2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-0871Directory traversal vulnerability in the _setTemplate function in Mambo 4.5.3, 4.5.3h, and possibly earlier versions all...
CVE-2006-0377CRLF injection vulnerability in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary IMAP commands vi...
CVE-2006-0188webmail.php in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary web pages into the right frame vi...
CVE-2006-0300Buffer overflow in tar 1.14 through 1.15.90 allows user-assisted attackers to cause a denial of service (application cra...
CVE-2006-0195Interpretation conflict in the MagicHTML filter in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to conduct cross-...
CVE-2006-0863InfoVista PortalSE 2.0 Build 20087 on Solaris 8 allows remote attackers to obtain sensitive information by specifying a ...
CVE-2006-0870SQL injection vulnerability in pages.asp in Mini-Nuke CMS System 1.8.2 and earlier allows remote attackers to execute ar...
CVE-2006-0869Directory traversal vulnerability in the "remember me" feature in liveuser.php in PHP Extension and Application Reposito...
CVE-2006-0868Multiple unspecified injection vulnerabilities in unspecified Auth Container back ends for PEAR::Auth before 1.2.4, and ...
CVE-2006-0867Buffer overflow in certain versions of South River (aka SRT) WebDrive, possibly version 6.08 build 1131 and version 8, a...
CVE-2006-0866PunBB 1.2.10 and earlier allows remote attackers to conduct brute force guessing attacks for an account's password, whic...
CVE-2006-0865PunBB 1.2.10 and earlier allows remote attackers to cause a denial of service (resource consumption) by registering many...
CVE-2006-0860Multiple cross-site scripting (XSS) vulnerabilities in Michael Salzer Guestbox 0.6, and other versions before 0.8, allow...
CVE-2006-0861Michael Salzer Guestbox 0.6, and other versions before 0.8, allows remote attackers to obtain the source IP addresses of...
CVE-2006-0862Unspecified vulnerability in InfoVista PortalSE 2.0 Build 20087 on Solaris 8 without the IV00038969 hotfix allows remote...
CVE-2006-0864filescan in Global Hauri ViRobot 2.0 20050817 does not verify the Cookie HTTP header, which allows remote attackers to g...
CVE-2006-0856SQL injection vulnerability in login.php in Scriptme SmE GB Host 1.21 allows remote attackers to execute arbitrary SQL c...
CVE-2006-0857Cross-site scripting (XSS) vulnerability in Chatbox Plugin 1.0 in e107 0.7.2 allows remote attackers to inject arbitrary...
CVE-2006-0859Michael Salzer Guestbox 0.6, and other versions before 0.8, allows remote attackers to post an admin comment to a guestb...
CVE-2006-0858Unquoted Windows search path vulnerability in (1) snsmcon.exe, (2) the autostartup mechanism, and (3) an unspecified ins...
CVE-2006-0720Stack-based buffer overflow in Nullsoft Winamp 5.12 and 5.13 allows user-assisted attackers to cause a denial of service...
CVE-2006-0855Stack-based buffer overflow in the fullpath function in misc.c for zoo 2.10 and earlier, as used in products such as Bar...
CVE-2006-0803The signature verification functionality in the YaST Online Update (YOU) script handling relies on a gpg feature that is...
CVE-2006-0812The VisNetic AntiVirus Plug-in (DKAVUpSch.exe) for Mail Server 4.6.0.4, 4.6.1.1, and possibly other versions before 4.6....
CVE-2006-0850SQL injection vulnerability in include/includes/user/login.php in ilchClan before 1.05g allows remote attackers to execu...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now