2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-1007Multiple SQL injection vulnerabilities in N8cms 1.1 and 1.2 allow remote attackers to execute arbitrary SQL commands via...
CVE-2006-1005agencyprofile.asp in Parodia 6.2 and earlier might allow remote attackers to obtain sensitive information by triggering ...
CVE-2006-1004Cross-site scripting (XSS) vulnerability in agencyprofile.asp in Parodia 6.2 and earlier allows remote attackers to inje...
CVE-2006-1003The backup configuration option in NETGEAR WGT624 Wireless Firewall Router stores sensitive information in cleartext, wh...
CVE-2006-1002NETGEAR WGT624 Wireless DSL router has a default account of super_username "Gearguy" and super_passwd "Geardog", which a...
CVE-2006-1009M4 Project enigma-suite before 0.73.3 (Windows) has a default password of "nominal" for the "enigma-client" account, whi...
CVE-2006-1006Multiple SQL injection vulnerabilities in sendcard.php in sendcard before 3.3.0 allow remote attackers to execute arbitr...
CVE-2006-0390Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4504. Reason: This candidate is a duplicate of...
CVE-2006-0387Stack-based buffer overflow in Safari in Mac OS X 10.4.5 and earlier, and 10.3.9 and earlier, allows remote attackers to...
CVE-2006-1008Multiple cross-site scripting (XSS) vulnerabilities in N8cms 1.1 and 1.2 allow remote attackers to inject arbitrary web ...
CVE-2006-0389Cross-site scripting (XSS) vulnerability in Syndication (Safari RSS) in Mac OS X 10.4 through 10.4.5 allows remote attac...
CVE-2006-0386FileVault in Mac OS X 10.4.5 and earlier does not properly mount user directories when creating a FileVault image, which...
CVE-2006-0391Directory traversal vulnerability in the BOM framework in Mac OS X 10.x before 10.3.9 and 10.4 before 10.4.5 allows user...
CVE-2006-0388Safari in Mac OS X 10.3 before 10.3.9 and 10.4 before 10.4.5 allows remote attackers to redirect users to local files an...
CVE-2006-0995EMC Dantz Retrospect 7 backup client 7.0.107, and other versions before 7.0.109, and 6.5 before 6.5.138 allows remote at...
CVE-2006-0973SQL injection vulnerability in topics.php in Appalachian State University phpWebSite 0.10.2 and earlier allows remote at...
CVE-2006-0984Cross-site scripting (XSS) vulnerability in inc_header.php in EJ3 TOPo 2.2.178 allows remote attackers to inject arbitra...
CVE-2006-0983Cross-site scripting (XSS) vulnerability in index.php in QwikiWiki 1.4 allows remote attackers to inject arbitrary web s...
CVE-2006-0980Multiple cross-site scripting (XSS) vulnerabilities in Jay Eckles CGI Calendar 2.7 allow remote attackers to inject arbi...
CVE-2006-0969PHP remote file inclusion vulnerability in index.php in Top sites de PixelArtKingdom allows remote attackers to include ...
CVE-2006-0970PHP remote file inclusion vulnerability in index.php in one or more ActiveCampaign products, possibly SupportTrio, allow...
CVE-2006-0971Directory traversal vulnerability in Lionel Reyero DirectContact 0.3b allows remote attackers to read arbitrary files vi...
CVE-2006-0972SQL injection vulnerability in news.php in Tony Baird Fantastic News 2.1.1 allows remote attackers to execute arbitrary ...
CVE-2006-0985Multiple cross-site scripting (XSS) vulnerabilities in the "post comment" functionality of WordPress 2.0.1 and earlier a...
CVE-2006-0974Cross-site scripting (XSS) vulnerability in failure.asp in Battleaxe bttlxeForum 2.0 allows remote attackers to inject a...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now