2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-1995 | — | — | 4.4% | Apr 25, 2006 | Directory traversal vulnerability in index.php in Scry Gallery 1.1 allows remote attackers to read arbitrary files via "... |
| CVE-2006-1996 | — | — | 1.6% | Apr 25, 2006 | Scry Gallery 1.1 allows remote attackers to obtain sensitive information via an invalid p parameter, which reveals the p... |
| CVE-2006-1997 | — | — | 0.3% | Apr 25, 2006 | Unspecified vulnerability in Sybase Pylon Anywhere groupware synchronization server before 7.0 allows local users to obt... |
| CVE-2006-1998 | — | — | 0.9% | Apr 25, 2006 | OpenTTD 0.4.7 and earlier allows local users to cause a denial of service (application exit) via a large invalid error n... |
| CVE-2006-1999 | — | — | 9.1% | Apr 25, 2006 | The multiplayer menu in OpenTTD 0.4.7 allows remote attackers to cause a denial of service via a UDP packet with an inco... |
| CVE-2006-2000 | — | — | 1.3% | Apr 25, 2006 | Cross-site scripting (XSS) vulnerability in /lms/a2z.jsp in logMethods 0.9 allows remote attackers to inject arbitrary w... |
| CVE-2006-2001 | — | — | 2.3% | Apr 25, 2006 | Cross-site scripting (XSS) vulnerability in index.php in Scry Gallery 1.1 allows remote attackers to inject arbitrary we... |
| CVE-2006-2002 | — | — | 2.9% | Apr 25, 2006 | PHP remote file inclusion vulnerability in stats.php in MyGamingLadder 7.0 allows remote attackers to execute arbitrary ... |
| CVE-2006-2003 | — | — | 1.2% | Apr 25, 2006 | Cross-site scripting (XSS) vulnerability in cgi-bin/guest in Community Architect Guestbook allows remote attackers to in... |
| CVE-2006-2004 | — | — | 1.4% | Apr 25, 2006 | Multiple SQL injection vulnerabilities in RI Blog 1.1 allow remote attackers to execute arbitrary SQL command via the (1... |
| CVE-2006-2005 | — | — | 3.3% | Apr 25, 2006 | Eval injection vulnerability in index.php in ClanSys 1.1 allows remote attackers to execute arbitrary PHP code via PHP c... |
| CVE-2006-2006 | — | — | 1.6% | Apr 25, 2006 | Multiple directory traversal vulnerabilities in IZArc Archiver 3.5 beta 3 allow remote attackers to write arbitrary file... |
| CVE-2006-2007 | — | — | 4.7% | Apr 25, 2006 | Heap-based buffer overflow in Winny 2.0 b7.1 and earlier allows remote attackers to execute arbitrary code via long stri... |
| CVE-2006-1992 | — | — | 40.4% | Apr 25, 2006 | mshtml.dll 6.00.2900.2873, as used in Microsoft Internet Explorer, allows remote attackers to cause a denial of service ... |
| CVE-2006-1057 | — | — | 0.3% | Apr 25, 2006 | Race condition in daemon/slave.c in gdm before 2.14.1 allows local users to gain privileges via a symlink attack when gd... |
| CVE-2006-0231 | — | — | 1.9% | Apr 25, 2006 | Symantec Scan Engine 5.0.0.24, and possibly other versions before 5.1.0.7, uses the same private DSA key for each instal... |
| CVE-2006-0232 | — | — | 2.4% | Apr 25, 2006 | Symantec Scan Engine 5.0.0.24, and possibly other versions before 5.1.0.7, stores sensitive log and virus definition fil... |
| CVE-2006-0230 | — | — | 16.1% | Apr 25, 2006 | Symantec Scan Engine 5.0.0.24, and possibly other versions before 5.1.0.7, uses a client-side check to verify a password... |
| CVE-2006-1512 | — | — | — | Apr 25, 2006 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-1712. Reason: This candidate is a reservation ... |
| CVE-2006-1991 | — | — | 2.2% | Apr 24, 2006 | The substr_compare function in string.c in PHP 5.1.2 allows context-dependent attackers to cause a denial of service (me... |
| CVE-2006-1990 | — | — | 10.4% | Apr 24, 2006 | Integer overflow in the wordwrap function in string.c in PHP 4.4.2 and 5.1.2 might allow context-dependent attackers to ... |
| CVE-2006-1951 | — | — | 4.0% | Apr 24, 2006 | Directory traversal vulnerability in SolarWinds TFTP Server 8.1 and earlier allows remote attackers to download arbitrar... |
| CVE-2006-1952 | — | — | 4.2% | Apr 24, 2006 | Directory traversal vulnerability in WinAgents TFTP Server for Windows 3.1 and earlier allows remote attackers to read a... |
| CVE-2006-1865 | — | — | 3.5% | Apr 21, 2006 | Argument injection vulnerability in Beagle before 0.2.5 allows attackers to execute arbitrary commands via crafted filen... |
| CVE-2006-1986 | — | — | 3.7% | Apr 21, 2006 | Apple Safari 2.0.3 allows remote attackers to cause a denial of service and possibly execute code via a large CELLSPACIN... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now