2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-5756Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2006-6098Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2006-7174PHP remote file inclusion vulnerability in includes/functions.php in the Dimension module of phpBB allows remote attacke...
CVE-2006-7172Multiple SQL injection vulnerabilities in php-stats.recphp.php in PHP-Stats 0.1.9.1b and earlier allow remote attackers ...
CVE-2006-7173Direct static code injection vulnerability in admin.php in PHP-Stats 0.1.9.1b and earlier allows remote attackers to exe...
CVE-2006-7169PHP remote file inclusion vulnerability in includes/header_simple.php in Ultimate PHP Board (UPB) 2.0 and earlier allows...
CVE-2006-7168PHP remote file inclusion vulnerability in includes/not_mem.php in the Add Name module for PHP allows remote attackers t...
CVE-2006-7167Unspecified vulnerability in ProRat Server 1.9 Fix2 allows remote attackers to bypass the authentication mechanism for r...
CVE-2006-7166IBM WebSphere Application Server (WAS) 5.1.1.9 and earlier allows remote attackers to obtain JSP source code and other s...
CVE-2006-7165IBM WebSphere Application Server (WAS) 5.0 through 5.1.1.0 allows remote attackers to obtain JSP source code and other s...
CVE-2006-7164SimpleFileServlet in IBM WebSphere Application Server 5.0.1 through 5.0.2.7 on Linux and UNIX does not block certain inv...
CVE-2006-7171product_review.php in Koan Software Mega Mall allows remote attackers to obtain the installation path via a request with...
CVE-2006-7170Multiple SQL injection vulnerabilities in Koan Software Mega Mall allow remote attackers to execute arbitrary SQL comman...
CVE-2006-7163DreameeSoft Password Master 1.0 stores the database in an unencrypted format when the master password is set, which allo...
CVE-2006-7162PuTTY 0.59 and earlier uses weak file permissions for (1) ppk files containing private keys generated by puttygen and (2...
CVE-2006-7160The Sandbox.sys driver in Outpost Firewall PRO 4.0, and possibly earlier versions, does not validate arguments to hooked...
CVE-2006-7159Directory traversal vulnerability in include/prune_torrents.php in BTI-Tracker 1.3.2 (aka btitracker) allows remote atta...
CVE-2006-7158Cross-site scripting (XSS) vulnerability in Oracle Application Express (APEX) before 2.2.1, aka Oracle HTML DB, allows r...
CVE-2006-7157Buffer overflow in Google Earth v4.0.2091 (beta) allows remote user-assisted attackers to cause a denial of service (cra...
CVE-2006-7156PHP remote file inclusion vulnerability in addon_keywords.php in Keyword Replacer (keyword_replacer) 1.0 and earlier, a ...
CVE-2006-7155Novell BorderManager 3.8 SP4 generates the same ISAKMP cookies for the same source IP and port number during the same da...
CVE-2006-7154Iono allows remote attackers to obtain the full server path via certain requests to (1) templates/iono/admin/denied.tpl....
CVE-2006-7153PHP remote file inclusion vulnerability in index.php in MiniBB Forum 2 allows remote attackers to execute arbitrary code...
CVE-2006-7152default.asp in ASP-Nuke Community 1.5 and earlier allows remote attackers to gain privileges by setting certain pseudo c...
CVE-2006-7151Untrusted search path vulnerability in the libtool-ltdl library (libltdl.so) 1.5.22-2.3 in Fedora Core 5 might allow loc...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now