2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-5771——Cross-site scripting (XSS) vulnerability in Arkoon SSL360 1.0 and 2.0 before 2.0/2 allows remote attackers to inject arb...
CVE-2006-5772——Multiple SQL injection vulnerabilities in index.php in FreeWebshop 2.2.1 and earlier allow remote attackers to execute a...
CVE-2006-5773——Directory traversal vulnerability in index.php in FreeWebshop 2.2.1 and earlier allows remote attackers to read arbitrar...
CVE-2006-5774——Cross-site scripting (XSS) vulnerability in Hyper NIKKI System before 2.19.9 allows remote attackers to inject arbitrary...
CVE-2006-5775——Cross-site scripting (XSS) vulnerability in profile.php in FunkBoard 0.71 before 4 November 2006 at 18:16 GMT allows rem...
CVE-2006-5759——index.php in Rhadrix If-CMS, possibly 1.01 and 2.07, allows remote attackers to obtain the full path of the web server v...
CVE-2006-5757——Race condition in the __find_get_block_slow function in the ISO9660 filesystem in Linux 2.6.18 and possibly other versio...
CVE-2006-5758——The Graphics Rendering Engine in Microsoft Windows 2000 through 2000 SP4 and Windows XP through SP2 maps GDI Kernel stru...
CVE-2006-5738HIGH7.2Multiple SQL injection vulnerabilities in PunBB before 1.2.14 allow remote authenticated administrators to execute arbit...
CVE-2006-5733——Directory traversal vulnerability in error.php in PostNuke 0.763 and earlier allows remote attackers to include and exec...
CVE-2006-5743——Multiple cross-site scripting (XSS) vulnerabilities in Highwall Enterprise and Highwall Endpoint 4.0.2.11045 management ...
CVE-2006-5729——Yazd Discussion Forum before 3.0 beta does not properly manage forum permissions, which allows remote authenticated user...
CVE-2006-5730——PHP remote file inclusion vulnerability in manager/media/browser/mcpuk/connectors/php/Commands/Thumbnail.php in Modx CMS...
CVE-2006-5731——Directory traversal vulnerability in classes/index.php in Lithium CMS 4.04c and earlier allows remote attackers to inclu...
CVE-2006-5732——SQL injection vulnerability in logout.php in T.G.S. CMS 0.1.7 and earlier allows remote attackers to execute arbitrary S...
CVE-2006-5734——Multiple PHP remote file inclusion vulnerabilities in ATutor 1.5.3.2 allow remote attackers to execute arbitrary PHP cod...
CVE-2006-5735——Directory traversal vulnerability in include/common.php in PunBB before 1.2.14 allows remote authenticated users to incl...
CVE-2006-5736——SQL injection vulnerability in search.php in PunBB before 1.2.14, when the PHP installation is vulnerable to CVE-2006-30...
CVE-2006-5737——PunBB uses a predictable cookie_seed value that can be derived from the time of registration of the superadmin account (...
CVE-2006-5739——PHP remote file inclusion vulnerability in cpadmin/cpa_index.php in Leicestershire communityPortals 1.0_2005-10-18_12-31...
CVE-2006-5741——Multiple cross-site scripting (XSS) vulnerabilities in AirMagnet Enterprise before 7.5 build 6307 allow remote attackers...
CVE-2006-5742——The AirMagnet Enterprise console and Remote Sensor console (Laptop) in AirMagnet Enterprise before 7.5 build 6307 allows...
CVE-2006-5744——Multiple SQL injection vulnerabilities in Highwall Enterprise and Highwall Endpoint 4.0.2.11045 management interface all...
CVE-2006-5745——Unspecified vulnerability in the setRequestHeader method in the XMLHTTP (XML HTTP) ActiveX Control 4.0 in Microsoft XML ...
CVE-2006-5746——The console in AirMagnet Enterprise before 7.5 build 6307 does not properly validate the Enterprise Server certificate, ...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now