2006 CVE Vulnerabilities
7,145 CVEs published in 2006.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2006-4979 | — | — | 2.8% | Sep 25, 2006 | Direct static code injection vulnerability in cfgphpquiz/install.php in Walter Beschmout PhpQuiz 1.2 and earlier allows ... |
| CVE-2006-4967 | — | — | 1.6% | Sep 25, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in NextAge Cart allow remote attackers to inject arbitrary web scrip... |
| CVE-2006-4968 | — | — | 9.4% | Sep 25, 2006 | PHP remote file inclusion vulnerability in includes/functions_admin.php in PNphpBB 1.2g allows remote attackers to execu... |
| CVE-2006-4969 | — | — | 7.4% | Sep 25, 2006 | Multiple PHP remote file inclusion vulnerabilities in WAHM E-Commerce Pie Cart Pro allow remote attackers to execute arb... |
| CVE-2006-4970 | — | — | 2.7% | Sep 25, 2006 | PHP remote file inclusion vulnerability in enc/content.php in WAHM E-Commerce Pie Cart Pro allows remote attackers to ex... |
| CVE-2006-4971 | — | — | 1.3% | Sep 25, 2006 | MyBB (aka MyBulletinBoard) allows remote attackers to obtain sensitive information via a direct request for inc/plugins/... |
| CVE-2006-4972 | — | — | 1.2% | Sep 25, 2006 | Cross-site scripting (XSS) vulnerability in archive/index.php/forum-4.html in MyBB (aka MyBulletinBoard) allows remote a... |
| CVE-2006-4973 | — | — | 1.9% | Sep 25, 2006 | Cross-site scripting (XSS) vulnerability in Default.aspx in Perpetual Motion Interactive Systems DotNetNuke before 3.3.5... |
| CVE-2006-4974 | — | — | 4.1% | Sep 25, 2006 | Buffer overflow in Ipswitch WS_FTP Limited Edition (LE) 5.08 allows remote FTP servers to execute arbitrary code via a l... |
| CVE-2006-4975 | — | — | 1.2% | Sep 25, 2006 | Yahoo! Messenger for WAP permits saving messages that contain JavaScript, which allows user-assisted remote attackers to... |
| CVE-2006-4976 | — | — | 1.4% | Sep 25, 2006 | The Date Library in John Lim ADOdb Library for PHP allows remote attackers to obtain sensitive information via a direct ... |
| CVE-2006-4977 | — | — | 3.0% | Sep 25, 2006 | Multiple unrestricted file upload vulnerabilities in (1) back/upload_img.php and (2) admin/upload_img.php in Walter Besc... |
| CVE-2006-4978 | — | — | 1.8% | Sep 25, 2006 | Multiple SQL injection vulnerabilities in Walter Beschmout PhpQuiz 1.2 and earlier allow remote attackers to execute arb... |
| CVE-2006-4966 | — | — | 3.3% | Sep 25, 2006 | PHP remote file inclusion vulnerability in inc/ifunctions.php in chumpsoft phpQuestionnaire (phpQ) 3.12 allows remote at... |
| CVE-2006-4965 | — | — | 12.4% | Sep 25, 2006 | Apple QuickTime 7.1.3 Player and Plug-In allows remote attackers to execute arbitrary JavaScript code and possibly condu... |
| CVE-2006-4950 | — | — | 5.7% | Sep 23, 2006 | Cisco IOS 12.2 through 12.4 before 20060920, as used by Cisco IAD2430, IAD2431, and IAD2432 Integrated Access Devices, t... |
| CVE-2006-4951 | — | — | 2.5% | Sep 23, 2006 | Neon WebMail for Java before 5.08 allows remote attackers to execute arbitrary Java (JSP) code by sending an e-mail mess... |
| CVE-2006-4952 | — | — | 7.8% | Sep 23, 2006 | The updatemail servlet in Neon WebMail for Java before 5.08 allows remote attackers to move e-mail messages of arbitrary... |
| CVE-2006-4953 | — | — | 3.7% | Sep 23, 2006 | Multiple SQL injection vulnerabilities in Neon WebMail for Java before 5.08 allow remote attackers to execute arbitrary ... |
| CVE-2006-4954 | — | — | 7.8% | Sep 23, 2006 | The updateuser servlet in Neon WebMail for Java before 5.08 does not validate the in_id parameter, which allows remote a... |
| CVE-2006-4955 | — | — | 7.9% | Sep 23, 2006 | Directory traversal vulnerability in the downloadfile servlet in Neon WebMail for Java before 5.08 allows remote attacke... |
| CVE-2006-4956 | — | — | 4.6% | Sep 23, 2006 | Cross-site scripting (XSS) vulnerability in the updateuser servlet in Neon WebMail for Java before 5.08 allows remote at... |
| CVE-2006-4957 | — | — | 1.1% | Sep 23, 2006 | SQL injection vulnerability in the GetMember function in functions.php in MyReview 1.9.4 allows remote attackers to exec... |
| CVE-2006-4958 | — | — | 2.9% | Sep 23, 2006 | Multiple cross-site scripting (XSS) vulnerabilities in Sun Secure Global Desktop (SSGD, aka Tarantella) before 4.20.983 ... |
| CVE-2006-4959 | — | — | 1.7% | Sep 23, 2006 | Sun Secure Global Desktop (SSGD, aka Tarantella) before 4.3 allows remote attackers to obtain sensitive information, inc... |
Check if your code is affected by 2006 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now