2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2006-5186——PHP remote file inclusion vulnerability in functions.php in phpMyProfiler 0.9.6 and earlier, when register_globals is en...
CVE-2006-5187——PHP remote file inclusion vulnerability in includes/functions.php in Bulletin Board Ace (BBaCE) 3.5 and earlier allows r...
CVE-2006-5188——Directory traversal vulnerability in download.php in webGENEius GOOP Gallery 2.0.2 allows remote attackers to read or li...
CVE-2006-5189——PHP remote file inclusion vulnerability in funzioni/lib/show_hlp.php in klinza professional cms 5.0.1 and earlier allows...
CVE-2006-5190——Multiple cross-site scripting (XSS) vulnerabilities in osCommerce 2.2 Milestone 2 Update 060817 allow remote attackers t...
CVE-2006-5191——PHP remote file inclusion vulnerability in includes/functions_static_topics.php in the Nivisec Static Topics module for ...
CVE-2006-5192——PHP remote file inclusion vulnerability in includes/footer.php in phpGreetz 0.99 and earlier allows remote attackers to ...
CVE-2006-5193——PHP remote file inclusion vulnerability in index.php in Josh Schmidt WikyBlog 1.2.3 and earlier allows remote attackers ...
CVE-2006-5194——Cross-site scripting (XSS) vulnerability in index.php in net2ftp 0.93 allows remote attackers to inject arbitrary web sc...
CVE-2006-5195——Multiple cross-site scripting (XSS) vulnerabilities in Wheatblog 1.0 and 1.1 allow remote attackers to inject arbitrary ...
CVE-2006-5196——The HTTP interface in the Motorola SURFboard SB4200 Cable Modem allows remote attackers to cause a denial of service (de...
CVE-2006-5197——PDshopPro stores sensitive information under the web root with insufficient access control, which allows remote attacker...
CVE-2006-5201——Multiple packages on Sun Solaris, including (1) NSS; (2) Java JDK and JRE 5.0 Update 8 and earlier, SDK and JRE 1.4.x up...
CVE-2006-5202——Linksys WRT54g firmware 1.00.9 does not require credentials when making configuration changes, which allows remote attac...
CVE-2006-5203——Invision Power Board (IPB) 2.1.7 and earlier allows remote restricted administrators to inject arbitrary web script or H...
CVE-2006-5204——Cross-site scripting (XSS) vulnerability in action_admin/member.php in Invision Power Board (IPB) 2.1.7 and earlier allo...
CVE-2006-5205——Directory traversal vulnerability in Invision Gallery 2.0.7 allows remote attackers to read arbitrary files via a .. (do...
CVE-2006-5206——SQL injection vulnerability in Invision Gallery 2.0.7 allows remote attackers to execute arbitrary SQL commands via the ...
CVE-2006-5207——PHP remote file inclusion vulnerability in images/smileys/smileys_packs.php in phpMyTeam 2.0, when register_globals is e...
CVE-2006-5208——Multiple SQL injection vulnerabilities in PHP Classifieds 7.1 allow remote attackers to execute arbitrary SQL commands v...
CVE-2006-5209——PHP remote file inclusion vulnerability in admin/admin_topic_action_logging.php in Admin Topic Action Logging Mod 0.95 a...
CVE-2006-5211——Trend Micro OfficeScan 6.0 in Client/Server/Messaging (CSM) Suite for SMB 2.0 before 6.0.0.1385, and OfficeScan Corporat...
CVE-2006-5212——Trend Micro OfficeScan 6.0 in Client/Server/Messaging (CSM) Suite for SMB 2.0 before 6.0.0.1385, and OfficeScan Corporat...
CVE-2006-5213——Sun Solaris 10 before 20061006 uses "incorrect and insufficient permission checks" that allow local users to intercept o...
CVE-2006-5214——Race condition in the Xsession script, as used by X Display Manager (xdm) in NetBSD before 20060212, X.Org before 200602...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now