2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-3893Multiple buffer overflows in the ActiveX controls in Newtone ImageKit 5 before Fix 30 and 6 before Fix 40, as used in CA...
CVE-2006-6269Multiple SQL injection vulnerabilities in Infinitytechs Restaurants CM allow remote attackers to execute arbitrary SQL c...
CVE-2006-6237SQL injection vulnerability in the decode_cookie function in thread.php in Woltlab Burning Board Lite 1.0.2 allows remot...
CVE-2006-6236Adobe Reader (Adobe Acrobat Reader) 7.0 through 7.0.8 allows remote attackers to cause a denial of service and possibly ...
CVE-2006-6238The AutoFill feature in Apple Safari 2.0.4 does not properly verify that all automatically populated form fields are vis...
CVE-2006-6239webadmin in MailEnable NetWebAdmin Professional 2.32 and Enterprise 2.32 allows remote attackers to authenticate using a...
CVE-2006-6240Directory traversal vulnerability in Sorin Chitu Telnet-FTP Server 1.0 allows remote authenticated users to list content...
CVE-2006-6241Sorin Chitu Telnet-FTP Server 1.0 allows remote authenticated users to cause a denial of service (crash) via consecutive...
CVE-2006-6242Multiple directory traversal vulnerabilities in Serendipity 1.0.3 and earlier allow remote attackers to read or include ...
CVE-2006-5854Multiple buffer overflows in the Spooler service (nwspool.dll) in Novell Netware Client 4.91 through 4.91 SP2 allow remo...
CVE-2006-6120Integer overflow in the KPresenter import filter for Microsoft PowerPoint files (filters/olefilters/lib/klaola.cc) in KO...
CVE-2006-6233SQL injection vulnerability in the Downloads module for unknown versions of PostNuke allows remote attackers to execute ...
CVE-2006-6234Multiple SQL injection vulnerabilities in the Content module in PHP-Nuke 6.0, and possibly other versions, allow remote ...
CVE-2006-6223Cross-site scripting (XSS) vulnerability in Google Search Appliance and Google Mini allows remote attackers to inject ar...
CVE-2006-6225Multiple PHP remote file inclusion vulnerabilities in GeekLog 1.4 allow remote attackers to execute arbitrary code via a...
CVE-2006-6224PHP remote file inclusion vulnerability in the installation scripts in Puntal before 1.8.5 allows remote attackers to ex...
CVE-2006-6229Codewalkers ltwCalendar (aka PHP Event Calendar) before 4.2.1 logs failed passwords, which might allow attackers to infe...
CVE-2006-6226Multiple format string vulnerabilities in NeoEngine 0.8.2 and earlier, and CVS 3422, allow remote attackers to cause a d...
CVE-2006-6227The Core::Receive function in neonet/core.cpp for NeoEngine 0.8.2 and earlier, and CVS 3422, allow remote attackers to c...
CVE-2006-6228Cross-site scripting (XSS) vulnerability in Codewalkers ltwCalendar (aka PHP Event Calendar) before 4.2.1 allows remote ...
CVE-2006-6232PHP remote file inclusion vulnerability in admin/index.php in DreamAccount 3.1 allows remote attackers to execute arbitr...
CVE-2006-6230SQL injection vulnerability in vuBB 0.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the ...
CVE-2006-6231vuBB 0.2.1 and earlier allows remote attackers to obtain sensitive information via a direct request to includes/vubb.php...
CVE-2006-5751Integer overflow in the get_fdb_entries function in net/bridge/br_ioctl.c in the Linux kernel before 2.6.18.4 allows loc...
CVE-2006-6071TWiki 4.0.5 and earlier, when running under Apache 1.3 using ApacheLogin with sessions and "ErrorDocument 401" redirects...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now