2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-2346 | — | — | 1.7% | May 12, 2006 | vpopmail 5.4.14 and 5.4.15, with cleartext passwords enabled, allows remote attackers to authenticate to an account that... |
| CVE-2006-2348 | — | — | 1.2% | May 12, 2006 | Cross-site scripting (XSS) vulnerability in form_grupo.html in E-Business Designer (eBD) 3.1.4 and earlier allows remote... |
| CVE-2006-2345 | — | — | 1.1% | May 12, 2006 | Cross-site scripting (XSS) vulnerability in inc/elementz.php in AliPAGER 1.5 allows remote attackers to inject arbitrary... |
| CVE-2006-2342 | — | — | 2.7% | May 12, 2006 | IBM WebSphere Application Server 6.0.2 before FixPack 3 allows remote attackers to bypass authentication for the Welcome... |
| CVE-2006-2349 | — | — | 8.7% | May 12, 2006 | E-Business Designer (eBD) 3.1.4 and earlier allows remote attackers to upload or modify arbitrary files, and execute arb... |
| CVE-2006-2344 | — | — | 1.3% | May 12, 2006 | SQL injection vulnerability in inc/elementz.php in AliPAGER 1.5, with magic_quotes_gpc disabled, allows remote attackers... |
| CVE-2006-2347 | — | — | 1.4% | May 12, 2006 | E-Business Designer (eBD) 3.1.4 and earlier allows remote attackers to obtain the full path of the web server via "'" ch... |
| CVE-2006-2343 | — | — | 1.2% | May 12, 2006 | Cross-site scripting (XSS) vulnerability in Search.do in ManageEngine OpManager 6.0 allows remote attackers to inject ar... |
| CVE-2006-1860 | — | — | 0.4% | May 12, 2006 | lease_init in fs/locks.c in Linux kernel before 2.6.16.16 allows attackers to cause a denial of service (fcntl_setlease ... |
| CVE-2006-2341 | — | — | 3.8% | May 12, 2006 | The HTTP proxy in Symantec Gateway Security 5000 Series 2.0.1 and 3.0, and Enterprise Firewall 8.0, when NAT is being us... |
| CVE-2006-2340 | — | — | 1.3% | May 12, 2006 | Cross-site scripting (XSS) vulnerability in PassMasterFlex and PassMasterFlexPlus (PassMasterFlex+) 1.2 and earlier allo... |
| CVE-2006-2339 | — | — | 1.3% | May 12, 2006 | SQL injection vulnerability in index.php in evoTopsites 2.x and evoTopsites Pro 2.x allows remote attackers to execute a... |
| CVE-2006-1859 | — | — | 0.4% | May 12, 2006 | Memory leak in __setlease in fs/locks.c in Linux kernel before 2.6.16.16 allows attackers to cause a denial of service (... |
| CVE-2006-2315 | — | — | 4.8% | May 12, 2006 | PHP remote file inclusion vulnerability in session.inc.php in ISPConfig 2.2.2 and earlier allows remote attackers to exe... |
| CVE-2006-2322 | — | — | 1.5% | May 12, 2006 | The transparent proxy feature of the Cisco Application Velocity System (AVS) 3110 5.0 and 4.0 and earlier, and 3120 5.0.... |
| CVE-2006-2338 | — | — | 1.5% | May 12, 2006 | PlaNet Concept plaNetStat 20050127 allows remote attackers to gain administrative privileges, and view and configure log... |
| CVE-2006-2337 | — | — | 1.8% | May 12, 2006 | Directory traversal vulnerability in webcm in the D-Link DSL-G604T Wireless ADSL Router Modem allows remote attackers to... |
| CVE-2006-2336 | — | — | 1.1% | May 12, 2006 | SQL injection vulnerability in showthread.php in MyBB (aka MyBulletinBoard) 1.1.1 allows remote attackers to execute arb... |
| CVE-2006-2335 | — | — | 3.4% | May 12, 2006 | Jelsoft vBulletin accepts uploads of Cascading Style Sheets (CSS) and processes them in a way that allows remote authent... |
| CVE-2006-2334 | — | — | 4.4% | May 12, 2006 | The RtlDosPathNameToNtPathName_U API function in NTDLL.DLL in Microsoft Windows 2000 SP4 and XP SP2 does not properly co... |
| CVE-2006-2333 | — | — | 1.2% | May 12, 2006 | Multiple SQL injection vulnerabilities in MyBB (aka MyBulletinBoard) 1.1.1 allow remote attackers to execute arbitrary S... |
| CVE-2006-2332 | — | — | 1.2% | May 12, 2006 | Mozilla Firefox 1.5.0.3 allows remote attackers to cause a denial of service via a web page with a large number of IMG e... |
| CVE-2006-2331 | — | — | 4.4% | May 12, 2006 | Multiple directory traversal vulnerabilities in PHP-Fusion 6.00.306 allow remote attackers to include and execute arbitr... |
| CVE-2006-2330 | — | — | 7.8% | May 12, 2006 | PHP-Fusion 6.00.306 and earlier, running under Apache HTTP Server 1.3.27 and PHP 4.3.3, allows remote authenticated user... |
| CVE-2006-2329 | — | — | 2.3% | May 12, 2006 | AngelineCMS 0.6.5 and earlier allow remote attackers to obtain sensitive information via a direct request for (1) adodb-... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now