2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-6829 | — | — | 1.3% | Dec 31, 2006 | Efkan Forum 1.0 and earlier store sensitive information under the web root with insufficient access control, which allow... |
| CVE-2006-6828 | — | — | 1.0% | Dec 31, 2006 | Multiple SQL injection vulnerabilities in Efkan Forum 1.0 and earlier allow remote attackers to execute arbitrary SQL co... |
| CVE-2006-6827 | — | — | 3.3% | Dec 31, 2006 | Flash8b.ocx in Macromedia Flash 8 allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a... |
| CVE-2006-6488 | — | — | 7.8% | Dec 31, 2006 | Stack-based buffer overflow in the DoModal function in the Dialog Wrapper Module ActiveX control (DlgWrapper.dll) before... |
| CVE-2006-6336 | — | — | 7.1% | Dec 31, 2006 | Heap-based buffer overflow in the Mail Management Server (MAILMA.exe) in Eudora WorldMail 3.1.x allows remote attackers ... |
| CVE-2006-6103 | — | — | 0.4% | Dec 31, 2006 | Integer overflow in the ProcDbeSwapBuffers function in the DBE extension for X.Org 6.8.2, 6.9.0, 7.0, and 7.1, and XFree... |
| CVE-2006-6102 | — | — | 3.4% | Dec 31, 2006 | Integer overflow in the ProcDbeGetVisualInfo function in the DBE extension for X.Org 6.8.2, 6.9.0, 7.0, and 7.1, and XFr... |
| CVE-2006-6101 | — | — | 0.4% | Dec 31, 2006 | Integer overflow in the ProcRenderAddGlyphs function in the Render extension for X.Org 6.8.2, 6.9.0, 7.0, and 7.1, and X... |
| CVE-2006-5870 | — | — | 8.2% | Dec 31, 2006 | Multiple integer overflows in OpenOffice.org (OOo) 2.0.4 and earlier, and possibly other versions before 2.1.0; and Star... |
| CVE-2006-5867 | — | — | 4.3% | Dec 31, 2006 | fetchmail before 6.3.6-rc4 does not properly enforce TLS and may transmit cleartext passwords over unsecured links if ce... |
| CVE-2006-5858 | — | — | 12.9% | Dec 31, 2006 | Adobe ColdFusion MX 7 through 7.0.2, and JRun 4, when run on Microsoft IIS, allows remote attackers to read arbitrary fi... |
| CVE-2006-5755 | — | — | 0.4% | Dec 31, 2006 | Linux kernel before 2.6.18, when running on x86_64 systems, does not properly save or restore EFLAGS during a context sw... |
| CVE-2006-5749 | — | — | 0.4% | Dec 31, 2006 | The isdn_ppp_ccp_reset_alloc_state function in drivers/isdn/isdn_ppp.c in the Linux 2.4 kernel before 2.4.34-rc4 does no... |
| CVE-2006-5265 | — | — | 10.4% | Dec 31, 2006 | Unspecified vulnerability in Microsoft Dynamics GP (formerly Great Plains) 9.0 and earlier allows remote attackers to ca... |
| CVE-2006-4695 | — | — | 40.1% | Dec 31, 2006 | Unspecified vulnerability in certain COM objects in Microsoft Office Web Components 2000 allows user-assisted remote att... |
| CVE-2006-4582 | — | — | 1.2% | Dec 31, 2006 | Cross-site request forgery (CSRF) vulnerability in The Address Book 1.04e allows remote attackers to perform unauthorize... |
| CVE-2006-4581 | — | — | 1.2% | Dec 31, 2006 | Unrestricted file upload vulnerability in The Address Book 1.04e validates the Content-Type header but not the file exte... |
| CVE-2006-4580 | — | — | 1.4% | Dec 31, 2006 | register.php in The Address Book 1.04e allows remote attackers to bypass the "Allow User Self-Registration" setting and ... |
| CVE-2006-4579 | — | — | 1.7% | Dec 31, 2006 | Directory traversal vulnerability in users.php in The Address Book 1.04e allows remote attackers to include arbitrary fi... |
| CVE-2006-4578 | — | — | 1.4% | Dec 31, 2006 | export.php in The Address Book 1.04e writes username and password hash information into a publicly accessible file when ... |
| CVE-2006-4577 | — | — | 1.6% | Dec 31, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in The Address Book 1.04e allow remote attackers to inject arbitrary... |
| CVE-2006-4576 | — | — | 1.3% | Dec 31, 2006 | Cross-site scripting (XSS) vulnerability in The Address Book 1.04e allows remote attackers to inject arbitrary web scrip... |
| CVE-2006-4575 | — | — | 2.1% | Dec 31, 2006 | Multiple SQL injection vulnerabilities in The Address Book 1.04e allow remote attackers to execute arbitrary SQL command... |
| CVE-2006-4098 | — | — | 12.7% | Dec 31, 2006 | Stack-based buffer overflow in the CSRadius service in Cisco Secure Access Control Server (ACS) for Windows before 4.1 a... |
| CVE-2006-4097 | — | — | 4.1% | Dec 31, 2006 | Multiple unspecified vulnerabilities in the CSRadius service in Cisco Secure Access Control Server (ACS) for Windows bef... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now