2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-0397Unspecified vulnerability in Safari, LaunchServices, and/or CoreTypes in Apple Mac OS X 10.4 up to 10.4.5 allows attacke...
CVE-2006-0396Buffer overflow in Mail in Apple Mac OS X 10.4 up to 10.4.5, when patched with Security Update 2006-001, allows remote a...
CVE-2006-1224Directory traversal vulnerability in dwnld.php in GuppY 4.5.11 allows remote attackers to overwrite arbitrary files via ...
CVE-2006-0400CoreTypes in Apple Mac OS X 10.4 up to 10.4.5 allows remote attackers to bypass the same-origin policy and execute Javas...
CVE-2006-1219Directory traversal vulnerability in Gallery 2.0.3 and earlier, and 2.1 before RC-2a, allows remote attackers to include...
CVE-2006-0457Race condition in the (1) add_key, (2) request_key, and (3) keyctl functions in Linux kernel 2.6.x allows local users to...
CVE-2006-1220Integer overflow in the mach_msg_send function in the kernel for Mac OS X might allow local users to execute arbitrary c...
CVE-2006-1215Cross-site scripting (XSS) vulnerability in misc.php in Woltlab Burning Board (wBB) 2.3.4 allows remote attackers to inj...
CVE-2006-1216Cross-site scripting (XSS) vulnerability in bigshow.php in Runcms 1.x allows remote attackers to inject arbitrary web sc...
CVE-2006-1217SQL injection vulnerability in DSPoll 1.1 allows remote attackers to execute arbitrary SQL commands via the pollid param...
CVE-2006-1218Unspecified vulnerability in the HTTP proxy in Novell BorderManager 3.8 and earlier allows remote attackers to cause a d...
CVE-2006-1210The web interface for IBM Tivoli Micromuse Netcool/NeuSecure 3.0.236 includes the MySQL database username and password i...
CVE-2006-1198Comvigo IM Lock 2006 uses a simple substitution cipher to encrypt a password stored in the msnvs\prc registry value, for...
CVE-2006-1199Cross-site scripting (XSS) vulnerability in iframe.php in daverave Link Bank allows remote attackers to inject arbitrary...
CVE-2006-1200Direct static code injection vulnerability in add_link.txt in daverave Link Bank allows remote attackers to execute arbi...
CVE-2006-1201Directory traversal vulnerability in resetpw.php in eschew.net phpBannerExchange 2.0 and earlier, and other versions bef...
CVE-2006-1202Multiple cross-site scripting (XSS) vulnerabilities in textfileBB 1.0 and earlier allow remote attackers to inject arbit...
CVE-2006-1203PHP remote file include vulnerability in common.php in txtForum 1.0.4-dev and earlier allows remote attackers to include...
CVE-2006-1204Multiple cross-site scripting (XSS) vulnerabilities in txtForum 1.0.4-dev and earlier allow remote attackers to inject a...
CVE-2006-1205Multiple cross-site scripting (XSS) vulnerabilities in myWebland myBloggie 2.1.3 beta and earlier allow remote attackers...
CVE-2006-1206Matt Johnston Dropbear SSH server 0.47 and earlier, as used in embedded Linux devices and on general-purpose operating s...
CVE-2006-1207PHP Upload Center stores password hashes under the web root with insufficient access control, which allows remote attack...
CVE-2006-1208Sergey Korostel PHP Upload Center allows remote attackers to execute arbitrary PHP code by uploading a file whose name e...
CVE-2006-1209PHP Advanced Transfer Manager 1.00 through 1.30 stores sensitive information, including password hashes, under the web r...
CVE-2006-1211IBM Tivoli Micromuse Netcool/NeuSecure 3.0.236 configures a MySQL database to allow connections from any source IP addre...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now