2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-6614——The save_log_local function in Fully Automatic Installation (FAI) 2.10.1, and possibly 3.1.2, when verbose mode is enabl...
CVE-2006-6615——PHP remote file inclusion vulnerability in includes/act_constants.php in the Activity Games (mx_act) 0.92 module for mxB...
CVE-2006-6616——index.php in w00t Gallery 1.4.0 allows remote authenticated users with privileges for one installation to gain access to...
CVE-2006-5872——login.pl in SQL-Ledger before 2.6.21 and LedgerSMB before 1.1.5 allows remote attackers to execute arbitrary Perl code v...
CVE-2006-6596——HyperAccess 8.4 allows user-assisted remote attackers to execute arbitrary vbscript and commands via a session (HAW) fil...
CVE-2006-6597——Argument injection vulnerability in HyperAccess 8.4 allows user-assisted remote attackers to execute arbitrary vbscript ...
CVE-2006-6598——Directory traversal vulnerability in viewnfo.php in (1) TorrentFlux before 2.2 and (2) torrentflux-b4rt before 2.1-b4rt-...
CVE-2006-6599——maketorrent.php in TorrentFlux 2.2 allows remote authenticated users to execute arbitrary commands via shell metacharact...
CVE-2006-6600——Cross-site scripting (XSS) vulnerability in dir.php in TorrentFlux 2.2, when allows remote attackers to inject arbitrary...
CVE-2006-6601——Windows Media Player 10.00.00.4036 in Microsoft Windows XP SP2 allows user-assisted remote attackers to cause a denial o...
CVE-2006-6602——explorer.exe in Windows Explorer 6.00.2900.2180 in Microsoft Windows XP SP2 allows user-assisted remote attackers to cau...
CVE-2006-6603——Buffer overflow in the YMMAPI.YMailAttach ActiveX control (ymmapi.dll) before 2005.1.1.4 in Yahoo! Messenger allows remo...
CVE-2006-6604——Directory traversal vulnerability in downloaddetails.php in TorrentFlux 2.2 allows remote authenticated users to read ar...
CVE-2006-6574——Mantis before 1.1.0a2 does not implement per-item access control for Issue History (Bug History), which allows remote at...
CVE-2006-6575——PHP remote file inclusion vulnerability in ldap.php in Brian Drawert Yet Another PHP LDAP Admin Project (yaplap) 0.6 and...
CVE-2006-6576——Heap-based buffer overflow in Golden FTP Server (goldenftpd) 1.92 allows remote attackers to cause a denial of service (...
CVE-2006-6577——SQL injection vulnerability in polls.php in Neocrome Land Down Under (LDU) 8.x and earlier allows remote attackers to ex...
CVE-2006-6578——Microsoft Internet Information Services (IIS) 5.1 permits the IUSR_Machine account to execute non-EXE files such as .COM...
CVE-2006-6579——Microsoft Windows XP has weak permissions (FILE_WRITE_DATA and FILE_READ_DATA for Everyone) for %WINDIR%\pchealth\ERRORR...
CVE-2006-6580——admin/change.php in ProNews 1.5 does not check whether a user is permitted to change news items, which allows remote att...
CVE-2006-6581——PHP remote file inclusion vulnerability in tests/debug_test.php in Vernet Loic PHP_Debug 1.1.0 allows remote attackers t...
CVE-2006-6582——Multiple cross-site scripting (XSS) vulnerabilities in ScriptMate User Manager 2.1 and earlier allow remote attackers to...
CVE-2006-6583——ScriptMate User Manager 2.1 and earlier allow remote attackers to obtain sensitive information via unspecified vectors r...
CVE-2006-6584——Multiple buffer overflows in italkplus (Italk+) before 0.92.1 allow remote attackers to cause a denial of service (appli...
CVE-2006-6585——The Extensions manager in Mozilla Firefox 2.0 does not properly populate the list of local extensions, which allows atta...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now