2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-5771Cross-site scripting (XSS) vulnerability in Arkoon SSL360 1.0 and 2.0 before 2.0/2 allows remote attackers to inject arb...
CVE-2006-5772Multiple SQL injection vulnerabilities in index.php in FreeWebshop 2.2.1 and earlier allow remote attackers to execute a...
CVE-2006-5773Directory traversal vulnerability in index.php in FreeWebshop 2.2.1 and earlier allows remote attackers to read arbitrar...
CVE-2006-5774Cross-site scripting (XSS) vulnerability in Hyper NIKKI System before 2.19.9 allows remote attackers to inject arbitrary...
CVE-2006-5775Cross-site scripting (XSS) vulnerability in profile.php in FunkBoard 0.71 before 4 November 2006 at 18:16 GMT allows rem...
CVE-2006-5759index.php in Rhadrix If-CMS, possibly 1.01 and 2.07, allows remote attackers to obtain the full path of the web server v...
CVE-2006-5757Race condition in the __find_get_block_slow function in the ISO9660 filesystem in Linux 2.6.18 and possibly other versio...
CVE-2006-5758The Graphics Rendering Engine in Microsoft Windows 2000 through 2000 SP4 and Windows XP through SP2 maps GDI Kernel stru...
CVE-2006-5738HIGH7.2Multiple SQL injection vulnerabilities in PunBB before 1.2.14 allow remote authenticated administrators to execute arbit...
CVE-2006-5730PHP remote file inclusion vulnerability in manager/media/browser/mcpuk/connectors/php/Commands/Thumbnail.php in Modx CMS...
CVE-2006-5734Multiple PHP remote file inclusion vulnerabilities in ATutor 1.5.3.2 allow remote attackers to execute arbitrary PHP cod...
CVE-2006-5729Yazd Discussion Forum before 3.0 beta does not properly manage forum permissions, which allows remote authenticated user...
CVE-2006-5744Multiple SQL injection vulnerabilities in Highwall Enterprise and Highwall Endpoint 4.0.2.11045 management interface all...
CVE-2006-5731Directory traversal vulnerability in classes/index.php in Lithium CMS 4.04c and earlier allows remote attackers to inclu...
CVE-2006-5732SQL injection vulnerability in logout.php in T.G.S. CMS 0.1.7 and earlier allows remote attackers to execute arbitrary S...
CVE-2006-5733Directory traversal vulnerability in error.php in PostNuke 0.763 and earlier allows remote attackers to include and exec...
CVE-2006-5735Directory traversal vulnerability in include/common.php in PunBB before 1.2.14 allows remote authenticated users to incl...
CVE-2006-5736SQL injection vulnerability in search.php in PunBB before 1.2.14, when the PHP installation is vulnerable to CVE-2006-30...
CVE-2006-5737PunBB uses a predictable cookie_seed value that can be derived from the time of registration of the superadmin account (...
CVE-2006-5739PHP remote file inclusion vulnerability in cpadmin/cpa_index.php in Leicestershire communityPortals 1.0_2005-10-18_12-31...
CVE-2006-5741Multiple cross-site scripting (XSS) vulnerabilities in AirMagnet Enterprise before 7.5 build 6307 allow remote attackers...
CVE-2006-5742The AirMagnet Enterprise console and Remote Sensor console (Laptop) in AirMagnet Enterprise before 7.5 build 6307 allows...
CVE-2006-5743Multiple cross-site scripting (XSS) vulnerabilities in Highwall Enterprise and Highwall Endpoint 4.0.2.11045 management ...
CVE-2006-5745Unspecified vulnerability in the setRequestHeader method in the XMLHTTP (XML HTTP) ActiveX Control 4.0 in Microsoft XML ...
CVE-2006-5746The console in AirMagnet Enterprise before 7.5 build 6307 does not properly validate the Enterprise Server certificate, ...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now