2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-6829Efkan Forum 1.0 and earlier store sensitive information under the web root with insufficient access control, which allow...
CVE-2006-6828Multiple SQL injection vulnerabilities in Efkan Forum 1.0 and earlier allow remote attackers to execute arbitrary SQL co...
CVE-2006-6827Flash8b.ocx in Macromedia Flash 8 allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a...
CVE-2006-6488Stack-based buffer overflow in the DoModal function in the Dialog Wrapper Module ActiveX control (DlgWrapper.dll) before...
CVE-2006-6336Heap-based buffer overflow in the Mail Management Server (MAILMA.exe) in Eudora WorldMail 3.1.x allows remote attackers ...
CVE-2006-6103Integer overflow in the ProcDbeSwapBuffers function in the DBE extension for X.Org 6.8.2, 6.9.0, 7.0, and 7.1, and XFree...
CVE-2006-6102Integer overflow in the ProcDbeGetVisualInfo function in the DBE extension for X.Org 6.8.2, 6.9.0, 7.0, and 7.1, and XFr...
CVE-2006-6101Integer overflow in the ProcRenderAddGlyphs function in the Render extension for X.Org 6.8.2, 6.9.0, 7.0, and 7.1, and X...
CVE-2006-5870Multiple integer overflows in OpenOffice.org (OOo) 2.0.4 and earlier, and possibly other versions before 2.1.0; and Star...
CVE-2006-5867fetchmail before 6.3.6-rc4 does not properly enforce TLS and may transmit cleartext passwords over unsecured links if ce...
CVE-2006-5858Adobe ColdFusion MX 7 through 7.0.2, and JRun 4, when run on Microsoft IIS, allows remote attackers to read arbitrary fi...
CVE-2006-5755Linux kernel before 2.6.18, when running on x86_64 systems, does not properly save or restore EFLAGS during a context sw...
CVE-2006-5749The isdn_ppp_ccp_reset_alloc_state function in drivers/isdn/isdn_ppp.c in the Linux 2.4 kernel before 2.4.34-rc4 does no...
CVE-2006-5265Unspecified vulnerability in Microsoft Dynamics GP (formerly Great Plains) 9.0 and earlier allows remote attackers to ca...
CVE-2006-4695Unspecified vulnerability in certain COM objects in Microsoft Office Web Components 2000 allows user-assisted remote att...
CVE-2006-4582Cross-site request forgery (CSRF) vulnerability in The Address Book 1.04e allows remote attackers to perform unauthorize...
CVE-2006-4581Unrestricted file upload vulnerability in The Address Book 1.04e validates the Content-Type header but not the file exte...
CVE-2006-4580register.php in The Address Book 1.04e allows remote attackers to bypass the "Allow User Self-Registration" setting and ...
CVE-2006-4579Directory traversal vulnerability in users.php in The Address Book 1.04e allows remote attackers to include arbitrary fi...
CVE-2006-4578export.php in The Address Book 1.04e writes username and password hash information into a publicly accessible file when ...
CVE-2006-4577Multiple cross-site scripting (XSS) vulnerabilities in The Address Book 1.04e allow remote attackers to inject arbitrary...
CVE-2006-4576Cross-site scripting (XSS) vulnerability in The Address Book 1.04e allows remote attackers to inject arbitrary web scrip...
CVE-2006-4575Multiple SQL injection vulnerabilities in The Address Book 1.04e allow remote attackers to execute arbitrary SQL command...
CVE-2006-4098Stack-based buffer overflow in the CSRadius service in Cisco Secure Access Control Server (ACS) for Windows before 4.1 a...
CVE-2006-4097Multiple unspecified vulnerabilities in the CSRadius service in Cisco Secure Access Control Server (ACS) for Windows bef...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now