2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-5857——Adobe Reader and Acrobat 7.0.8 and earlier allows user-assisted remote attackers to execute code via a crafted PDF file ...
CVE-2006-5974——fetchmail 6.3.5 and 6.3.6 before 6.3.6-rc4, when refusing a message delivered via the mda option, allows remote attacker...
CVE-2006-6143——The RPC library in Kerberos 5 1.4 through 1.4.4, and 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmi...
CVE-2006-6144——The "mechglue" abstraction interface of the GSS-API library for Kerberos 5 1.5 through 1.5.1, as used in Kerberos admini...
CVE-2006-1305——Microsoft Outlook 2000, 2002, and 2003 allows user-assisted remote attackers to cause a denial of service (memory exhaus...
CVE-2006-3432——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-0028. Reason: This candidate is a reservation ...
CVE-2006-4220——Multiple cross-site scripting (XSS) vulnerabilities in webacc in Novell GroupWise WebAccess before 7 Support Pack 3 Publ...
CVE-2006-4727——Cross-site scripting (XSS) vulnerability in emfadmin/statusView.do in Tumbleweed EMF Administration Module 6.2.2 Build 4...
CVE-2006-5266——Multiple buffer overflows in Microsoft Dynamics GP (formerly Great Plains) 9.0 and earlier allow remote attackers to exe...
CVE-2006-6101——Integer overflow in the ProcRenderAddGlyphs function in the Render extension for X.Org 6.8.2, 6.9.0, 7.0, and 7.1, and X...
CVE-2006-5574——Unspecified vulnerability in the Brazilian Portuguese Grammar Checker in Microsoft Office 2003 and the Multilingual Inte...
CVE-2006-6825——Calendar MX BASIC 1.0.2 and earlier store sensitive information under the web root with insufficient access control, whi...
CVE-2006-6826——Unspecified vulnerability in the tab editor for Personal .NET Portal before 2.0.0 has unknown impact and attack vectors ...
CVE-2006-6810——Unspecified vulnerability in the clear_user_list function in src/main.c in DB Hub 0.3 allows remote attackers to cause a...
CVE-2006-6809——Multiple PHP remote file inclusion vulnerabilities in process.php in Vladimir Menshakov buratinable templator (aka bubla...
CVE-2006-6812——Multiple PHP remote file inclusion vulnerabilities in myPHPCalendar 10.1 allow remote attackers to execute arbitrary PHP...
CVE-2006-6813——SQL injection vulnerability in detail.asp in Mxmania File Upload Manager (FUM) 1.0.6 and earlier allows remote attackers...
CVE-2006-6814——Directory traversal vulnerability in FolderManager/FolderManager.aspx in Hosting Controller 7c allows remote authenticat...
CVE-2006-6815——Multiple cross-site scripting (XSS) vulnerabilities in DMXReady Secure Login Manager 1.0 allow remote authenticated admi...
CVE-2006-6816——Multiple SQL injection vulnerabilities in DMXReady Secure Login Manager 1.0 allow remote attackers to execute arbitrary ...
CVE-2006-6817——AlstraSoft Web Host Directory allows remote attackers to obtain sensitive information by requesting any invalid URI, whi...
CVE-2006-6818——AlstraSoft Web Host Directory allows remote attackers to bypass authentication and change the admin password via a direc...
CVE-2006-6819——AlstraSoft Web Host Directory stores sensitive information under the web root with insufficient access control, which al...
CVE-2006-6820——myprofile.asp in Enthrallweb eCoupons does not properly validate the MM_recordId parameter during profile updates, which...
CVE-2006-6821——myprofile.asp in Enthrallweb eNews does not properly validate the MM_recordId parameter during profile updates, which al...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now