2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-3893——Multiple buffer overflows in the ActiveX controls in Newtone ImageKit 5 before Fix 30 and 6 before Fix 40, as used in CA...
CVE-2006-6269——Multiple SQL injection vulnerabilities in Infinitytechs Restaurants CM allow remote attackers to execute arbitrary SQL c...
CVE-2006-6236——Adobe Reader (Adobe Acrobat Reader) 7.0 through 7.0.8 allows remote attackers to cause a denial of service and possibly ...
CVE-2006-6237——SQL injection vulnerability in the decode_cookie function in thread.php in Woltlab Burning Board Lite 1.0.2 allows remot...
CVE-2006-6238——The AutoFill feature in Apple Safari 2.0.4 does not properly verify that all automatically populated form fields are vis...
CVE-2006-6239——webadmin in MailEnable NetWebAdmin Professional 2.32 and Enterprise 2.32 allows remote attackers to authenticate using a...
CVE-2006-6240——Directory traversal vulnerability in Sorin Chitu Telnet-FTP Server 1.0 allows remote authenticated users to list content...
CVE-2006-6241——Sorin Chitu Telnet-FTP Server 1.0 allows remote authenticated users to cause a denial of service (crash) via consecutive...
CVE-2006-6242——Multiple directory traversal vulnerabilities in Serendipity 1.0.3 and earlier allow remote attackers to read or include ...
CVE-2006-5854——Multiple buffer overflows in the Spooler service (nwspool.dll) in Novell Netware Client 4.91 through 4.91 SP2 allow remo...
CVE-2006-6120——Integer overflow in the KPresenter import filter for Microsoft PowerPoint files (filters/olefilters/lib/klaola.cc) in KO...
CVE-2006-6234——Multiple SQL injection vulnerabilities in the Content module in PHP-Nuke 6.0, and possibly other versions, allow remote ...
CVE-2006-6233——SQL injection vulnerability in the Downloads module for unknown versions of PostNuke allows remote attackers to execute ...
CVE-2006-6224——PHP remote file inclusion vulnerability in the installation scripts in Puntal before 1.8.5 allows remote attackers to ex...
CVE-2006-6228——Cross-site scripting (XSS) vulnerability in Codewalkers ltwCalendar (aka PHP Event Calendar) before 4.2.1 allows remote ...
CVE-2006-6223——Cross-site scripting (XSS) vulnerability in Google Search Appliance and Google Mini allows remote attackers to inject ar...
CVE-2006-6232——PHP remote file inclusion vulnerability in admin/index.php in DreamAccount 3.1 allows remote attackers to execute arbitr...
CVE-2006-6225——Multiple PHP remote file inclusion vulnerabilities in GeekLog 1.4 allow remote attackers to execute arbitrary code via a...
CVE-2006-6226——Multiple format string vulnerabilities in NeoEngine 0.8.2 and earlier, and CVS 3422, allow remote attackers to cause a d...
CVE-2006-6227——The Core::Receive function in neonet/core.cpp for NeoEngine 0.8.2 and earlier, and CVS 3422, allow remote attackers to c...
CVE-2006-6229——Codewalkers ltwCalendar (aka PHP Event Calendar) before 4.2.1 logs failed passwords, which might allow attackers to infe...
CVE-2006-6230——SQL injection vulnerability in vuBB 0.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the ...
CVE-2006-6231——vuBB 0.2.1 and earlier allows remote attackers to obtain sensitive information via a direct request to includes/vubb.php...
CVE-2006-5751——Integer overflow in the get_fdb_entries function in net/bridge/br_ioctl.c in the Linux kernel before 2.6.18.4 allows loc...
CVE-2006-6071——TWiki 4.0.5 and earlier, when running under Apache 1.3 using ApacheLogin with sessions and "ErrorDocument 401" redirects...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now