2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-0871 | — | — | 1.7% | Feb 24, 2006 | Directory traversal vulnerability in the _setTemplate function in Mambo 4.5.3, 4.5.3h, and possibly earlier versions all... |
| CVE-2006-0377 | — | — | 2.3% | Feb 24, 2006 | CRLF injection vulnerability in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary IMAP commands vi... |
| CVE-2006-0188 | — | — | 2.0% | Feb 24, 2006 | webmail.php in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary web pages into the right frame vi... |
| CVE-2006-0300 | — | — | 5.1% | Feb 24, 2006 | Buffer overflow in tar 1.14 through 1.15.90 allows user-assisted attackers to cause a denial of service (application cra... |
| CVE-2006-0195 | — | — | 2.0% | Feb 24, 2006 | Interpretation conflict in the MagicHTML filter in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to conduct cross-... |
| CVE-2006-0863 | — | — | 1.6% | Feb 23, 2006 | InfoVista PortalSE 2.0 Build 20087 on Solaris 8 allows remote attackers to obtain sensitive information by specifying a ... |
| CVE-2006-0870 | — | — | 2.1% | Feb 23, 2006 | SQL injection vulnerability in pages.asp in Mini-Nuke CMS System 1.8.2 and earlier allows remote attackers to execute ar... |
| CVE-2006-0869 | — | — | 3.9% | Feb 23, 2006 | Directory traversal vulnerability in the "remember me" feature in liveuser.php in PHP Extension and Application Reposito... |
| CVE-2006-0868 | — | — | 2.4% | Feb 23, 2006 | Multiple unspecified injection vulnerabilities in unspecified Auth Container back ends for PEAR::Auth before 1.2.4, and ... |
| CVE-2006-0867 | — | — | 1.3% | Feb 23, 2006 | Buffer overflow in certain versions of South River (aka SRT) WebDrive, possibly version 6.08 build 1131 and version 8, a... |
| CVE-2006-0866 | — | — | 1.4% | Feb 23, 2006 | PunBB 1.2.10 and earlier allows remote attackers to conduct brute force guessing attacks for an account's password, whic... |
| CVE-2006-0865 | — | — | 3.0% | Feb 23, 2006 | PunBB 1.2.10 and earlier allows remote attackers to cause a denial of service (resource consumption) by registering many... |
| CVE-2006-0860 | — | — | 1.4% | Feb 23, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in Michael Salzer Guestbox 0.6, and other versions before 0.8, allow... |
| CVE-2006-0861 | — | — | 1.6% | Feb 23, 2006 | Michael Salzer Guestbox 0.6, and other versions before 0.8, allows remote attackers to obtain the source IP addresses of... |
| CVE-2006-0862 | — | — | 1.6% | Feb 23, 2006 | Unspecified vulnerability in InfoVista PortalSE 2.0 Build 20087 on Solaris 8 without the IV00038969 hotfix allows remote... |
| CVE-2006-0864 | — | — | 2.8% | Feb 23, 2006 | filescan in Global Hauri ViRobot 2.0 20050817 does not verify the Cookie HTTP header, which allows remote attackers to g... |
| CVE-2006-0856 | — | — | 1.5% | Feb 23, 2006 | SQL injection vulnerability in login.php in Scriptme SmE GB Host 1.21 allows remote attackers to execute arbitrary SQL c... |
| CVE-2006-0857 | — | — | 3.3% | Feb 23, 2006 | Cross-site scripting (XSS) vulnerability in Chatbox Plugin 1.0 in e107 0.7.2 allows remote attackers to inject arbitrary... |
| CVE-2006-0859 | — | — | 1.5% | Feb 23, 2006 | Michael Salzer Guestbox 0.6, and other versions before 0.8, allows remote attackers to post an admin comment to a guestb... |
| CVE-2006-0858 | — | — | 0.3% | Feb 23, 2006 | Unquoted Windows search path vulnerability in (1) snsmcon.exe, (2) the autostartup mechanism, and (3) an unspecified ins... |
| CVE-2006-0720 | — | — | 10.3% | Feb 23, 2006 | Stack-based buffer overflow in Nullsoft Winamp 5.12 and 5.13 allows user-assisted attackers to cause a denial of service... |
| CVE-2006-0855 | — | — | 4.4% | Feb 23, 2006 | Stack-based buffer overflow in the fullpath function in misc.c for zoo 2.10 and earlier, as used in products such as Bar... |
| CVE-2006-0803 | — | — | 1.7% | Feb 23, 2006 | The signature verification functionality in the YaST Online Update (YOU) script handling relies on a gpg feature that is... |
| CVE-2006-0812 | — | — | 0.4% | Feb 23, 2006 | The VisNetic AntiVirus Plug-in (DKAVUpSch.exe) for Mail Server 4.6.0.4, 4.6.1.1, and possibly other versions before 4.6.... |
| CVE-2006-0850 | — | — | 1.2% | Feb 23, 2006 | SQL injection vulnerability in include/includes/user/login.php in ilchClan before 1.05g allows remote attackers to execu... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now