2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-0202 | — | — | 0.3% | Jan 13, 2006 | Dave Nielsen and Patrick Breitenbach PayPal Web Services (aka PHP Toolkit) 0.50 and possibly earlier has (1) world-reada... |
| CVE-2006-0201 | — | — | 1.5% | Jan 13, 2006 | Dave Nielsen and Patrick Breitenbach PayPal Web Services (aka PHP Toolkit) 0.50, and possibly earlier versions, allows r... |
| CVE-2006-0200 | — | — | 18.9% | Jan 13, 2006 | Format string vulnerability in the error-reporting feature in the mysqli extension in PHP 5.1.0 and 5.1.1 might allow re... |
| CVE-2006-0199 | — | — | 1.8% | Jan 13, 2006 | SQL injection vulnerability in news.asp in Mini-Nuke CMS System 1.8.2 and earlier allows remote attackers to execute arb... |
| CVE-2006-0198 | — | — | 1.6% | Jan 13, 2006 | Cross-site scripting (XSS) vulnerability in a certain module, possibly poll or Pool, for XOOPS allows remote attackers t... |
| CVE-2006-0197 | — | — | 1.0% | Jan 13, 2006 | The XClientMessageEvent struct used in certain components of X.Org 6.8.2 and earlier, possibly including (1) the X serve... |
| CVE-2006-0192 | — | — | 2.1% | Jan 13, 2006 | SQL injection vulnerability in Login_Validate.asp in ASPSurvey 1.10 allows remote attackers to execute arbitrary SQL com... |
| CVE-2006-0193 | — | — | 1.3% | Jan 13, 2006 | Cross-site scripting (XSS) vulnerability in the Hosting Control Panel (psoft.hsphere.CP) in Positive Software H-Sphere 2... |
| CVE-2006-0191 | — | — | 0.4% | Jan 13, 2006 | Unspecified vulnerability in Sun Solaris 10 allows local users to cause a denial of service (null dereference) via unspe... |
| CVE-2006-0190 | — | — | 0.4% | Jan 13, 2006 | Unspecified vulnerability in Sun Solaris 9 and 10 for the x86 platform allows local users to gain privileges or cause a ... |
| CVE-2006-0189 | — | — | 15.5% | Jan 13, 2006 | Buffer overflow in eStara Softphone 3.0.1.14 through 3.0.1.46 allows remote attackers to execute arbitrary code via a lo... |
| CVE-2006-0194 | — | — | 2.0% | Jan 13, 2006 | Cross-site scripting (XSS) vulnerability in default.asp in FogBugz 4.029, and other versions before 4.0.33, allows remot... |
| CVE-2006-0187 | — | — | 18.9% | Jan 12, 2006 | By design, Microsoft Visual Studio 2005 automatically executes code in the Load event of a user-defined control (UserCon... |
| CVE-2006-0186 | — | — | — | Jan 12, 2006 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4500. Reason: This candidate is a duplicate of... |
| CVE-2006-0180 | — | — | 1.3% | Jan 12, 2006 | Cross-site scripting (XSS) vulnerability in CaLogic Calendars 1.2.2 allows remote attackers to inject arbitrary web scri... |
| CVE-2006-0185 | — | — | 2.3% | Jan 12, 2006 | Multiple cross-site scripting vulnerabilities in the (1) Pool or (2) News Modules in Php-Nuke allow remote attackers to ... |
| CVE-2006-0184 | — | — | 1.4% | Jan 12, 2006 | Multiple SQL injection vulnerabilities in AspTopSites allow remote attackers to execute arbitrary SQL commands via the (... |
| CVE-2006-0183 | — | — | 1.3% | Jan 12, 2006 | Direct static code injection vulnerability in edit.php in ACal Calendar Project 2.2.5 allows authenticated users to exec... |
| CVE-2006-0182 | — | — | 1.9% | Jan 12, 2006 | login.php in ACal Calendar Project 2.2.5 allows remote attackers to bypass authentication by setting the ACalAuthenticat... |
| CVE-2006-0181 | — | — | 0.4% | Jan 12, 2006 | Cisco Security Monitoring, Analysis and Response System (CS-MARS) before 4.1.3 has an undocumented administrative accoun... |
| CVE-2006-0164 | — | — | 3.1% | Jan 11, 2006 | phgstats.inc.php in phgstats before 0.5.1, if register_globals is enabled, allows remote attackers to include arbitrary ... |
| CVE-2006-0163 | — | — | 6.9% | Jan 11, 2006 | SQL injection vulnerability in the search module (modules/Search/index.php) of PHPNuke EV 7.7 -R1 allows remote attacker... |
| CVE-2006-0173 | — | — | 2.2% | Jan 11, 2006 | Hummingbird Collaboration (aka Hummingbird Enterprise Collaboration) 5.21 and earlier allows remote attackers to misrepr... |
| CVE-2006-0179 | — | — | 13.3% | Jan 11, 2006 | The Cisco IP Phone 7940 allows remote attackers to cause a denial of service (reboot) via a large amount of TCP SYN pack... |
| CVE-2006-0178 | — | — | 0.3% | Jan 11, 2006 | Format string vulnerability in /bin/ftp in UNICOS 9.0.2.2 allows local users to have an unknown impact via format string... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now