2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-0051Buffer overflow in playlistimport.cpp in Kaffeine Player 0.4.2 through 0.7.1 allows user-assisted attackers to execute a...
CVE-2006-0401Unspecified vulnerability in Mac OS X before 10.4.6, when running on an Intel-based computer, allows attackers with phys...
CVE-2006-1626Internet Explorer 6 for Windows XP SP2 and earlier allows remote attackers to spoof the address bar and possibly conduct...
CVE-2006-1625Cross-site scripting (XSS) vulnerability in inc/functions_post.php in MyBB (aka MyBulletinBoard) 1.10 allows remote atta...
CVE-2006-1624The default configuration of syslogd in the Linux sysklogd package does not enable the -x (disable name lookups) option,...
CVE-2006-1623Unspecified vulnerability in main.php in an unspecified "file created by Andries Bruinsma," possibly a FleXiBle Developm...
CVE-2006-1622Cross-site scripting (XSS) vulnerability in PHPSelect linksubmit allows remote attackers to inject arbitrary web script ...
CVE-2006-1621Directory traversal vulnerability in admin/folders/saveuploadfiles.asp in Hosting Controller 2002 RC 1 allows remote aut...
CVE-2006-1620admin/accounts/AccountActions.asp in Hosting Controller 2002 RC 1 allows remote attackers to modify passwords of other u...
CVE-2006-1619IBM WebSphere Application Server 4.0.1 through 4.0.3 allows remote attackers to cause a denial of service (application c...
CVE-2006-1618Format string vulnerability in the (1) Con_message and (2) conPrintf functions in con_main.c in Doomsday engine 1.8.6 al...
CVE-2006-1616Multiple SQL injection vulnerabilities in Advanced Poll 2.02 allow remote attackers to execute arbitrary SQL commands vi...
CVE-2006-0559Format string vulnerability in the SMTP server for McAfee WebShield 4.5 MR2 and earlier allows remote attackers to execu...
CVE-2006-1603Cross-site scripting (XSS) vulnerability in profile.php in phpBB 2.0.19 allows remote attackers to inject arbitrary web ...
CVE-2006-1607Unspecified vulnerability in the banner module in Exponent CMS before 0.96.5 RC 1 allows "php injection" via unknown att...
CVE-2006-1606Unspecified vulnerability in the image module in Exponent CMS before 0.96.5 RC 1 allows "directory disclosure" with unkn...
CVE-2006-1609Unspecified vulnerability in Hitachi XFIT/S, XFIT/S/JCA, XFIT/S/ZGN, and XFIT/S ZENGIN TCP/IP Procedure allows remote at...
CVE-2006-1610PHP remote file inclusion vulnerability in lib/armygame.php in SQuery 4.5 and earlier, as used in products such as Auton...
CVE-2006-1611Directory traversal vulnerability in KGB Archiver before 1.1.5.22 allows remote attackers to overwrite arbitrary files w...
CVE-2006-1612Multiple cross-site scripting (XSS) vulnerabilities in visview.php in aWebNews 1.0 allow remote attackers to inject arbi...
CVE-2006-1613Multiple SQL injection vulnerabilities in aWebNews 1.0 allow remote attackers to execute arbitrary SQL commands via the ...
CVE-2006-1601Unspecified vulnerability in SunPlex Manager in Sun Cluster 3.1 4/04 allows local users with solaris.cluster.gui authori...
CVE-2006-1602PHP remote file inclusion vulnerability in includes/functions_common.php in the VWar Account module (vWar_Account) in PH...
CVE-2006-1058MEDIUM5.5BusyBox 1.1.1 does not use a salt when generating passwords, which makes it easier for local users to guess passwords fr...
CVE-2006-1605Unspecified vulnerability in the image module in Exponent CMS before 0.96.5 RC 1 allows remote attackers to execute arbi...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now