2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-1655Multiple buffer overflows in mpg123 0.59r allow user-assisted attackers to trigger a segmentation fault and possibly hav...
CVE-2006-1636PHP remote file inclusion vulnerability in get_header.php in VWar 1.5.0 R12 and earlier allows remote attackers to execu...
CVE-2006-1637Multiple cross-site scripting (XSS) vulnerabilities in aWebBB 1.2 allow remote attackers to inject arbitrary web script ...
CVE-2006-1638Multiple SQL injection vulnerabilities in aWebBB 1.2 allow remote attackers to execute arbitrary SQL commands via the (1...
CVE-2006-1639SQL injection vulnerability in index.php in wpBlog 0.4 allows remote attackers to execute arbitrary SQL commands via the...
CVE-2006-1640Cross-site scripting (XSS) vulnerability in news.php in CzarNews 1.14 allows remote attackers to inject arbitrary web sc...
CVE-2006-1641Multiple SQL injection vulnerabilities in CzarNews 1.14 allow remote attackers to execute arbitrary SQL commands via the...
CVE-2006-1646The Internet Key Exchange version 1 (IKEv1) implementation (isakmp_agg.c) in the Shoichi Sakane KAME Project racoon, as ...
CVE-2006-1650Firefox 1.5.0.1 allows remote attackers to spoof the address bar and possibly conduct phishing attacks by re-opening the...
CVE-2006-1642Cross-site scripting (XSS) vulnerability in Interact 2.1.1 allows remote attackers to inject arbitrary web script or HTM...
CVE-2006-1652Multiple buffer overflows in (a) UltraVNC (aka Ultr@VNC) 1.0.1 and earlier and (b) tabbed_viewer 1.29 (1) allow user-ass...
CVE-2006-1653PHP remote file inclusion vulnerability in loadkernel.php in AngelineCMS 0.8.1 allows remote attackers to execute arbitr...
CVE-2006-1654Directory traversal vulnerability in the HP Color LaserJet 2500 Toolbox and Color LaserJet 4600 Toolbox on Microsoft Win...
CVE-2006-1648SMART SynchronEyes Student and Teacher 6.0, and possibly earlier versions, allows remote attackers to cause a denial of ...
CVE-2006-1649The "restore to" selection in the "quarantine a file" capability of ESET NOD32 before 2.51.26 allows a restore to any di...
CVE-2006-1647An unspecified "logical programming mistake" in SMART SynchronEyes Student and Teacher 6.0, and possibly earlier version...
CVE-2006-1644login.php in Interact 2.1.1 generates different responses depending on whether or not a username is valid, which allows ...
CVE-2006-1643SQL injection vulnerability in login.php in Interact 2.1.1 allows remote attackers to execute arbitrary SQL commands via...
CVE-2006-1634Cross-site scripting (XSS) vulnerability in index.php in LucidCMS 2.0.0 RC4 allows remote attackers to inject arbitrary ...
CVE-2006-1656vserver in util-vserver 0.30.209 executes a command as root when the suexec userid parameter is invalid and non-numeric,...
CVE-2006-1645Cross-site scripting (XSS) vulnerability in Anton Vlasov and Rostislav Gaitkuloff ReloadCMS 1.2.5 and earlier allows rem...
CVE-2006-1651Microsoft ISA Server 2004 allows remote attackers to bypass certain filtering rules, including ones for (1) ICMP and (2)...
CVE-2006-1631Unspecified vulnerability in the HTTP compression functionality in Cisco CSS 11500 Series Content Services switches allo...
CVE-2006-1055The fill_write_buffer function in sysfs/file.c in Linux kernel 2.6.12 up to versions before 2.6.17-rc1 does not zero ter...
CVE-2006-1617Multiple cross-site scripting (XSS) vulnerabilities in Advanced Poll 2.02 allow remote attackers to inject arbitrary web...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now