2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-0177 | — | — | 1.0% | Jan 11, 2006 | Multiple buffer overflows in Cray UNICOS 9.0.2.2 might allow local users to gain privileges by (1) invoking /usr/bin/scr... |
| CVE-2006-0176 | — | — | 1.0% | Jan 11, 2006 | Buffer overflow in certain functions in src/fileio.c and src/unix/fileio.c in xmame before 11 January 2006 may allow loc... |
| CVE-2006-0175 | — | — | 3.3% | Jan 11, 2006 | Cross-site scripting (XSS) vulnerability in search_form.asp in Web Wiz Forums 6.34 allows remote attackers to inject arb... |
| CVE-2006-0174 | — | — | 2.8% | Jan 11, 2006 | Hummingbird Collaboration (aka Hummingbird Enterprise Collaboration) 5.21 and earlier allows remote attackers to obtain ... |
| CVE-2006-0172 | — | — | 1.1% | Jan 11, 2006 | Cross-site scripting (XSS) vulnerability in the file manager utility in Hummingbird Collaboration (aka Hummingbird Enter... |
| CVE-2006-0171 | — | — | 4.4% | Jan 11, 2006 | PHP remote file include vulnerability in index.php in OrjinWeb E-commerce allows remote attackers to execute arbitrary c... |
| CVE-2006-0169 | — | — | 1.9% | Jan 11, 2006 | addresses.php3 in MyPhPim 01.05 does not restrict uploaded files, which allows remote attackers to execute arbitrary PHP... |
| CVE-2006-0168 | — | — | 1.4% | Jan 11, 2006 | Cross-site scripting (XSS) vulnerability in MyPhPim 01.05 allows remote attackers to inject arbitrary web script or HTML... |
| CVE-2006-0167 | — | — | 2.1% | Jan 11, 2006 | SQL injection vulnerability in MyPhPim 01.05 allows remote attackers to execute arbitrary SQL commands via the (1) cal_i... |
| CVE-2006-0166 | — | — | 1.6% | Jan 11, 2006 | Symantec Norton SystemWorks and SystemWorks Premier 2005 and 2006 stores temporary copies of files in the Norton Protect... |
| CVE-2006-0165 | — | — | 1.2% | Jan 11, 2006 | Cross-site scripting (XSS) vulnerability in the DataForm Entries functionality in Plain Black WebGUI before 6.8.4 (gamma... |
| CVE-2006-0170 | — | — | — | Jan 11, 2006 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-0035. Reason: This candidate is a duplicate of... |
| CVE-2006-0055 | — | — | 0.4% | Jan 11, 2006 | The ispell_op function in ee on FreeBSD 4.10 to 6.0 uses predictable filenames and does not confirm which file is being ... |
| CVE-2006-0054 | MEDIUM | 5.3 | 3.2% | Jan 11, 2006 | The ipfw firewall in FreeBSD 6.0-RELEASE allows remote attackers to cause a denial of service (firewall crash) via ICMP ... |
| CVE-2006-0035 | — | — | 0.4% | Jan 11, 2006 | The netlink_rcv_skb function in af_netlink.c in Linux kernel 2.6.14 and 2.6.15 allows local users to cause a denial of s... |
| CVE-2006-0010 | — | — | 32.2% | Jan 10, 2006 | Heap-based buffer overflow in T2EMBED.DLL in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 up to SP1, Wind... |
| CVE-2006-0002 | — | — | 45.6% | Jan 10, 2006 | Unspecified vulnerability in Microsoft Outlook 2000 through 2003, Exchange 5.0 Server SP2 and 5.5 SP4, Exchange 2000 SP3... |
| CVE-2006-0020 | — | — | 18.5% | Jan 10, 2006 | An unspecified Microsoft WMF parsing application, as used in Internet Explorer 5.01 SP4 on Windows 2000 SP4, and 5.5 SP2... |
| CVE-2006-0105 | — | — | 2.2% | Jan 10, 2006 | PostgreSQL 8.0.x before 8.0.6 and 8.1.x before 8.1.2, when running on Windows, allows remote attackers to cause a denial... |
| CVE-2006-0161 | — | — | 0.4% | Jan 10, 2006 | Unspecified vulnerability in uucp in Sun Solaris 8 and 9 has unknown impact and attack vectors. NOTE: due to the vaguen... |
| CVE-2006-0162 | — | — | 9.9% | Jan 10, 2006 | Heap-based buffer overflow in libclamav/upx.c in Clam Antivirus (ClamAV) before 0.88 allows remote attackers to cause a ... |
| CVE-2006-0160 | — | — | 1.8% | Jan 10, 2006 | SQL injection vulnerability in add_post.php3 in Venom Board 1.22 allows remote attackers to execute arbitrary SQL comman... |
| CVE-2006-0159 | — | — | 1.2% | Jan 10, 2006 | SQL injection vulnerability in escribir.php in Foro Domus 2.10 allows remote attackers to execute arbitrary SQL commands... |
| CVE-2006-0157 | — | — | 2.2% | Jan 10, 2006 | settings.php in Reamday Enterprises Magic News Plus 1.0.3 allows remote attackers to change the administrator password v... |
| CVE-2006-0158 | — | — | 1.3% | Jan 10, 2006 | SQL injection vulnerability in index.php in CyberDoc SiteSuite CMS allows remote attackers to execute arbitrary SQL comm... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now