2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-1563 | — | — | 1.6% | Mar 31, 2006 | Direct static code injection vulnerability in config.php in vscripts (aka Kuba Kunkiewicz) [V]Book (aka VBook) 2.0 allow... |
| CVE-2006-1562 | — | — | 1.5% | Mar 31, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in vscripts (aka Kuba Kunkiewicz) [V]Book (aka VBook) 2... |
| CVE-2006-1555 | — | — | 1.9% | Mar 31, 2006 | VSNS Lemon 3.2.0 allows remote attackers to bypass authentication and access password-protected articles by setting the ... |
| CVE-2006-1553 | — | — | 1.2% | Mar 31, 2006 | SQL injection vulnerability in functions/final_functions.php in VSNS Lemon 3.2.0, with magic_quotes_gpc disabled, allows... |
| CVE-2006-1550 | — | — | 2.4% | Mar 30, 2006 | Multiple buffer overflows in the xfig import code (xfig-import.c) in Dia 0.87 and later before 0.95-pre6 allow user-assi... |
| CVE-2006-1546 | — | — | 5.8% | Mar 30, 2006 | Apache Software Foundation (ASF) Struts before 1.2.9 allows remote attackers to bypass validation via a request with a '... |
| CVE-2006-1547 | HIGH | 7.5 | 54.6% | Mar 30, 2006 | ActionForm in Apache Software Foundation (ASF) Struts before 1.2.9 with BeanUtils 1.7 allows remote attackers to cause a... |
| CVE-2006-1548 | — | — | 5.0% | Mar 30, 2006 | Cross-site scripting (XSS) vulnerability in (1) LookupDispatchAction and possibly (2) DispatchAction and (3) ActionDispa... |
| CVE-2006-1059 | — | — | 0.5% | Mar 30, 2006 | The winbindd daemon in Samba 3.0.21 to 3.0.21c writes the machine trust account password in cleartext in log files, whic... |
| CVE-2006-1544 | — | — | 1.3% | Mar 30, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in news.php in vscripts (aka Kuba Kunkiewicz) VNews 1.2 allow remote... |
| CVE-2006-1532 | — | — | 1.3% | Mar 30, 2006 | Cross-site scripting (XSS) vulnerability in search.php in PHP Classifieds 6.18, 6.20, and possibly other versions, allow... |
| CVE-2006-1533 | — | — | 1.4% | Mar 30, 2006 | SQL injection vulnerability in newsletter.php in Sourceworkshop newsletter 1.0 allows remote attackers to execute arbitr... |
| CVE-2006-1534 | — | — | 1.8% | Mar 30, 2006 | Multiple SQL injection vulnerabilities in Null news allow remote attackers to execute arbitrary SQL commands via (1) the... |
| CVE-2006-1535 | — | — | 1.4% | Mar 30, 2006 | Cross-site scripting (XSS) vulnerability in login.php in Phoetux.net PhxContacts 0.93.1 beta and earlier allows remote a... |
| CVE-2006-1536 | — | — | 1.0% | Mar 30, 2006 | Multiple SQL injection vulnerabilities in Phoetux.net PhxContacts 0.93.1 beta and earlier allow remote attackers to exec... |
| CVE-2006-1537 | — | — | 2.3% | Mar 30, 2006 | Craig Knudsen WebCalendar 1.1.0-CVS allows remote attackers to obtain sensitive information via a direct request to (1) ... |
| CVE-2006-1538 | — | — | 0.3% | Mar 30, 2006 | The Enova X-Wall ASIC encrypts with a key obtained via Microwire from a serial EEPROM that stores the key in cleartext, ... |
| CVE-2006-1539 | — | — | 2.0% | Mar 30, 2006 | Multiple buffer overflows in the checkscores function in scores.c in tetris-bsd in bsd-games before 2.17-r1 in Gentoo Li... |
| CVE-2006-1540 | — | — | 43.7% | Mar 30, 2006 | MSO.DLL in Microsoft Office 2000, Office XP (2002), and Office 2003 allows user-assisted attackers to cause a denial of ... |
| CVE-2006-1541 | — | — | 2.3% | Mar 30, 2006 | SQL injection vulnerability in Default.asp in EzASPSite 2.0 RC3 and earlier allows remote attackers to execute arbitrary... |
| CVE-2006-1542 | — | — | 0.9% | Mar 30, 2006 | Stack-based buffer overflow in Python 2.4.2 and earlier, running on Linux 2.6.12.5 under gcc 4.0.3 with libc 2.3.5, allo... |
| CVE-2006-1543 | — | — | 3.5% | Mar 30, 2006 | Multiple SQL injection vulnerabilities in vscripts (aka Kuba Kunkiewicz) VNews 1.2 allow remote attackers to execute arb... |
| CVE-2006-1545 | — | — | 3.4% | Mar 30, 2006 | Direct static code injection vulnerability in admin/config.php in vscripts (aka Kuba Kunkiewicz) VNews 1.2 allows remote... |
| CVE-2006-1507 | — | — | 1.4% | Mar 30, 2006 | Cross-site scripting (XSS) vulnerability in PHPKIT 1.6.03 allows remote attackers to inject arbitrary web script or HTML... |
| CVE-2006-1508 | — | — | 2.6% | Mar 30, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in MH Software Connect Daily Web Calendar Software 3.2.9 and earlier... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now