2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2006-0909——Invision Power Board (IPB) 2.1.4 and earlier allows remote attackers to view sensitive information via a direct request ...
CVE-2006-0907——SQL injection vulnerability in PHP-Nuke before 7.8 Patched 3.2 allows remote attackers to execute arbitrary SQL commands...
CVE-2006-0908——PHP-Nuke 7.8 Patched 3.2 allows remote attackers to bypass SQL injection protection mechanisms via /%2a (/*) sequences w...
CVE-2006-0906——SQL injection vulnerability in D3Jeeb Pro 3 allows remote attackers to execute arbitrary SQL commands via the catid para...
CVE-2006-0903——MySQL 5.0.18 and earlier allows local users to bypass logging mechanisms via SQL queries that contain the NULL character...
CVE-2006-0736——Stack-based buffer overflow in the pam_micasa PAM authentication module in CASA on Novell Linux Desktop 9 and Open Enter...
CVE-2006-0899——Directory traversal vulnerability in index.php in 4Images 1.7.1 and earlier allows remote attackers to read and include ...
CVE-2006-0900——nfsd in FreeBSD 6.0 kernel allows remote attackers to cause a denial of service via a crafted NFS mount request, as demo...
CVE-2006-0901——Unspecified vulnerability in the hsfs filesystem in Solaris 8, 9, and 10 allows unspecified attackers to cause a denial ...
CVE-2006-0887——Eval injection vulnerability in sessions.inc in PHP Base Library (PHPLib) before 7.4a, when index.php3 from the PHPLib d...
CVE-2006-0885——Cross-site scripting (XSS) vulnerability in show_news.php in CuteNews 1.4.1 allows remote attackers to inject arbitrary ...
CVE-2006-0886——Cross-site scripting (XSS) vulnerability in register.php in DEV web management system 1.5 allows remote attackers to inj...
CVE-2006-0896——Cross-site scripting (XSS) vulnerability in Sources/Register.php in Simple Machine Forum (SMF) 1.0.6 allows remote attac...
CVE-2006-0895——NOCC Webmail 1.0 allows remote attackers to obtain the installation path via a direct request to html/header.php.
CVE-2006-0897——SQL injection vulnerability in VCS Virtual Program Management Intranet (VPMi) Enterprise 3.3 allows remote attackers to ...
CVE-2006-0898——Crypt::CBC Perl module 2.16 and earlier, when running in RandomIV mode, uses an initialization vector (IV) of 8 bytes, w...
CVE-2006-0894——Multiple cross-site scripting (XSS) vulnerabilities in NOCC Webmail 1.0 allow remote attackers to inject arbitrary web s...
CVE-2006-0893——NOCC Webmail 1.0 allows remote attackers to obtain sensitive information via a direct request to (1) the profiles direct...
CVE-2006-0892——NOCC Webmail 1.0 stores e-mail attachments in temporary files with predictable filenames, which makes it easier for remo...
CVE-2006-0891——Multiple directory traversal vulnerabilities in NOCC Webmail 1.0 allow remote attackers to include arbitrary files via ....
CVE-2006-0890——Directory traversal vulnerability in SpeedProject Squeez 5.1, as used in (1) ZipStar 5.1 and (2) SpeedCommander 11.01.44...
CVE-2006-0889——Cross-site scripting (XSS) vulnerability in Calcium 3.10.1 allows remote attackers to inject arbitrary web script or HTM...
CVE-2006-0888——index.php in Invision Power Board (IPB) 2.0.1, with Code Confirmation disabled, allows remote attackers to cause an unsp...
CVE-2006-0884——The WYSIWYG rendering engine ("rich mail" editor) in Mozilla Thunderbird 1.0.7 and earlier allows user-assisted attacker...
CVE-2006-0813——Heap-based buffer overflow in WinACE 2.60 allows user-assisted attackers to execute arbitrary code via a large header bl...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now