2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-1305Microsoft Outlook 2000, 2002, and 2003 allows user-assisted remote attackers to cause a denial of service (memory exhaus...
CVE-2006-3432Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-0028. Reason: This candidate is a reservation ...
CVE-2006-4220Multiple cross-site scripting (XSS) vulnerabilities in webacc in Novell GroupWise WebAccess before 7 Support Pack 3 Publ...
CVE-2006-4727Cross-site scripting (XSS) vulnerability in emfadmin/statusView.do in Tumbleweed EMF Administration Module 6.2.2 Build 4...
CVE-2006-5266Multiple buffer overflows in Microsoft Dynamics GP (formerly Great Plains) 9.0 and earlier allow remote attackers to exe...
CVE-2006-5574Unspecified vulnerability in the Brazilian Portuguese Grammar Checker in Microsoft Office 2003 and the Multilingual Inte...
CVE-2006-5857Adobe Reader and Acrobat 7.0.8 and earlier allows user-assisted remote attackers to execute code via a crafted PDF file ...
CVE-2006-5974fetchmail 6.3.5 and 6.3.6 before 6.3.6-rc4, when refusing a message delivered via the mda option, allows remote attacker...
CVE-2006-6143The RPC library in Kerberos 5 1.4 through 1.4.4, and 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmi...
CVE-2006-6144The "mechglue" abstraction interface of the GSS-API library for Kerberos 5 1.5 through 1.5.1, as used in Kerberos admini...
CVE-2006-6863CRITICAL9.8PHP remote file inclusion vulnerability in the Enigma2 plugin (Enigma2.php) in Enigma WordPress Bridge allows remote att...
CVE-2006-6826Unspecified vulnerability in the tab editor for Personal .NET Portal before 2.0.0 has unknown impact and attack vectors ...
CVE-2006-6825Calendar MX BASIC 1.0.2 and earlier store sensitive information under the web root with insufficient access control, whi...
CVE-2006-6824Multiple cross-site scripting (XSS) vulnerabilities in Jim Hu and Chad Little PHP iCalendar 2.23 rc1 and earlier allow r...
CVE-2006-6823PHP remote file inclusion vulnerability in plugins/metasearch/plug.inc.php in Yrch! 1.0 allows remote attackers to execu...
CVE-2006-6822myprofile.asp in Enthrallweb eClassifieds does not properly validate the MM_recordId parameter during profile updates, w...
CVE-2006-6821myprofile.asp in Enthrallweb eNews does not properly validate the MM_recordId parameter during profile updates, which al...
CVE-2006-6820myprofile.asp in Enthrallweb eCoupons does not properly validate the MM_recordId parameter during profile updates, which...
CVE-2006-6819AlstraSoft Web Host Directory stores sensitive information under the web root with insufficient access control, which al...
CVE-2006-6818AlstraSoft Web Host Directory allows remote attackers to bypass authentication and change the admin password via a direc...
CVE-2006-6817AlstraSoft Web Host Directory allows remote attackers to obtain sensitive information by requesting any invalid URI, whi...
CVE-2006-6816Multiple SQL injection vulnerabilities in DMXReady Secure Login Manager 1.0 allow remote attackers to execute arbitrary ...
CVE-2006-6815Multiple cross-site scripting (XSS) vulnerabilities in DMXReady Secure Login Manager 1.0 allow remote authenticated admi...
CVE-2006-6814Directory traversal vulnerability in FolderManager/FolderManager.aspx in Hosting Controller 7c allows remote authenticat...
CVE-2006-6813SQL injection vulnerability in detail.asp in Mxmania File Upload Manager (FUM) 1.0.6 and earlier allows remote attackers...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now