2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-1481SQL injection vulnerability in search.php in PHP Ticket 0.71 allows remote authenticated users to execute arbitrary SQL ...
CVE-2006-1485gm-upload.cgi in Greymatter 1.3.1 allows remote authenticated users with upload privileges to execute arbitrary programs...
CVE-2006-1484Genius VideoCAM NB Driver does not drop privileges when saving files, which allows local users to gain privileges by ope...
CVE-2006-1474Cross-site scripting (XSS) vulnerability in the "failed" functionality in Raindance Web Conferencing Pro allows remote a...
CVE-2006-1475Windows Firewall in Microsoft Windows XP SP2 does not produce application alerts when an application is executed using t...
CVE-2006-1476Windows Firewall in Microsoft Windows XP SP2 produces incorrect application block alerts when the application filename i...
CVE-2006-1483Blazix Web Server before 1.2.6, when running on Windows, allows remote attackers to obtain the source code of JSP files ...
CVE-2006-1482Cross-site scripting (XSS) vulnerability in index.php in ConfTool 1.1 allows remote attackers to inject arbitrary web sc...
CVE-2006-1477Multiple PHP remote file inclusion vulnerabilities in Turnkey Web Tools PHP Live Helper 1.8 allow remote attackers to in...
CVE-2006-1478Directory traversal vulnerability in (1) initiate.php and (2) possibly other PHP scripts in Turnkey Web Tools PHP Live H...
CVE-2006-1480Directory traversal vulnerability in start.php in WebAlbum 2.02 allows remote attackers to include arbitrary files and e...
CVE-2006-1431Cross-site scripting (XSS) vulnerability in local.cfm in fusionZONE couponZONE 4.2 allows remote attackers to inject arb...
CVE-2006-1432fusionZONE couponZONE 4.2 allows remote attackers to obtain the full path of the web server, and other sensitive informa...
CVE-2006-1430Multiple cross-site scripting (XSS) vulnerabilities in CONTROLzx HMS (formerly DRZES) 3.3.4 and earlier allow remote att...
CVE-2006-1426Multiple SQL injection vulnerabilities in Pixel Motion Blog allow remote attackers to execute arbitrary SQL commands via...
CVE-2006-1427Multiple cross-site scripting (XSS) vulnerabilities in WebAPP 0.9.9.3.2 and earlier allow remote attackers to inject arb...
CVE-2006-1428Multiple cross-site scripting (XSS) vulnerabilities in phpCOIN 1.2.2 and earlier allow remote attackers to inject arbitr...
CVE-2006-1429Cross-site scripting (XSS) vulnerability in accountlogon.cfm in classifiedZONE 1.2 and earlier allows remote attackers t...
CVE-2006-1418Cross-site scripting (XSS) vulnerability in default.asp in Caloris Planitia E-School Management System 1.0 and earlier a...
CVE-2006-1414Multiple cross-site scripting (XSS) vulnerabilities in toast.asp in Toast Forums 1.6 and earlier allow remote attackers ...
CVE-2006-1415Cross-site scripting (XSS) vulnerability in iforget.aspx in dotNetBB 2.42EC SP 3 and earlier allows remote attackers to ...
CVE-2006-1416Cross-site scripting (XSS) vulnerability in afmsearch.aspx in Absolute FAQ Manager .NET 4.0 and earlier allows remote at...
CVE-2006-1417Multiple cross-site scripting (XSS) vulnerabilities in Caloris Planitia Online Quiz System (aka Web Quiz pro), possibly ...
CVE-2006-1419SQL injection vulnerability in the Calendar module in nuked-klan 1.7.5 and earlier allows remote attackers to execute ar...
CVE-2006-1420SQL injection vulnerability in print.php in SaphpLesson 2.0 allows remote attackers to execute arbitrary SQL commands vi...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now