2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-1690 | — | — | 1.5% | Apr 11, 2006 | Cross-site scripting (XSS) vulnerability in subscribe.php in MWNewsletter 1.0.0b allows remote attackers to inject arbit... |
| CVE-2006-1700 | — | — | 1.7% | Apr 11, 2006 | Buy.php in Aweb Scripts Seller uses predictable cookies for authentication based on the time and the script number, whic... |
| CVE-2006-1707 | — | — | 1.3% | Apr 11, 2006 | index.php in Shopweezle 2.0 allows remote attackers to include arbitrary local files via the url parameter. |
| CVE-2006-1708 | — | — | 1.5% | Apr 11, 2006 | SQL injection vulnerability in member.php in Clansys 1.1 allows remote attackers to execute arbitrary SQL commands via t... |
| CVE-2006-1709 | — | — | 4.5% | Apr 11, 2006 | Cross-site scripting (XSS) vulnerability in shop_main.cgi in interaktiv.shop 5 allows remote attackers to inject arbitra... |
| CVE-2006-1683 | — | — | 1.2% | Apr 11, 2006 | SQL injection vulnerability in admin/login.php in Chipmunk Guestbook allows remote attackers to execute arbitrary SQL co... |
| CVE-2006-1681 | — | — | 6.6% | Apr 11, 2006 | Cross-site scripting (XSS) vulnerability in Cherokee HTTPD 0.5 and earlier allows remote attackers to inject arbitrary w... |
| CVE-2006-1678 | — | — | 1.8% | Apr 11, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.8.0.3 allow remote attackers to inject arbitr... |
| CVE-2006-1687 | — | — | 1.2% | Apr 11, 2006 | Cross-site scripting (XSS) vulnerability in APT-webshop-system 4.0 PRO, 3.0 BASIC, and 3.0 LIGHT allows remote attackers... |
| CVE-2006-1688 | — | — | 7.4% | Apr 11, 2006 | Multiple PHP remote file inclusion vulnerabilities in SQuery 4.5 and earlier, as used in products such as Autonomous LAN... |
| CVE-2006-1689 | — | — | 0.5% | Apr 11, 2006 | Unspecified vulnerability in su in HP HP-UX B.11.11, when using the LDAP netgroup feature, allows local users to gain un... |
| CVE-2006-1676 | — | — | 1.2% | Apr 11, 2006 | SQL injection vulnerability in the display function in the Topics module for MAXdev MDPro (MD-Pro) 1.0.73 and 1.0.72, an... |
| CVE-2006-1677 | — | — | 1.5% | Apr 11, 2006 | MAXdev MDPro 1.0.73 and 1.0.72, and possibly other versions before 1.076, allows remote attackers to obtain the full pat... |
| CVE-2006-1686 | — | — | 1.2% | Apr 11, 2006 | Unspecified vulnerability in modules.php in APT-webshop-system 4.0 PRO, 3.0 BASIC, and 3.0 LIGHT allows remote attackers... |
| CVE-2006-1685 | — | — | 1.1% | Apr 11, 2006 | Multiple SQL injection vulnerabilities in modules.php in APT-webshop-system 4.0 PRO, 3.0 BASIC, and 3.0 LIGHT allow remo... |
| CVE-2006-1684 | — | — | 1.1% | Apr 11, 2006 | Unspecified vulnerability in ecotwo Shopsystem 1.0-192 and earlier allows remote attackers to include arbitrary local fi... |
| CVE-2006-1682 | — | — | 1.7% | Apr 11, 2006 | Cross-site scripting (XSS) vulnerability in webplus.exe in TalentSoft Web+Shop 5.0 and earlier allows remote attackers t... |
| CVE-2006-1680 | — | — | 1.2% | Apr 11, 2006 | Jupiter CMS 1.1.5, when display_errors is enabled, allows remote attackers to obtain the full server path via a direct r... |
| CVE-2006-1679 | — | — | 4.1% | Apr 11, 2006 | Cross-site scripting (XSS) vulnerability in modules/online.php in Jupiter CMS 1.1.5 allows remote attackers to inject ar... |
| CVE-2006-1549 | — | — | 0.9% | Apr 10, 2006 | PHP 4.4.2 and 5.1.2 allows local users to cause a crash (segmentation fault) by defining and executing a recursive funct... |
| CVE-2006-1522 | — | — | 0.4% | Apr 10, 2006 | The sys_add_key function in the keyring code in Linux kernel 2.6.16.1 and 2.6.17-rc1, and possibly earlier versions, all... |
| CVE-2006-1608 | — | — | 1.1% | Apr 10, 2006 | The copy function in file.c in PHP 4.4.2 and 5.1.2 allows local users to bypass safe mode and read arbitrary files via a... |
| CVE-2006-1674 | — | — | 0.9% | Apr 10, 2006 | Cross-site scripting (XSS) vulnerability in search.php in PHPWebGallery 1.4.1 allows remote attackers to inject arbitrar... |
| CVE-2006-1675 | — | — | 1.9% | Apr 10, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in PHPWebGallery 1.4.1 allow remote attackers to inject arbitrary we... |
| CVE-2006-1494 | — | — | 6.2% | Apr 10, 2006 | Directory traversal vulnerability in file.c in PHP 4.4.2 and 5.1.2 allows local users to bypass open_basedir restriction... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now