2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-6871——Multiple cross-site scripting (XSS) vulnerabilities in eNdonesia 8.4 allow remote attackers to inject arbitrary web scri...
CVE-2006-6872——Directory traversal vulnerability in mod.php in eNdonesia 8.4 allows remote attackers to read arbitrary files via a .. (...
CVE-2006-6873——Multiple SQL injection vulnerabilities in mod.php in eNdonesia 8.4 allow remote attackers to execute arbitrary SQL comma...
CVE-2006-6874——Multiple cross-site scripting (XSS) vulnerabilities in friend.php in eNdonesia 8.4 allow remote attackers to inject arbi...
CVE-2006-6875——Buffer overflow in the validateospheader function in the Open Settlement Protocol (OSP) module in OpenSER 1.1.0 and earl...
CVE-2006-6876——Buffer overflow in the fetchsms function in the SMS handling module (libsms_getsms.c) in OpenSER 1.2.0 and earlier allow...
CVE-2006-4098——Stack-based buffer overflow in the CSRadius service in Cisco Secure Access Control Server (ACS) for Windows before 4.1 a...
CVE-2006-6877——Directory traversal vulnerability in index.php in Matteo Lucarelli 3editor CMS 0.42 and earlier, when register_globals i...
CVE-2006-6878——admin/uploads.php in PHP-Update 2.7 and earlier allows remote attackers to gain privileges by setting the rights[7] para...
CVE-2006-6879——Unrestricted file upload vulnerability in admin/uploads.php in PHP-Update 2.7 and earlier allows remote authenticated us...
CVE-2006-6880——Multiple SQL injection vulnerabilities in code/guestadd.php in PHP-Update 2.7 and earlier allow remote attackers to exec...
CVE-2006-7231——SQL injection vulnerability in display.asp in Civica Software Civica allows remote attackers to execute arbitrary SQL co...
CVE-2006-6881——Buffer overflow in the Get_Wep function in cofvnet.c for ATMEL Linux PCI PCMCIA USB Drivers drivers 3.4.1.1 corruption a...
CVE-2006-6882——Cross-site scripting (XSS) vulnerability in golden book allows remote attackers to inject arbitrary web script or HTML v...
CVE-2006-6883——PHP remote file inclusion vulnerability in php4you.php in PHPIrc_bot 0.2 allows remote attackers to execute arbitrary PH...
CVE-2006-6884——Buffer overflow in the WZFILEVIEW.FileViewCtrl.61 ActiveX control (aka Sky Software "FileView" ActiveX control) for WinZ...
CVE-2006-7232——sql_select.cc in MySQL 5.0.x before 5.0.32 and 5.1.x before 5.1.14 allows remote authenticated users to cause a denial o...
CVE-2006-6885——An ActiveX control in SwDir.dll in Macromedia Shockwave 10 allows remote attackers to cause a denial of service (Interne...
CVE-2006-6886——phpwcms 1.2.5-DEV allows remote attackers to obtain sensitive information via a direct request for (1) files.public-user...
CVE-2006-6887——Unrestricted file upload vulnerability in logahead UNU 1.0 allows remote attackers to upload and execute arbitrary PHP c...
CVE-2006-6888——P-News 1.16 and 1.17 store sensitive information under the web root with insufficient access control, which allows remot...
CVE-2006-7233——Cross-site scripting (XSS) vulnerability in the login form (login.jsp) of the admin console in Openfire (formerly Wildfi...
CVE-2006-6889——FreeStyle Wiki (fswiki) 3.6.2 and earlier stores sensitive information under the web root with insufficient access contr...
CVE-2006-6890——Voodoo chat 1.0RC1b stores sensitive information under the web root with insufficient access control, which allows remot...
CVE-2006-6891——Vz (Adp) Forum 2.0.3 stores sensitive information under the web root with insufficient access control, which allows remo...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now