2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-0854 | — | — | 2.1% | Feb 23, 2006 | PHP remote file inclusion vulnerability in common.php in Intensive Point iUser Ecommerce allows remote attackers to incl... |
| CVE-2006-0851 | — | — | 1.3% | Feb 23, 2006 | SQL injection vulnerability in the forum module of ilchClan 1.05g and earlier allows remote attackers to execute arbitra... |
| CVE-2006-0852 | — | — | 2.7% | Feb 23, 2006 | Direct static code injection vulnerability in write.php in Admbook 1.2.2 and earlier allows remote attackers to execute ... |
| CVE-2006-0853 | — | — | 2.7% | Feb 23, 2006 | Buffer overflow in the IMAP service of TrueNorth Internet Anywhere (IA) eMailserver 5.3.4 allows remote authenticated us... |
| CVE-2006-0848 | — | — | 58.1% | Feb 22, 2006 | The "Open 'safe' files after downloading" option in Safari on Apple Mac OS X allows remote user-assisted attackers to ex... |
| CVE-2006-0841 | — | — | 5.3% | Feb 22, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in Mantis 1.00rc4 and earlier allow remote attackers to inject arbit... |
| CVE-2006-0847 | — | — | 2.3% | Feb 22, 2006 | Directory traversal vulnerability in the staticfilter component in CherryPy before 2.1.1 allows remote attackers to read... |
| CVE-2006-0846 | — | — | 1.2% | Feb 22, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in Leif M. Wright's Blog 3.5 allow remote attackers to inject arbitr... |
| CVE-2006-0845 | — | — | 1.3% | Feb 22, 2006 | Leif M. Wright's Blog 3.5 allows remote authenticated users with administrative privileges to execute arbitrary programs... |
| CVE-2006-0844 | — | — | 1.6% | Feb 22, 2006 | Leif M. Wright's Blog 3.5 does not make a password comparison when authenticating an administrator via a cookie, which a... |
| CVE-2006-0843 | — | — | 1.4% | Feb 22, 2006 | Leif M. Wright's Blog 3.5 stores the config file and other txt files under the web root with insufficient access control... |
| CVE-2006-0842 | — | — | 1.8% | Feb 22, 2006 | Cross-site scripting (XSS) vulnerability in Calacode @Mail 4.3 allows remote attackers to inject arbitrary web script or... |
| CVE-2006-0840 | — | — | 1.9% | Feb 22, 2006 | manage_user_page.php in Mantis 1.00rc4 and earlier does not properly handle a sort parameter containing a ' (quote) char... |
| CVE-2006-0839 | — | — | 1.4% | Feb 22, 2006 | The frag3 preprocessor in Sourcefire Snort 2.4.3 does not properly reassemble certain fragmented packets with IP options... |
| CVE-2006-0838 | — | — | 0.4% | Feb 22, 2006 | IBM Tivoli Micromuse Netcool/NeuSecure 3.0.236 stores cleartext passwords in the (1) CMS_DBPASS, (2) CMSM_DBPASS, and (3... |
| CVE-2006-0837 | — | — | 0.4% | Feb 22, 2006 | IBM Tivoli Micromuse Netcool/NeuSecure 3.0.236 has world-readable permissions for (1) /etc/neusecure.conf, (2) /opt/NeuS... |
| CVE-2006-0836 | — | — | 2.7% | Feb 22, 2006 | Mozilla Thunderbird 1.5 allows user-assisted attackers to cause an unspecified denial of service by tricking the user in... |
| CVE-2006-0835 | — | — | 1.3% | Feb 22, 2006 | SQL injection vulnerability in dropbase.php in MitriDAT Web Calendar Pro allows remote attackers to modify internal SQL ... |
| CVE-2006-0834 | — | — | 1.3% | Feb 22, 2006 | Uniden UIP1868P VoIP Telephone and Router has a default password of admin for the web-based configuration utility, which... |
| CVE-2006-0832 | — | — | 1.1% | Feb 22, 2006 | Multiple SQL injection vulnerabilities in admin.asp in WPC.easy allow remote attackers to execute arbitrary SQL commands... |
| CVE-2006-0833 | — | — | 1.2% | Feb 22, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in Barracuda Directory 1.1 allow remote attackers to inject arbitrar... |
| CVE-2006-0824 | — | — | 3.1% | Feb 21, 2006 | Multiple unspecified vulnerabilities in lib-common.php in Geeklog 1.4.0 before 1.4.0sr1 and 1.3.11 before 1.3.11sr4 allo... |
| CVE-2006-0825 | — | — | 2.8% | Feb 21, 2006 | Multiple unspecified vulnerabilities in ESS/ Network Controller and MicroServer Web Server in Xerox WorkCentre Pro and X... |
| CVE-2006-0826 | — | — | 2.6% | Feb 21, 2006 | Unspecified vulnerability in ESS/ Network Controller and MicroServer Web Server in Xerox WorkCentre Pro and Xerox WorkCe... |
| CVE-2006-0827 | — | — | 1.4% | Feb 21, 2006 | Cross-site scripting vulnerability in ESS/ Network Controller and MicroServer Web Server in Xerox WorkCentre Pro and Xer... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now