2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-0411 | — | — | 2.5% | Jan 25, 2006 | claro_init_local.inc.php in Claroline 1.7.2 uses guessable session cookies (MD5 hash of connection time), which allows r... |
| CVE-2006-0225 | — | — | 0.5% | Jan 25, 2006 | scp in OpenSSH 4.2p1 allows attackers to execute arbitrary commands via filenames that contain shell metacharacters or s... |
| CVE-2006-0409 | — | — | 1.9% | Jan 25, 2006 | Cross-site scripting (XSS) vulnerability in index.php in Pixelpost Photoblog 1.4.3 allows remote attackers to inject arb... |
| CVE-2006-0410 | — | — | 2.8% | Jan 25, 2006 | SQL injection vulnerability in ADOdb before 4.71, when using PostgreSQL, allows remote attackers to execute arbitrary SQ... |
| CVE-2006-0408 | — | — | 0.4% | Jan 25, 2006 | rsh utility in Sun Grid Engine (SGE) before 6.0u7_1 allows local users to gain privileges and execute arbitrary code via... |
| CVE-2006-0407 | — | — | 2.6% | Jan 25, 2006 | Cross-site scripting (XSS) vulnerability in post.php in AZ Bulletin Board (AZbb) 1.1.00 and earlier allows remote attack... |
| CVE-2006-0406 | — | — | 1.5% | Jan 25, 2006 | search.php in MyBB 1.0.2 allows remote attackers to obtain sensitive information via a certain search request that revea... |
| CVE-2006-0405 | — | — | 2.8% | Jan 25, 2006 | The TIFFFetchShortPair function in tif_dirread.c in libtiff 3.8.0 allows remote attackers to cause a denial of service (... |
| CVE-2006-0404 | — | — | 1.8% | Jan 25, 2006 | Note-A-Day Weblog 2.2 stores sensitive data under the web document root with insufficient access control, which allows r... |
| CVE-2006-0403 | — | — | 2.0% | Jan 25, 2006 | Multiple SQL injection vulnerabilities in e-moBLOG 1.3 allow remote attackers to execute arbitrary SQL commands via the ... |
| CVE-2006-0402 | — | — | 1.4% | Jan 25, 2006 | SQL injection vulnerability in Zoph before 0.5pre1 allows remote attackers to execute arbitrary SQL commands. |
| CVE-2006-0224 | — | — | 0.7% | Jan 25, 2006 | Buffer overflow in Library of Assorted Spiffy Things (LibAST) 0.6.1 and earlier, as used in Eterm and possibly other sof... |
| CVE-2006-0321 | — | — | 3.4% | Jan 24, 2006 | fetchmail 6.3.0 and other versions before 6.3.2 allows remote attackers to cause a denial of service (crash) via crafted... |
| CVE-2006-0037 | — | — | 0.4% | Jan 23, 2006 | ip_nat_pptp in the PPTP NAT helper (netfilter/ip_nat_helper_pptp.c) in Linux kernel 2.6.14, and other versions, allows l... |
| CVE-2006-0036 | — | — | 3.2% | Jan 23, 2006 | ip_nat_pptp in the PPTP NAT helper (netfilter/ip_nat_helper_pptp.c) in Linux kernel 2.6.14, and other versions, allows r... |
| CVE-2006-0378 | — | — | 1.4% | Jan 23, 2006 | Cross-site scripting (XSS) vulnerability in Netrix X-Site Manager allows remote attackers to inject arbitrary web script... |
| CVE-2006-0373 | — | — | 0.9% | Jan 22, 2006 | Cross-site scripting (XSS) vulnerability in register.aspx in Douran FollowWeb allows remote attackers to inject arbitrar... |
| CVE-2006-0372 | — | — | 1.3% | Jan 22, 2006 | Multiple SQL injection vulnerabilities in config.php in Insane Visions BlogPHP, possibly 1.0, allow remote attackers to ... |
| CVE-2006-0371 | — | — | 2.8% | Jan 22, 2006 | Directory traversal vulnerability in index.php in Noah Medling RCBlog 1.03 allows remote attackers to read arbitrary .tx... |
| CVE-2006-0370 | — | — | 1.7% | Jan 22, 2006 | Noah Medling RCBlog 1.03 stores the data and config directories under the web root with insufficient access control, whi... |
| CVE-2006-0369 | — | — | 0.7% | Jan 22, 2006 | MySQL 5.0.18 allows local users with access to a VIEW to obtain sensitive information via the "SELECT * FROM information... |
| CVE-2006-0368 | — | — | 3.6% | Jan 22, 2006 | Cisco CallManager 3.2 and earlier, 3.3 before 3.3(5)SR1, 4.0 before 4.0(2a)SR2c, and 4.1 before 4.1(3)SR2 allow remote a... |
| CVE-2006-0367 | — | — | 2.1% | Jan 22, 2006 | Unspecified vulnerability in Cisco CallManager 3.2 and earlier, 3.3 before 3.3(5)SR1, 4.0 before 4.0(2a)SR2c, and 4.1 be... |
| CVE-2006-0366 | — | — | 1.7% | Jan 22, 2006 | Cross-site scripting (XSS) vulnerability in Phpclanwebsite (aka PCW) allows remote attackers to inject arbitrary web scr... |
| CVE-2006-0365 | — | — | 1.8% | Jan 22, 2006 | Cross-site scripting (XSS) vulnerability in XMB (aka extreme message board) allows remote attackers to inject arbitrary ... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now