2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-5473 | — | — | 1.8% | Oct 24, 2006 | PHP remote file inclusion vulnerability in Description.php in Softerra PHP Developer Library 1.5.3 and earlier allows re... |
| CVE-2006-5474 | — | — | 1.8% | Oct 24, 2006 | The "forgot password" function in OneOrZero Helpdesk before 1.6.5.4 generates insecure passwords by concatenating the cu... |
| CVE-2006-5475 | — | — | 1.5% | Oct 24, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in the XML parser in Drupal 4.6.x before 4.6.10 and 4.7.x before 4.7... |
| CVE-2006-5476 | — | — | 1.8% | Oct 24, 2006 | Cross-site request forgery (CSRF) vulnerability in Drupal 4.6.x before 4.6.10 and 4.7.x before 4.7.4 allows remote attac... |
| CVE-2006-5477 | — | — | 1.4% | Oct 24, 2006 | Drupal 4.6.x before 4.6.10 and 4.7.x before 4.7.4 allows form submissions to be redirected, which allows remote attacker... |
| CVE-2006-5478 | — | — | 83.9% | Oct 24, 2006 | Multiple stack-based buffer overflows in Novell eDirectory 8.8.x before 8.8.1 FTF1, and 8.x up to 8.7.3.8, and Novell Ne... |
| CVE-2006-5479 | — | — | 1.2% | Oct 24, 2006 | The NCP Engine in Novell eDirectory before 8.7.3.8 FTF1 allows remote attackers to cause an unspecified denial of servic... |
| CVE-2006-5480 | — | — | 2.5% | Oct 24, 2006 | PHP remote file inclusion vulnerability in lib/rs.php in 2le.net Castor PHP Web Builder 1.1.1 allows remote attackers to... |
| CVE-2006-5481 | — | — | 1.2% | Oct 24, 2006 | Multiple PHP remote file inclusion vulnerabilities in 2le.net Castor PHP Web Builder 1.1.1 allow remote attackers to exe... |
| CVE-2006-4510 | — | — | 6.5% | Oct 24, 2006 | The evtFilteredMonitorEventsRequest function in the LDAP service in Novell eDirectory before 8.8.1 FTF1 allows remote at... |
| CVE-2006-4509 | — | — | 7.4% | Oct 24, 2006 | Integer overflow in the evtFilteredMonitorEventsRequest function in the LDAP service in Novell eDirectory before 8.8.1 F... |
| CVE-2006-4573 | — | — | 2.1% | Oct 24, 2006 | Multiple unspecified vulnerabilities in the "utf8 combining characters handling" (utf8_handle_comb function in encoding.... |
| CVE-2006-3455 | — | — | 0.4% | Oct 23, 2006 | The SAVRT.SYS device driver, as used in Symantec AntiVirus Corporate Edition 8.1 and 9.0.x up to 9.0.3, and Symantec Cli... |
| CVE-2006-5459 | — | — | 1.2% | Oct 23, 2006 | Multiple PHP remote file inclusion vulnerabilities in Download-Engine 1.4.2 and earlier allow remote attackers to execut... |
| CVE-2006-5460 | — | — | 1.2% | Oct 23, 2006 | Multiple PHP remote file inclusion vulnerabilities in Hinton Design phpht Topsites allow remote attackers to execute arb... |
| CVE-2006-5445 | — | — | 3.4% | Oct 23, 2006 | Unspecified vulnerability in the SIP channel driver (channels/chan_sip.c) in Asterisk 1.2.x before 1.2.13 and 1.4.x befo... |
| CVE-2006-5443 | — | — | 1.3% | Oct 23, 2006 | Unspecified vulnerability in XIAO Gang WWW Interactive Mathematics Server (WIMS) before 3.60 allows remote attackers to ... |
| CVE-2006-5444 | — | — | 85.0% | Oct 23, 2006 | Integer overflow in the get_input function in the Skinny channel driver (chan_skinny.c) in Asterisk 1.0.x before 1.0.12 ... |
| CVE-2006-5446 | — | — | 1.0% | Oct 23, 2006 | SQL injection vulnerability in lobby/config.php in Casinosoft Casino Script (aka Masvet) 3.2 allows remote attackers to ... |
| CVE-2006-5447 | — | — | 1.2% | Oct 23, 2006 | Cross-site scripting (XSS) vulnerability in index.php in DEV Web Management System (WMS) 1.5 allows remote attackers to ... |
| CVE-2006-5448 | — | — | 11.8% | Oct 23, 2006 | The drmstor.dll ActiveX object in Microsoft Windows Digital Rights Management System (DRM) allows remote attackers to ca... |
| CVE-2006-5449 | — | — | 2.0% | Oct 23, 2006 | procmail in Ingo H3 before 1.1.2 Horde module allows remote authenticated users to execute arbitrary commands via shell ... |
| CVE-2006-5450 | — | — | 1.3% | Oct 23, 2006 | SQL injection vulnerability in index.asp in Kinesis Interactive Cinema System (KICS) CMS allows remote attackers to exec... |
| CVE-2006-5451 | — | — | 1.7% | Oct 23, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in TorrentFlux 2.1 allow remote attackers to inject arbitrary web sc... |
| CVE-2006-5452 | — | — | 0.6% | Oct 23, 2006 | Buffer overflow in dtmail on HP Tru64 UNIX 4.0F through 5.1B and HP-UX B.11.00 through B.11.23 allows local users to exe... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now