2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-6822——myprofile.asp in Enthrallweb eClassifieds does not properly validate the MM_recordId parameter during profile updates, w...
CVE-2006-6823——PHP remote file inclusion vulnerability in plugins/metasearch/plug.inc.php in Yrch! 1.0 allows remote attackers to execu...
CVE-2006-6824——Multiple cross-site scripting (XSS) vulnerabilities in Jim Hu and Chad Little PHP iCalendar 2.23 rc1 and earlier allow r...
CVE-2006-6811MEDIUM6.5KsIRC 1.3.12 allows remote attackers to cause a denial of service (crash) via a long PRIVMSG string when connecting to a...
CVE-2006-6799——SQL injection vulnerability in Cacti 0.8.6i and earlier, when register_argc_argv is enabled, allows remote attackers to ...
CVE-2006-6800——PHP remote file inclusion in eventcal/mod_eventcal.php in the event module 1.0 for Limbo CMS allows remote attackers to ...
CVE-2006-6801——PHP remote file inclusion vulnerability in misc.php in SH-News 0.93, when register_globals is enabled, allows remote att...
CVE-2006-6802——SQL injection vulnerability in actualpic.asp in Enthrallweb ePages allows remote attackers to execute arbitrary SQL comm...
CVE-2006-6803——SQL injection vulnerability in Types.asp in Enthrallweb eCars 1.0 allows remote attackers to execute arbitrary SQL comma...
CVE-2006-6804——SQL injection vulnerability in bus_details.asp in Dragon Business Directory - Pro (aka Dragon Internet Business Search D...
CVE-2006-6805——SQL injection vulnerability in newsdetail.asp in Enthrallweb eJobs allows remote attackers to execute arbitrary SQL comm...
CVE-2006-6806——SQL injection vulnerability in newsdetail.asp in Enthrallweb eMates 1.0 allows remote attackers to execute arbitrary SQL...
CVE-2006-6807——SQL injection vulnerability in list.asp in Softwebs Nepal (aka Ananda Raj Pandey) Ananda Real Estate 3.4 and earlier all...
CVE-2006-6808——Cross-site scripting (XSS) vulnerability in wp-admin/templates.php in WordPress 2.0.5 allows remote attackers to inject ...
CVE-2006-6318——The show_elog_list function in elogd.c in elog 2.6.2 and earlier allows remote authenticated users to cause a denial of ...
CVE-2006-6797——The Client Server Run-Time Subsystem (CSRSS) in Microsoft Windows allows local users to cause a denial of service (crash...
CVE-2006-6776——Multiple SQL injection vulnerabilities in Future Internet allow remote attackers to execute arbitrary SQL commands via t...
CVE-2006-6777——Cross-site scripting (XSS) vulnerability in index.cfm in Future Internet allows remote attackers to inject arbitrary web...
CVE-2006-6778——Cross-site scripting (XSS) vulnerability in shownews.php in TimberWolf 1.2.2 allows remote attackers to inject arbitrary...
CVE-2006-6779——Cross-site scripting (XSS) vulnerability in Jelsoft vBulletin allows remote attackers to inject arbitrary web script or ...
CVE-2006-6780——SQL injection vulnerability in the login form in HLstats 1.20 through 1.34 allows remote attackers to execute arbitrary ...
CVE-2006-6781——HLstats 1.20 through 1.34 allows remote attackers to obtain sensitive information via playinfo mode, with certain values...
CVE-2006-6782——Cross-site scripting (XSS) vulnerability in pnamazu 2006.02.28 and earlier allows remote attackers to inject arbitrary w...
CVE-2006-6783——logahead UNU 1.0 before 20061226 allows remote attackers to upload arbitrary files via unspecified vectors related to pl...
CVE-2006-6784——SQL injection vulnerability in Netbula Anyboard allows remote attackers to execute arbitrary SQL commands via the user n...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now