2006 CVE Vulnerabilities

7,145 CVEs published in 2006.

CVE IDSeverityCVSSDescription
CVE-2006-5201Multiple packages on Sun Solaris, including (1) NSS; (2) Java JDK and JRE 5.0 Update 8 and earlier, SDK and JRE 1.4.x up...
CVE-2006-5202Linksys WRT54g firmware 1.00.9 does not require credentials when making configuration changes, which allows remote attac...
CVE-2006-5203Invision Power Board (IPB) 2.1.7 and earlier allows remote restricted administrators to inject arbitrary web script or H...
CVE-2006-5204Cross-site scripting (XSS) vulnerability in action_admin/member.php in Invision Power Board (IPB) 2.1.7 and earlier allo...
CVE-2006-5205Directory traversal vulnerability in Invision Gallery 2.0.7 allows remote attackers to read arbitrary files via a .. (do...
CVE-2006-5206SQL injection vulnerability in Invision Gallery 2.0.7 allows remote attackers to execute arbitrary SQL commands via the ...
CVE-2006-5207PHP remote file inclusion vulnerability in images/smileys/smileys_packs.php in phpMyTeam 2.0, when register_globals is e...
CVE-2006-5208Multiple SQL injection vulnerabilities in PHP Classifieds 7.1 allow remote attackers to execute arbitrary SQL commands v...
CVE-2006-5209PHP remote file inclusion vulnerability in admin/admin_topic_action_logging.php in Admin Topic Action Logging Mod 0.95 a...
CVE-2006-5211Trend Micro OfficeScan 6.0 in Client/Server/Messaging (CSM) Suite for SMB 2.0 before 6.0.0.1385, and OfficeScan Corporat...
CVE-2006-5212Trend Micro OfficeScan 6.0 in Client/Server/Messaging (CSM) Suite for SMB 2.0 before 6.0.0.1385, and OfficeScan Corporat...
CVE-2006-5213Sun Solaris 10 before 20061006 uses "incorrect and insufficient permission checks" that allow local users to intercept o...
CVE-2006-5214Race condition in the Xsession script, as used by X Display Manager (xdm) in NetBSD before 20060212, X.Org before 200602...
CVE-2006-5215The Xsession script, as used by X Display Manager (xdm) in NetBSD before 20060212, X.Org before 20060317, and Solaris 8 ...
CVE-2006-5216Stack-based buffer overflow in Sergey Lyubka Simple HTTPD (shttpd) 1.34 allows remote attackers to execute arbitrary cod...
CVE-2006-5217SQL injection vulnerability in giris_yap.asp in Emek Portal 2.1 allows remote attackers to execute arbitrary SQL command...
CVE-2006-5218Integer overflow in the systrace_preprepl function (STRIOCREPLACE) in systrace in OpenBSD 3.9 and NetBSD 3 allows local ...
CVE-2006-5219SQL injection vulnerability in blog/index.php in the blog module in Moodle 1.6.2 allows remote attackers to execute arbi...
CVE-2006-5220Multiple PHP remote file inclusion vulnerabilities in WebYep 1.1.9, when register_globals is enabled, allow remote attac...
CVE-2006-4812Integer overflow in PHP 5 up to 5.1.6 and 4 before 4.3.0 allows remote attackers to execute arbitrary code via an argume...
CVE-2006-4997HIGH7.5The clip_mkip function in net/atm/clip.c of the ATM subsystem in Linux kernel allows remote attackers to cause a denial ...
CVE-2006-4927The (a) NAVENG (NAVENG.SYS) and (b) NAVEX15 (NAVEX15.SYS) device drivers 20061.3.0.12 and later, as used in Symantec Ant...
CVE-2006-4980Buffer overflow in the repr function in Python 2.3 through 2.6 before 20060822 allows context-dependent attackers to cau...
CVE-2006-3741The perfmonctl system call (sys_perfmonctl) in Linux kernel 2.4.x and 2.6 before 2.6.18, when running on Itanium systems...
CVE-2006-5150SQL injection vulnerability in the reports system in OpenBiblio before 0.5.2 allows remote attackers with report privile...

Check if your code is affected by 2006 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now