2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-4181——Format string vulnerability in the sqllog function in the SQL accounting code for radiusd in GNU Radius 1.2 and 1.3 allo...
CVE-2006-6135——Multiple unspecified vulnerabilities in IBM WebSphere Application Server 6.1.0 before Fix Pack 3 (6.1.0.3) have unknown ...
CVE-2006-6131——Untrusted search path vulnerability in (1) WSAdminServer and (2) WSWebServer in Kerio WebSTAR (4D WebSTAR Server Suite) ...
CVE-2006-6133——Stack-based buffer overflow in Visual Studio Crystal Reports for Microsoft Visual Studio .NET 2002 and 2002 SP1, .NET 20...
CVE-2006-6130——Apple Mac OS X AppleTalk allows local users to cause a denial of service (kernel panic) by calling the AIOCREGLOCALZN io...
CVE-2006-6134——Heap-based buffer overflow in the WMCheckURLScheme function in WMVCORE.DLL in Microsoft Windows Media Player (WMP) 10.00...
CVE-2006-6132——Multiple SQL injection vulnerabilities in Link Exchange Lite allow remote attackers to execute arbitrary SQL commands vi...
CVE-2006-5896——REMLAB Web Mech Designer 2.0.5 allows remote attackers to obtain the full path of the script via an incorrect Tonnage pa...
CVE-2006-5750——Directory traversal vulnerability in the DeploymentFileRepository class in JBoss Application Server (jbossas) 3.2.4 thro...
CVE-2006-6129——Integer overflow in the fatfile_getarch2 in Apple Mac OS X allows local users to cause a denial of service and possibly ...
CVE-2006-6125——Heap-based buffer overflow in the wireless driver (WG311ND5.SYS) 2.3.1.10 for NetGear WG311v1 wireless adapter allows re...
CVE-2006-6126——Apple Mac OS X allows local users to cause a denial of service (memory corruption) via a crafted Mach-O binary with a ma...
CVE-2006-6127——Apple Mac OS X kernel allows local users to cause a denial of service via a process that uses kevent to register a queue...
CVE-2006-6128——The ReiserFS functionality in Linux kernel 2.6.18, and possibly other versions, allows local users to cause a denial of ...
CVE-2006-5965——PassGo SSO Plus 2.1.0.32, and probably earlier versions, uses insecure permissions (Everyone/Full Control) for the PassG...
CVE-2006-6121——Acer Notebook LunchApp.APlunch ActiveX control allows remote attackers to execute arbitrary commands by calling the Run ...
CVE-2006-6122——Multiple buffer overflows in TIN before 1.8.2 have unspecified impact and attack vectors, a different vulnerability than...
CVE-2006-6123——Coppermine Photo Gallery (CPG) 1.4.8 stable, with register_globals enabled, allows remote attackers to bypass XSS protec...
CVE-2006-6124——Cross-site scripting (XSS) vulnerability in SeleniumServer Web Server 1.0 allows remote attackers to inject arbitrary we...
CVE-2006-6114——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-5854. Reason: This candidate is a duplicate of...
CVE-2006-5869——pstotext before 1.9 allows user-assisted attackers to execute arbitrary commands via shell metacharacters in a file name...
CVE-2006-6109——Multiple SQL injection vulnerabilities in CandyPress Store 3.5.2.14 allow remote attackers to execute arbitrary SQL comm...
CVE-2006-6119——mmgallery 1.55 allows remote attackers to obtain sensitive information via a direct request for thumbs.php, which reveal...
CVE-2006-6108——Cross-site scripting (XSS) vulnerability in EC-CUBE before 1.0.1a-beta allows remote attackers to inject arbitrary web s...
CVE-2006-6110——Multiple SQL injection vulnerabilities in an unspecified BPG-InfoTech Content Management System product allow remote att...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now