging code, which allows local users to cause a ...
CVE-2006-2442——kphone 4.2 creates .qt/kphonerc with world-readable permissions, which allows local users to read usernames and SIP pass...
CVE-2006-2443——The Debian package of knowledgetree 2.0.7 creates environment.php with world-readable permissions, which allows local us...
CVE-2006-2441——Pioneers meta-server before 0.9.55, when the server-console is not installed, allows remote attackers to cause a denial ...
CVE-2006-2440——Heap-based buffer overflow in the libMagick component of ImageMagick 6.0.6.2 might allow attackers to execute arbitrary ...
CVE-2006-2433——Unspecified vulnerability in IBM WebSphere Application Server 6.0.2, 6.0.2.1, 6.0.2.3, 6.0.2.5, and 6.0.2.7 has unknown ...
CVE-2006-2435——Unspecified vulnerability in IBM WebSphere Application Server 5.0.2 and earlier, and 5.1.1 and earlier, has unknown impa...
CVE-2006-2436——WebSphere Application Server 5.0.2 (or any earlier cumulative fix) stores admin and LDAP passwords in plaintext in the F...
CVE-2006-2437——The viewfile servlet in the documentation package (resin-doc) for Caucho Resin 3.0.17 and 3.0.18 allows remote attackers...
CVE-2006-2438——Directory traversal vulnerability in the viewfile servlet in the documentation package (resin-doc) for Caucho Resin 3.0....
CVE-2006-1953——Directory traversal vulnerability in Caucho Resin 3.0.17 and 3.0.18 for Windows allows remote attackers to read arbitrar...
CVE-2006-2421——Stack-based buffer overflow in Pragma FortressSSH 4.0.7.20 allows remote attackers to execute arbitrary code via long SS...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now