2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-1995Directory traversal vulnerability in index.php in Scry Gallery 1.1 allows remote attackers to read arbitrary files via "...
CVE-2006-1996Scry Gallery 1.1 allows remote attackers to obtain sensitive information via an invalid p parameter, which reveals the p...
CVE-2006-1997Unspecified vulnerability in Sybase Pylon Anywhere groupware synchronization server before 7.0 allows local users to obt...
CVE-2006-1998OpenTTD 0.4.7 and earlier allows local users to cause a denial of service (application exit) via a large invalid error n...
CVE-2006-1999The multiplayer menu in OpenTTD 0.4.7 allows remote attackers to cause a denial of service via a UDP packet with an inco...
CVE-2006-2000Cross-site scripting (XSS) vulnerability in /lms/a2z.jsp in logMethods 0.9 allows remote attackers to inject arbitrary w...
CVE-2006-2001Cross-site scripting (XSS) vulnerability in index.php in Scry Gallery 1.1 allows remote attackers to inject arbitrary we...
CVE-2006-2002PHP remote file inclusion vulnerability in stats.php in MyGamingLadder 7.0 allows remote attackers to execute arbitrary ...
CVE-2006-2003Cross-site scripting (XSS) vulnerability in cgi-bin/guest in Community Architect Guestbook allows remote attackers to in...
CVE-2006-2004Multiple SQL injection vulnerabilities in RI Blog 1.1 allow remote attackers to execute arbitrary SQL command via the (1...
CVE-2006-2005Eval injection vulnerability in index.php in ClanSys 1.1 allows remote attackers to execute arbitrary PHP code via PHP c...
CVE-2006-2006Multiple directory traversal vulnerabilities in IZArc Archiver 3.5 beta 3 allow remote attackers to write arbitrary file...
CVE-2006-2007Heap-based buffer overflow in Winny 2.0 b7.1 and earlier allows remote attackers to execute arbitrary code via long stri...
CVE-2006-1992mshtml.dll 6.00.2900.2873, as used in Microsoft Internet Explorer, allows remote attackers to cause a denial of service ...
CVE-2006-1057Race condition in daemon/slave.c in gdm before 2.14.1 allows local users to gain privileges via a symlink attack when gd...
CVE-2006-0231Symantec Scan Engine 5.0.0.24, and possibly other versions before 5.1.0.7, uses the same private DSA key for each instal...
CVE-2006-0232Symantec Scan Engine 5.0.0.24, and possibly other versions before 5.1.0.7, stores sensitive log and virus definition fil...
CVE-2006-0230Symantec Scan Engine 5.0.0.24, and possibly other versions before 5.1.0.7, uses a client-side check to verify a password...
CVE-2006-1512Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-1712. Reason: This candidate is a reservation ...
CVE-2006-1991The substr_compare function in string.c in PHP 5.1.2 allows context-dependent attackers to cause a denial of service (me...
CVE-2006-1990Integer overflow in the wordwrap function in string.c in PHP 4.4.2 and 5.1.2 might allow context-dependent attackers to ...
CVE-2006-1951Directory traversal vulnerability in SolarWinds TFTP Server 8.1 and earlier allows remote attackers to download arbitrar...
CVE-2006-1952Directory traversal vulnerability in WinAgents TFTP Server for Windows 3.1 and earlier allows remote attackers to read a...
CVE-2006-1865Argument injection vulnerability in Beagle before 0.2.5 allows attackers to execute arbitrary commands via crafted filen...
CVE-2006-1986Apple Safari 2.0.3 allows remote attackers to cause a denial of service and possibly execute code via a large CELLSPACIN...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now