2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-1212Unspecified vulnerability in index.php in Core CoreNews 2.0.1 allows remote attackers to execute arbitrary commands via ...
CVE-2006-1213JiRo's Banner System Experience and Professional 1.0 and earlier allows remote attackers to bypass access restrictions a...
CVE-2006-1214UnrealIRCd 3.2.3 allows remote attackers to cause an unspecified denial of service by causing a linked server to send ma...
CVE-2006-1195The enet_protocol_handle_send_fragment function in protocol.c for ENet library CVS version Jul 2005 and earlier, as used...
CVE-2006-1197SafeDisc installs the driver service for the secdrv.sys driver with insecure permissions, which allows local users to ga...
CVE-2006-1196Multiple cross-site scripting (XSS) vulnerabilities in QwikiWiki 1.5 allow remote attackers to inject arbitrary web scri...
CVE-2006-1194Integer signedness error in the enet_protocol_handle_incoming_commands function in protocol.c for ENet library CVS versi...
CVE-2006-0049gpg in GnuPG before 1.4.2.2 does not properly verify non-detached signatures, which allows attackers to inject unsigned ...
CVE-2006-0820Cross-site scripting (XSS) vulnerability in Dwarf HTTP Server 1.3.2 allows remote attackers to inject arbitrary web scri...
CVE-2006-0819Dwarf HTTP Server 1.3.2 allows remote attackers to obtain the source code of JSP files via (1) dot, (2) space, (3) slash...
CVE-2006-0950unalz 0.53 allows user-assisted attackers to overwrite arbitrary files via an ALZ archive with ".." (dot dot) sequences ...
CVE-2006-1183The Ubuntu 5.10 installer does not properly clear passwords from the installer log file (questions.dat), and leaves the ...
CVE-2006-1163Cross-site scripting (XSS) vulnerability in Nodez 4.6.1.1 allows remote attackers to inject arbitrary web script or HTML...
CVE-2006-1165Cross-site scripting (XSS) vulnerability in the mediamanager module in DokuWiki before 2006-03-05 allows remote attacker...
CVE-2006-1164Nodez 4.6.1.1 and earlier stores sensitive data in the list.gtdat file under the web document root with insufficient acc...
CVE-2006-1162Directory traversal vulnerability in Nodez 4.6.1.1 and earlier allows remote attackers to read or include arbitrary PHP ...
CVE-2006-1161Absolute path traversal vulnerability in Easy File Sharing (EFS) Web Server 3.2 allows remote registered users to execut...
CVE-2006-1160Cross-site scripting (XSS) vulnerability in Easy File Sharing (EFS) Web Server 3.2 allows remote attackers to inject arb...
CVE-2006-1159Format string vulnerability in Easy File Sharing (EFS) Web Server 3.2 allows remote attackers to cause a denial of servi...
CVE-2006-0557sys_mbind in mempolicy.c in Linux kernel 2.6.16 and earlier does not sanity check the maxnod variable before making cert...
CVE-2006-1166Monotone 0.25 and earlier, when a user creates a file in a directory called "mt", and when checking out that file on a c...
CVE-2006-1158Kerio MailServer before 6.1.3 Patch 1 allows remote attackers to cause a denial of service (application crash) via a cra...
CVE-2006-1157Cross-site scripting (XSS) vulnerability in Vz Scripts ADP Forum 2.0.3 and earlier allows remote attackers to inject arb...
CVE-2006-1156SQL injection vulnerability in manas tungare Site Membership Script before 8 March, 2006 allows remote attackers to exec...
CVE-2006-1155Cross-site scripting (XSS) vulnerability in manas tungare Site Membership Script before 8 March, 2006 allows remote atta...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now