2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-0854PHP remote file inclusion vulnerability in common.php in Intensive Point iUser Ecommerce allows remote attackers to incl...
CVE-2006-0851SQL injection vulnerability in the forum module of ilchClan 1.05g and earlier allows remote attackers to execute arbitra...
CVE-2006-0852Direct static code injection vulnerability in write.php in Admbook 1.2.2 and earlier allows remote attackers to execute ...
CVE-2006-0853Buffer overflow in the IMAP service of TrueNorth Internet Anywhere (IA) eMailserver 5.3.4 allows remote authenticated us...
CVE-2006-0848The "Open 'safe' files after downloading" option in Safari on Apple Mac OS X allows remote user-assisted attackers to ex...
CVE-2006-0841Multiple cross-site scripting (XSS) vulnerabilities in Mantis 1.00rc4 and earlier allow remote attackers to inject arbit...
CVE-2006-0847Directory traversal vulnerability in the staticfilter component in CherryPy before 2.1.1 allows remote attackers to read...
CVE-2006-0846Multiple cross-site scripting (XSS) vulnerabilities in Leif M. Wright's Blog 3.5 allow remote attackers to inject arbitr...
CVE-2006-0845Leif M. Wright's Blog 3.5 allows remote authenticated users with administrative privileges to execute arbitrary programs...
CVE-2006-0844Leif M. Wright's Blog 3.5 does not make a password comparison when authenticating an administrator via a cookie, which a...
CVE-2006-0843Leif M. Wright's Blog 3.5 stores the config file and other txt files under the web root with insufficient access control...
CVE-2006-0842Cross-site scripting (XSS) vulnerability in Calacode @Mail 4.3 allows remote attackers to inject arbitrary web script or...
CVE-2006-0840manage_user_page.php in Mantis 1.00rc4 and earlier does not properly handle a sort parameter containing a ' (quote) char...
CVE-2006-0839The frag3 preprocessor in Sourcefire Snort 2.4.3 does not properly reassemble certain fragmented packets with IP options...
CVE-2006-0838IBM Tivoli Micromuse Netcool/NeuSecure 3.0.236 stores cleartext passwords in the (1) CMS_DBPASS, (2) CMSM_DBPASS, and (3...
CVE-2006-0837IBM Tivoli Micromuse Netcool/NeuSecure 3.0.236 has world-readable permissions for (1) /etc/neusecure.conf, (2) /opt/NeuS...
CVE-2006-0836Mozilla Thunderbird 1.5 allows user-assisted attackers to cause an unspecified denial of service by tricking the user in...
CVE-2006-0835SQL injection vulnerability in dropbase.php in MitriDAT Web Calendar Pro allows remote attackers to modify internal SQL ...
CVE-2006-0834Uniden UIP1868P VoIP Telephone and Router has a default password of admin for the web-based configuration utility, which...
CVE-2006-0832Multiple SQL injection vulnerabilities in admin.asp in WPC.easy allow remote attackers to execute arbitrary SQL commands...
CVE-2006-0833Multiple cross-site scripting (XSS) vulnerabilities in Barracuda Directory 1.1 allow remote attackers to inject arbitrar...
CVE-2006-0824Multiple unspecified vulnerabilities in lib-common.php in Geeklog 1.4.0 before 1.4.0sr1 and 1.3.11 before 1.3.11sr4 allo...
CVE-2006-0825Multiple unspecified vulnerabilities in ESS/ Network Controller and MicroServer Web Server in Xerox WorkCentre Pro and X...
CVE-2006-0826Unspecified vulnerability in ESS/ Network Controller and MicroServer Web Server in Xerox WorkCentre Pro and Xerox WorkCe...
CVE-2006-0827Cross-site scripting vulnerability in ESS/ Network Controller and MicroServer Web Server in Xerox WorkCentre Pro and Xer...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now