2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-6871 | — | — | 1.9% | Dec 31, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in eNdonesia 8.4 allow remote attackers to inject arbitrary web scri... |
| CVE-2006-6872 | — | — | 3.0% | Dec 31, 2006 | Directory traversal vulnerability in mod.php in eNdonesia 8.4 allows remote attackers to read arbitrary files via a .. (... |
| CVE-2006-6873 | — | — | 1.2% | Dec 31, 2006 | Multiple SQL injection vulnerabilities in mod.php in eNdonesia 8.4 allow remote attackers to execute arbitrary SQL comma... |
| CVE-2006-6874 | — | — | 1.0% | Dec 31, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in friend.php in eNdonesia 8.4 allow remote attackers to inject arbi... |
| CVE-2006-6875 | — | — | 2.9% | Dec 31, 2006 | Buffer overflow in the validateospheader function in the Open Settlement Protocol (OSP) module in OpenSER 1.1.0 and earl... |
| CVE-2006-6876 | — | — | 1.6% | Dec 31, 2006 | Buffer overflow in the fetchsms function in the SMS handling module (libsms_getsms.c) in OpenSER 1.2.0 and earlier allow... |
| CVE-2006-4098 | — | — | 12.7% | Dec 31, 2006 | Stack-based buffer overflow in the CSRadius service in Cisco Secure Access Control Server (ACS) for Windows before 4.1 a... |
| CVE-2006-6877 | — | — | 2.1% | Dec 31, 2006 | Directory traversal vulnerability in index.php in Matteo Lucarelli 3editor CMS 0.42 and earlier, when register_globals i... |
| CVE-2006-6878 | — | — | 2.3% | Dec 31, 2006 | admin/uploads.php in PHP-Update 2.7 and earlier allows remote attackers to gain privileges by setting the rights[7] para... |
| CVE-2006-6879 | — | — | 1.8% | Dec 31, 2006 | Unrestricted file upload vulnerability in admin/uploads.php in PHP-Update 2.7 and earlier allows remote authenticated us... |
| CVE-2006-6880 | — | — | 1.0% | Dec 31, 2006 | Multiple SQL injection vulnerabilities in code/guestadd.php in PHP-Update 2.7 and earlier allow remote attackers to exec... |
| CVE-2006-7231 | — | — | 0.9% | Dec 31, 2006 | SQL injection vulnerability in display.asp in Civica Software Civica allows remote attackers to execute arbitrary SQL co... |
| CVE-2006-6881 | — | — | 2.1% | Dec 31, 2006 | Buffer overflow in the Get_Wep function in cofvnet.c for ATMEL Linux PCI PCMCIA USB Drivers drivers 3.4.1.1 corruption a... |
| CVE-2006-6882 | — | — | 1.1% | Dec 31, 2006 | Cross-site scripting (XSS) vulnerability in golden book allows remote attackers to inject arbitrary web script or HTML v... |
| CVE-2006-6883 | — | — | 1.5% | Dec 31, 2006 | PHP remote file inclusion vulnerability in php4you.php in PHPIrc_bot 0.2 allows remote attackers to execute arbitrary PH... |
| CVE-2006-6884 | — | — | 4.5% | Dec 31, 2006 | Buffer overflow in the WZFILEVIEW.FileViewCtrl.61 ActiveX control (aka Sky Software "FileView" ActiveX control) for WinZ... |
| CVE-2006-7232 | — | — | 2.0% | Dec 31, 2006 | sql_select.cc in MySQL 5.0.x before 5.0.32 and 5.1.x before 5.1.14 allows remote authenticated users to cause a denial o... |
| CVE-2006-6885 | — | — | 7.2% | Dec 31, 2006 | An ActiveX control in SwDir.dll in Macromedia Shockwave 10 allows remote attackers to cause a denial of service (Interne... |
| CVE-2006-6886 | — | — | 1.6% | Dec 31, 2006 | phpwcms 1.2.5-DEV allows remote attackers to obtain sensitive information via a direct request for (1) files.public-user... |
| CVE-2006-6887 | — | — | 1.6% | Dec 31, 2006 | Unrestricted file upload vulnerability in logahead UNU 1.0 allows remote attackers to upload and execute arbitrary PHP c... |
| CVE-2006-6888 | — | — | 2.2% | Dec 31, 2006 | P-News 1.16 and 1.17 store sensitive information under the web root with insufficient access control, which allows remot... |
| CVE-2006-7233 | — | — | 1.2% | Dec 31, 2006 | Cross-site scripting (XSS) vulnerability in the login form (login.jsp) of the admin console in Openfire (formerly Wildfi... |
| CVE-2006-6889 | — | — | 2.1% | Dec 31, 2006 | FreeStyle Wiki (fswiki) 3.6.2 and earlier stores sensitive information under the web root with insufficient access contr... |
| CVE-2006-6890 | — | — | 2.1% | Dec 31, 2006 | Voodoo chat 1.0RC1b stores sensitive information under the web root with insufficient access control, which allows remot... |
| CVE-2006-6891 | — | — | 2.2% | Dec 31, 2006 | Vz (Adp) Forum 2.0.3 stores sensitive information under the web root with insufficient access control, which allows remo... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now