2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-5306——Multiple PHP remote file inclusion vulnerabilities in the Journals System module 1.0.2 (RC2) and earlier for phpBB allow...
CVE-2006-4182——Integer overflow in ClamAV 0.88.1 and 0.88.4, and other versions before 0.88.5, allows remote attackers to cause a denia...
CVE-2006-5210——Directory traversal vulnerability in IronWebMail before 6.1.1 HotFix-17 allows remote attackers to read arbitrary files ...
CVE-2006-5295——Unspecified vulnerability in ClamAV before 0.88.5 allows remote attackers to cause a denial of service (scanning service...
CVE-2006-4154——Format string vulnerability in the mod_tcl module 1.0 for Apache 2.x allows context-dependent attackers to execute arbit...
CVE-2006-5296——PowerPoint in Microsoft Office 2003 does not properly handle a container object whose position value exceeds the record ...
CVE-2006-5297——Race condition in the safe_open function in the Mutt mail client 1.5.12 and earlier, when creating temporary files in an...
CVE-2006-5298——The mutt_adv_mktemp function in the Mutt mail client 1.5.12 and earlier does not properly verify that temporary files ha...
CVE-2006-5291——PHP remote file inclusion vulnerability in admin/includes/spaw/spaw_control.class.php in Download-Engine 1.4.2 allows re...
CVE-2006-5292——PHP remote file inclusion vulnerability in photo_comment.php in Exhibit Engine 1.5 RC 4 and earlier allows remote attack...
CVE-2006-5293——Cross-site scripting (XSS) vulnerability in index.php in PhpOutsourcing Noah's Classifieds 1.3 and earlier allows remote...
CVE-2006-5294——Cross-site scripting (XSS) vulnerability in index.php in phplist before 2.10.3 allows remote attackers to inject arbitra...
CVE-2006-5290——The ESS/ Network Controller and MicroServer Web Server components of Xerox WorkCentre and WorkCentre Pro 232, 238, 245, ...
CVE-2006-5287——Multiple SQL injection vulnerabilities in sign.php in Xeobook 0.93 allow remote attackers to execute arbitrary SQL comma...
CVE-2006-5288——Cisco 2700 Series Wireless Location Appliances before 2.1.34.0 have a default administrator username "root" and password...
CVE-2006-5289——Multiple PHP remote file inclusion vulnerabilities in Vtiger CRM 4.2 and earlier allow remote attackers to execute arbit...
CVE-2006-5280——PHP remote file inclusion vulnerability in includes/import-archive.php in Leicestershire communityPortals 1.0 build 2005...
CVE-2006-5286——Unspecified vulnerability in IKE.NLM in Novell BorderManager 3.8 allows attackers to cause a denial of service (crash) v...
CVE-2006-5281——PHP remote file inclusion vulnerability in naboard_pnr.php in n@board 3.1.9e and earlier allows remote attackers to exec...
CVE-2006-5282——Multiple PHP remote file inclusion vulnerabilities in SH-News 3.1 and earlier allow remote attackers to execute arbitrar...
CVE-2006-5283——PHP remote file inclusion vulnerability in ftag.php in Minichat 6.0 allows remote attackers to execute arbitrary PHP cod...
CVE-2006-5284——PHP remote file inclusion vulnerability in auth/phpbb.inc.php in Shen Cheng-Da PHP News Reader (aka pnews) 2.6.4 and ear...
CVE-2006-5285——SQL injection vulnerability in index.php in XeoPort 0.81, and possibly earlier, allows remote attackers to execute arbit...
CVE-2006-5264——Cross-site scripting (XSS) vulnerability in sql.php in MysqlDumper 1.21 b6 allows remote attackers to inject arbitrary w...
CVE-2006-5252——PHP remote file inclusion vulnerability in includes/core.lib.php in Webmedia Explorer 2.8.7 allows remote attackers to e...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now