2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-6880 | — | — | 1.0% | Dec 31, 2006 | Multiple SQL injection vulnerabilities in code/guestadd.php in PHP-Update 2.7 and earlier allow remote attackers to exec... |
| CVE-2006-6879 | — | — | 1.8% | Dec 31, 2006 | Unrestricted file upload vulnerability in admin/uploads.php in PHP-Update 2.7 and earlier allows remote authenticated us... |
| CVE-2006-6878 | — | — | 2.3% | Dec 31, 2006 | admin/uploads.php in PHP-Update 2.7 and earlier allows remote attackers to gain privileges by setting the rights[7] para... |
| CVE-2006-6877 | — | — | 2.1% | Dec 31, 2006 | Directory traversal vulnerability in index.php in Matteo Lucarelli 3editor CMS 0.42 and earlier, when register_globals i... |
| CVE-2006-6876 | — | — | 1.6% | Dec 31, 2006 | Buffer overflow in the fetchsms function in the SMS handling module (libsms_getsms.c) in OpenSER 1.2.0 and earlier allow... |
| CVE-2006-6875 | — | — | 2.9% | Dec 31, 2006 | Buffer overflow in the validateospheader function in the Open Settlement Protocol (OSP) module in OpenSER 1.1.0 and earl... |
| CVE-2006-6874 | — | — | 1.0% | Dec 31, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in friend.php in eNdonesia 8.4 allow remote attackers to inject arbi... |
| CVE-2006-6873 | — | — | 1.2% | Dec 31, 2006 | Multiple SQL injection vulnerabilities in mod.php in eNdonesia 8.4 allow remote attackers to execute arbitrary SQL comma... |
| CVE-2006-6872 | — | — | 3.0% | Dec 31, 2006 | Directory traversal vulnerability in mod.php in eNdonesia 8.4 allows remote attackers to read arbitrary files via a .. (... |
| CVE-2006-6871 | — | — | 1.9% | Dec 31, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in eNdonesia 8.4 allow remote attackers to inject arbitrary web scri... |
| CVE-2006-6870 | — | — | 2.3% | Dec 31, 2006 | The consume_labels function in avahi-core/dns.c in Avahi before 0.6.16 allows remote attackers to cause a denial of serv... |
| CVE-2006-6869 | — | — | 3.2% | Dec 31, 2006 | Directory traversal vulnerability in includes/search/search_mdforum.php in MAXdev MDForum 2.0.1 and earlier, when magic_... |
| CVE-2006-6868 | — | — | 1.2% | Dec 31, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in Zen Cart Web Shopping Cart before 1.3.7 allow remote attackers to... |
| CVE-2006-6867 | — | — | 3.4% | Dec 31, 2006 | Multiple PHP remote file inclusion vulnerabilities in Vladimir Menshakov buratinable templator (aka bubla) 0.9.1 allow r... |
| CVE-2006-6866 | — | — | 3.0% | Dec 31, 2006 | STphp EasyNews PRO 4.0 stores sensitive information under the web root with insufficient access control, which allows re... |
| CVE-2006-6865 | — | — | 4.4% | Dec 31, 2006 | Directory traversal vulnerability in SAFileUpSamples/util/viewsrc.asp in SoftArtisans FileUp (SAFileUp) 5.0.14 allows re... |
| CVE-2006-6864 | — | — | 5.0% | Dec 31, 2006 | PHP remote file inclusion vulnerability in E2_header.inc.php in Enigma2 Coppermine Bridge 1.0 allows remote attackers to... |
| CVE-2006-6862 | — | — | 1.1% | Dec 31, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in Outfront Spooky Login 2.7 allow remote attackers to inject arbitr... |
| CVE-2006-6861 | — | — | 1.3% | Dec 31, 2006 | Multiple SQL injection vulnerabilities in Outfront Spooky Login 2.7 allow remote attackers to execute arbitrary SQL comm... |
| CVE-2006-6860 | — | — | 5.4% | Dec 31, 2006 | Buffer overflow in the sendToMythTV function in MythControlServer.c in MythControl 1.0 and earlier allows remote attacke... |
| CVE-2006-6859 | — | — | 1.8% | Dec 31, 2006 | SQL injection vulnerability in coupon_detail.asp in Website Designs For Less Click N' Print Coupons 2005.01 and earlier ... |
| CVE-2006-6858 | — | — | 1.2% | Dec 31, 2006 | Miredo 0.9.8 through 1.0.5 does not properly authenticate a Teredo bubble during UDP hole punching with HMAC-MD5-64 hash... |
| CVE-2006-6857 | — | — | 0.8% | Dec 31, 2006 | Cross-site scripting (XSS) vulnerability in modules/credits/credits.php in Docebo LMS allows remote attackers to inject ... |
| CVE-2006-6856 | — | — | 2.4% | Dec 31, 2006 | Direct static code injection vulnerability in WebText CMS 0.4.5.2 and earlier allows remote attackers to inject arbitrar... |
| CVE-2006-6855 | — | — | 3.2% | Dec 31, 2006 | AIDeX Mini-WebServer 1.1 early release 3 allows remote attackers to cause a denial of service (daemon crash) via a flood... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now