2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-4402——Heap-based buffer overflow in the Finder in Apple Mac OS X 10.4.8 and earlier allows user-assisted remote attackers to e...
CVE-2006-4400——Stack-based buffer overflow in the Apple Type Services (ATS) server in Mac OS 10.4.8 and earlier allow user-assisted att...
CVE-2006-4398——Multiple buffer overflows in the Apple Type Services (ATS) server in Mac OS X 10.4 through 10.4.8 allow local users to e...
CVE-2006-4404——The Installer application in Apple Mac OS X 10.4.8 and earlier, when used by a user with Admin credentials, does not aut...
CVE-2006-4410——The Security Framework in Apple Mac OS X 10.3.9, and 10.4.x before 10.4.7, does not properly search certificate revocati...
CVE-2006-4407——The Security Framework in Apple Mac OS X 10.3.x up to 10.3.9 does not properly prioritize encryption ciphers when negoti...
CVE-2006-4406——Buffer overflow in PPP on Apple Mac OS X 10.4.x up to 10.4.8 and 10.3.x up to 10.3.9, when PPPoE is enabled, allows remo...
CVE-2006-4396——The Apple Type Services (ATS) server in Mac OS X 10.4.8 and earlier does not securely create log files, which allows loc...
CVE-2006-4401——Unspecified vulnerability in CFNetwork in Mac OS 10.4.8 and earlier allows user-assisted remote attackers to execute arb...
CVE-2006-4409——The Online Certificate Status Protocol (OCSP) service in the Security Framework in Apple Mac OS X 10.4 through 10.4.8 re...
CVE-2006-4411——The VPN service in Apple Mac OS X 10.3.x through 10.3.9 and 10.4.x through 10.4.8 does not properly clean the environmen...
CVE-2006-4412——WebKit in Apple Mac OS X 10.3.x through 10.3.9 and 10.4 through 10.4.8 allows remote attackers to execute arbitrary code...
CVE-2006-4408——The Security Framework in Apple Mac OS X 10.4 through 10.4.8 allows remote attackers to cause a denial of service (resou...
CVE-2006-6170——Buffer overflow in the tls_x509_name_oneline function in the mod_tls module, as used in ProFTPD 1.3.0a and earlier, and ...
CVE-2006-6171——ProFTPD 1.3.0a and earlier does not properly set the buffer size limit when CommandBufferSize is specified in the config...
CVE-2006-6172——Buffer overflow in the asmrp_eval function in the RealMedia RTSP stream handler (asmrp.c) for Real Media input plugin, a...
CVE-2006-6169——Heap-based buffer overflow in the ask_outfile_name function in openfile.c for GnuPG (gpg) 1.4 and 2.0, when running inte...
CVE-2006-4099——Business Objects Crystal Enterprise 9 and 10 generates predictable session identifiers, which allows remote attackers to...
CVE-2006-6167——Multiple PHP remote file inclusion vulnerabilities in L. Brandon Stone and Nathanial P. Hendler Active PHP Bookmarks (AP...
CVE-2006-6168——tiki-register.php in TikiWiki before 1.9.7 allows remote attackers to trigger "notification-spam" via certain vectors su...
CVE-2006-6166——Cross-site scripting (XSS) vulnerability in jce.php in the JCE Admin Component in Ryan Demmer Joomla Content Editor (JCE...
CVE-2006-6164——The _dl_unsetenv function in loader.c in the ELF ld.so in OpenBSD 3.9 and 4.0 does not properly remove duplicate environ...
CVE-2006-6162——Cross-site scripting (XSS) vulnerability in tiki-edit_structures.php in TikiWiki 1.9.6 allows remote attackers to inject...
CVE-2006-6163——Cross-site scripting (XSS) vulnerability in tiki-setup_base.php in TikiWiki before 1.9.7 allows remote attackers to inje...
CVE-2006-6165HIGH7.8ld.so in FreeBSD, NetBSD, and possibly other BSD distributions does not remove certain harmful environment variables, wh...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now