2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-0043Buffer overflow in the realpath function in nfs-server rpc.mountd, as used in SUSE Linux 9.1 through 10.0, allows local ...
CVE-2006-0301Heap-based buffer overflow in Splash.cc in xpdf, as used in other products such as (1) poppler, (2) kdegraphics, (3) gpd...
CVE-2006-0468CommuniGate Pro Core Server before 5.0.7 allows remote attackers to cause a denial of service (crash) and possibly execu...
CVE-2006-0469Cross-site scripting (XSS) vulnerability in UebiMiau 2.7.9, and possibly earlier versions, allows remote attackers to in...
CVE-2006-0465Cross-site scripting (XSS) vulnerability in risultati_ricerca.php in active121 Site Manager allows remote attackers to i...
CVE-2006-0463Cross-site scripting (XSS) vulnerability in IdeoContent Manager allows remote attackers to inject arbitrary web script o...
CVE-2006-0462SQL injection vulnerability in comentarios.php in AndoNET Blog 2004.09.02 allows remote attackers to execute arbitrary S...
CVE-2006-0461Cross-site scripting (XSS) vulnerability in core.input.php in ExpressionEngine 1.4.1 allows remote attackers to inject a...
CVE-2006-0464Multiple SQL injection vulnerabilities in index.php in IdeoContent Manager allow remote attackers to execute arbitrary S...
CVE-2006-0466Cross-site scripting (XSS) vulnerability in search.asp in Goldstag Content Management System allows remote attackers to ...
CVE-2006-0057Microsoft Internet Explorer 5.01, 5.5, and 6 allows remote attackers to bypass the Kill bit settings for dangerous Activ...
CVE-2006-0450phpBB 2.0.19 and earlier allows remote attackers to cause a denial of service (application crash) by (1) registering man...
CVE-2006-0446Unspecified vulnerability in WeBWorK 2.1.3 and 2.2-pre1 allows remote privileged attackers to execute arbitrary commands...
CVE-2006-0447Multiple buffer overflows in E-Post Mail Server 4.10 and SPA-PRO Mail @Solomon 4.00 allow remote attackers to execute ar...
CVE-2006-0448Multiple directory traversal vulnerabilities in (1) EPSTIMAP4S.EXE and (2) SPA-IMAP4S.EXE in the IMAP service in E-Post ...
CVE-2006-0449Early termination vulnerability in the IMAP service in E-Post Mail 4.05 and SPA-PRO Mail 4.05 allows remote attackers to...
CVE-2006-0440Text Rider 2.4 allows attackers to bypass authentication and upload files without providing a valid password by obtainin...
CVE-2006-0442Multiple cross-site scripting (XSS) vulnerabilities in usercp.php in MyBulletinBoard (MyBB) 1.02 allow remote attackers ...
CVE-2006-0441Stack-based buffer overflow in Sami FTP Server 2.0.1 allows remote attackers to execute arbitrary code via a long USER c...
CVE-2006-0439Text Rider 2.4 stores sensitive data in the data directory under the web document root with insufficient access control,...
CVE-2006-0445index.php in Phpclanwebsite 1.23.1 allows remote authenticated users to obtain the installation path by specifying an in...
CVE-2006-0444SQL injection vulnerability in index.php in Phpclanwebsite (aka PCW) 1.23.1 allows remote attackers to execute arbitrary...
CVE-2006-0443Cross-site scripting (XSS) vulnerability in archive.php in CheesyBlog 1.0 allows remote attackers to inject arbitrary we...
CVE-2006-0434Directory traversal vulnerability in action.php in phpXplorer allows remote attackers to read arbitrary files via ".." (...
CVE-2006-0435Unspecified vulnerability in Oracle PL/SQL (PLSQL), as used in Database Server DS 9.2.0.7 and 10.1.0.5, Application Serv...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now