2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-6787SQL injection vulnerability in admin/admin_mail_adressee.asp in Newsletter MX 1.0.2 and earlier allows remote attackers ...
CVE-2006-6786Open Newsletter 2.5 and earlier allows remote authenticated administrators to execute arbitrary PHP code by inserting th...
CVE-2006-6785The (1) settings.php and (2) subscribers.php scripts in Open Newsletter 2.5 and earlier do not exit when authentication ...
CVE-2006-6784SQL injection vulnerability in Netbula Anyboard allows remote attackers to execute arbitrary SQL commands via the user n...
CVE-2006-6783logahead UNU 1.0 before 20061226 allows remote attackers to upload arbitrary files via unspecified vectors related to pl...
CVE-2006-6782Cross-site scripting (XSS) vulnerability in pnamazu 2006.02.28 and earlier allows remote attackers to inject arbitrary w...
CVE-2006-6781HLstats 1.20 through 1.34 allows remote attackers to obtain sensitive information via playinfo mode, with certain values...
CVE-2006-6780SQL injection vulnerability in the login form in HLstats 1.20 through 1.34 allows remote attackers to execute arbitrary ...
CVE-2006-6779Cross-site scripting (XSS) vulnerability in Jelsoft vBulletin allows remote attackers to inject arbitrary web script or ...
CVE-2006-6778Cross-site scripting (XSS) vulnerability in shownews.php in TimberWolf 1.2.2 allows remote attackers to inject arbitrary...
CVE-2006-6777Cross-site scripting (XSS) vulnerability in index.cfm in Future Internet allows remote attackers to inject arbitrary web...
CVE-2006-6776Multiple SQL injection vulnerabilities in Future Internet allow remote attackers to execute arbitrary SQL commands via t...
CVE-2006-6775acFTP 1.5 allows remote authenticated users to cause a denial of service via a crafted argument to the (1) REST or (2) P...
CVE-2006-6774PHP remote file inclusion vulnerability in socios/maquetacion_socio.php (members/maquetacion_member.php) in Ciberia Cont...
CVE-2006-6773pages/register/register.php in Fishyshoop 0.930 beta allows remote attackers to create arbitrary administrative users by...
CVE-2006-6772Format string vulnerability in the inputAnswer function in file.c in w3m before 0.5.2, when run with the dump or backend...
CVE-2006-6771Multiple PHP remote file inclusion vulnerabilities in Irokez CMS 0.7.1 and earlier, when register_globals is enabled, al...
CVE-2006-6770Multiple PHP remote file inclusion vulnerabilities in Jinzora Media Jukebox 2.7 and earlier, when register_globals is en...
CVE-2006-6769Multiple cross-site scripting (XSS) vulnerabilities in PHP Live! 3.2.2 and earlier allow remote attackers to inject arbi...
CVE-2006-6768Multiple cross-site scripting (XSS) vulnerabilities in default.asp in PWP Technologies The Classified Ad System allow re...
CVE-2006-6766Multiple SQL injection vulnerabilities in cwmExplorer 1.1.0 and earlier allow remote attackers to execute arbitrary SQL ...
CVE-2006-6765Multiple PHP file inclusion vulnerabilities in src/admin/pt_upload.php in Pagetool 1.07 allow remote attackers to execut...
CVE-2006-6764PHP remote file inclusion vulnerability in authenticate.php in Keep It Simple Guest Book (KISGB), when executing PHP thr...
CVE-2006-6763Multiple PHP remote file inclusion vulnerabilities in the Keep It Simple Guest Book (KISGB) allow remote attackers to ex...
CVE-2006-6762The IMAP daemon (IMAPD) in Novell NetMail before 3.52e FTF2 allows remote authenticated users to cause a denial of servi...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now