2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-5610 | CRITICAL | 9.8 | 1.3% | Oct 31, 2006 | PHP remote file inclusion vulnerability in player/includes/common.php in Teake Nutma Foing, as modified in Fully Modded ... |
| CVE-2006-5611 | — | — | 1.3% | Oct 31, 2006 | Unspecified vulnerability in Toshiba Bluetooth Stack before 4.20.01 has unspecified impact and attack vectors, related t... |
| CVE-2006-5607 | — | — | 1.9% | Oct 30, 2006 | Directory traversal vulnerability in /cgi-bin/webcm in INCA IM-204 allows remote attackers to read arbitrary files via a... |
| CVE-2006-5608 | — | — | 1.3% | Oct 30, 2006 | SQL injection vulnerability in Extended Tracker (xtracker) 4.7 before 1.5.2.1 for Drupal allows remote attackers to exec... |
| CVE-2006-5609 | — | — | 3.7% | Oct 30, 2006 | Directory traversal vulnerability in dir.php in TorrentFlux 2.1 allows remote attackers to list arbitrary directories vi... |
| CVE-2006-5470 | — | — | — | Oct 30, 2006 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-5740. Reason: This candidate is a duplicate of... |
| CVE-2006-5603 | CRITICAL | 9.8 | 1.2% | Oct 30, 2006 | SQL injection vulnerability in pop_mail.asp in Snitz Forums 2000 3.4.06 allows remote attackers to execute arbitrary SQL... |
| CVE-2006-5604 | — | — | 2.2% | Oct 30, 2006 | Directory traversal vulnerability in phpcards.header.php in phpCards 1.3 allows remote attackers to include and execute ... |
| CVE-2006-5605 | — | — | 1.6% | Oct 30, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in phpcards.footer.php in phpCards 1.3 allow remote attackers to inj... |
| CVE-2006-5601 | — | — | 4.2% | Oct 28, 2006 | Stack-based buffer overflow in the eap_do_notify function in eap.c in xsupplicant before 1.2.6, and possibly other versi... |
| CVE-2006-5602 | — | — | 1.2% | Oct 28, 2006 | Multiple memory leaks in xsupplicant before 1.2.6, and possibly other versions, allow attackers to cause a denial of ser... |
| CVE-2006-5598 | — | — | 1.2% | Oct 28, 2006 | Cross-site scripting (XSS) vulnerability in index.php for GOOP Gallery 2.0, and possibly other versions before 2.0.3, al... |
| CVE-2006-5599 | — | — | 1.3% | Oct 28, 2006 | Cross-site scripting (XSS) vulnerability in Oracle Application Express (formerly HTML DB) before 2.2.1 allows remote att... |
| CVE-2006-5600 | — | — | 0.3% | Oct 28, 2006 | Axalto Protiva 1.1, possibly only non-commercial versions, stores passwords in plaintext in files with insecure permissi... |
| CVE-2006-4574 | HIGH | 7.5 | 4.1% | Oct 28, 2006 | Off-by-one error in the MIME Multipart dissector in Wireshark (formerly Ethereal) 0.10.1 through 0.99.3 allows remote at... |
| CVE-2006-4513 | — | — | 3.4% | Oct 28, 2006 | Multiple integer overflows in the WV library in wvWare (formerly mswordview) before 1.2.3, as used by AbiWord, KWord, an... |
| CVE-2006-5469 | — | — | 2.1% | Oct 28, 2006 | Unspecified vulnerability in the WBXML dissector in Wireshark (formerly Ethereal) 0.10.11 through 0.99.3 allows remote a... |
| CVE-2006-5597 | — | — | 2.5% | Oct 28, 2006 | join.asp in MiniHTTP Web Forum & File Server PowerPack 4.0 allows remote attackers to add or modify arbitrary user accou... |
| CVE-2006-5595 | — | — | 1.1% | Oct 28, 2006 | Unspecified vulnerability in the AirPcap support in Wireshark (formerly Ethereal) 0.99.3 has unspecified attack vectors ... |
| CVE-2006-5596 | — | — | 3.0% | Oct 28, 2006 | Directory traversal vulnerability in the SSL server in AEP Smartgate 4.3b allows remote attackers to download arbitrary ... |
| CVE-2006-4805 | — | — | 4.1% | Oct 27, 2006 | epan/dissectors/packet-xot.c in the XOT dissector (dissect_xot_pdu) in Wireshark (formerly Ethereal) 0.9.8 through 0.99.... |
| CVE-2006-5740 | — | — | 2.1% | Oct 27, 2006 | Unspecified vulnerability in the LDAP dissector in Wireshark (formerly Ethereal) 0.99.3 allows remote attackers to cause... |
| CVE-2006-5468 | — | — | 2.7% | Oct 27, 2006 | Unspecified vulnerability in the HTTP dissector in Wireshark (formerly Ethereal) 0.99.3 allows remote attackers to cause... |
| CVE-2006-5467 | — | — | 4.1% | Oct 27, 2006 | The cgi.rb CGI library for Ruby 1.8 allows remote attackers to cause a denial of service (infinite loop and CPU consumpt... |
| CVE-2006-5587 | — | — | 2.7% | Oct 27, 2006 | Multiple PHP remote file inclusion vulnerabilities in MDweb 1.3 and earlier (Mdweb132-postgres) allow remote attackers t... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now