CVE Feed

    Dashboard / CVE

    10
    Critical

    CVE-2006-6861

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Outfront Spooky Login 2.7 allow remote attackers to execute arbitrary SQL commands via (1) the UserUpdate parameter to login/register.asp or (2) unspecified parameters to includes/a_register.asp.

    Published: 31 Dec 2006
    6.8
    Medium

    CVE-2006-6862

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Outfront Spooky Login 2.7 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to (1) login/login.asp or (2) login/register.asp.

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-6878

    Last Modified: 23 Apr 2026

    admin/uploads.php in PHP-Update 2.7 and earlier allows remote attackers to gain privileges by setting the rights[7] parameter to 1 during a login action.

    Published: 31 Dec 2006
    5
    Medium

    CVE-2006-6886

    Last Modified: 23 Apr 2026

    phpwcms 1.2.5-DEV allows remote attackers to obtain sensitive information via a direct request for (1) files.public-userroot.inc.php or (2) files.private.additions.inc.php in include/inc_lib/, which reveals the path in various error messages.

    Published: 31 Dec 2006
    6.8
    Medium

    CVE-2006-6887

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in logahead UNU 1.0 allows remote attackers to upload and execute arbitrary PHP code via unspecified vectors related to plugins/widged/_widged.php (aka the WidgEd plugin), a different vulnerability than CVE-2006-6783. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 31 Dec 2006
    5.4
    Medium

    CVE-2006-6896

    Last Modified: 23 Apr 2026

    The Bluetooth stack in the Plantronic Headset does not properly implement Non-pairable mode, which allows remote attackers to conduct unauthorized pair-up operations.

    Published: 31 Dec 2006
    10
    Critical

    CVE-2006-6903

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the Toshiba Bluetooth stack allows remote attackers to gain administrative access (aka Remote Root) via unspecified vectors.

    Published: 31 Dec 2006
    7.2
    High

    CVE-2006-6906

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the Bluetooth stack on Mac OS 10.4.7 and earlier has unknown impact and local attack vectors, related to "Mach Exception Handling", a different issue than CVE-2006-6900.

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-6912

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in phpMyFAQ 1.6.7 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors, possibly the userfile or filename parameter.

    Published: 31 Dec 2006
    4
    Medium

    CVE-2006-6915

    Last Modified: 23 Apr 2026

    ftpd in IBM AIX 5.2.0 and 5.3.0 allows remote authenticated users to cause a denial of service (port exhaustion) via unspecified vectors. NOTE: some details were obtained from third party sources.

    Published: 31 Dec 2006
    5
    Medium

    CVE-2006-6914

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in ftpd in IBM AIX 5.2.0 and 5.3.0 allows remote attackers to obtain sensitive information, including passwords, via unspecified vectors.

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-4575

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in The Address Book 1.04e allow remote attackers to execute arbitrary SQL commands via the (1) lastname, (2) firstname, (3) passwordOld, (4) passwordNew, (5) id, (6) language, (7) defaultLetter, (8) newuserPass, (9) newuserType, (10) newuserEmail parameters in (a) user.php; the (11) goTo and (12) search parameters in (b) search.php; and the (13) groupAddName parameter in (c) save.php.

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-5266

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in Microsoft Dynamics GP (formerly Great Plains) 9.0 and earlier allow remote attackers to execute arbitrary code via (1) a crafted Distributed Process Manager (DPM) message to the (a) DPM component, or a (2) long string or (3) long IP address in a Distributed Process Server (DPS) message to the DPM or (b) DPS component.

    Published: 31 Dec 2006
    9.3
    Critical

    CVE-2006-5574

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the Brazilian Portuguese Grammar Checker in Microsoft Office 2003 and the Multilingual Interface for Office 2003, Project 2003, and Visio 2003 allows user-assisted remote attackers to execute arbitrary code via crafted text that is not properly parsed.

    Published: 31 Dec 2006
    7.8
    High

    CVE-2006-5974

    Last Modified: 23 Apr 2026

    fetchmail 6.3.5 and 6.3.6 before 6.3.6-rc4, when refusing a message delivered via the mda option, allows remote attackers to cause a denial of service (crash) via unknown vectors that trigger a NULL pointer dereference when calling the (1) ferror or (2) fflush functions.

    Published: 31 Dec 2006
    9.3
    Critical

    CVE-2006-6143

    Last Modified: 23 Apr 2026

    The RPC library in Kerberos 5 1.4 through 1.4.4, and 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmind) and other products that use this library, calls an uninitialized function pointer in freed memory, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.

    Published: 31 Dec 2006
    7.8
    High

    CVE-2006-6829

    Last Modified: 23 Apr 2026

    Efkan Forum 1.0 and earlier store sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for forum.mdb. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-6830

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in b2verifauth.php in b2 Blog 0.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the index parameter.

    Published: 31 Dec 2006
    6.8
    Medium

    CVE-2006-6837

    Last Modified: 23 Apr 2026

    Multiple stack-based buffer overflows in the (1) LoadTree, (2) ReadHeader, and (3) LoadXBOXTree functions in the ISO (iso_wincmd) plugin 1.7.3.3 and earlier for Total Commander allow user-assisted remote attackers to execute arbitrary code via a long pathname in an ISO image.

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-6838

    Last Modified: 23 Apr 2026

    Rediff Bol Downloader ActiveX (OCX) control allows remote attackers to execute arbitrary files, and obtain sensitive information (usernames and pathnames), via a URL in the url vbscript parameter.

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-6843

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in the BE IT EasyPartner 0.0.9 beta component for Joomla! allows remote attackers to execute arbitrary PHP code via unspecified vectors. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-6846

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in While You Were Out (WYWO) InOut Board 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the num parameter in (a) phonemessage.asp, (2) the catcode parameter in (b) faqDsp.asp, and the (3) Username and (4) Password fields in (c) login.asp.

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-6849

    Last Modified: 23 Apr 2026

    administration/index.php in Cahier de texte (CDT) 2.2 does not properly exit when authentication fails, which allows remote attackers to perform unauthorized administrative actions.

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-6850

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in include.php in the Roster Module (character_roster) in Shadowed Portal 5.7 allows remote attackers to execute arbitrary PHP code via a URL in the mod_root parameter.

    Published: 31 Dec 2006
    5
    Medium

    CVE-2006-6855

    Last Modified: 23 Apr 2026

    AIDeX Mini-WebServer 1.1 early release 3 allows remote attackers to cause a denial of service (daemon crash) via a flood of HTTP GET requests, possibly related to display of HTTP log data by the GUI. NOTE: some of these details are obtained from third party information.

    Published: 31 Dec 2006
    9.8
    Critical

    CVE-2006-6863

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in the Enigma2 plugin (Enigma2.php) in Enigma WordPress Bridge allows remote attackers to execute arbitrary PHP code via a URL in the boarddir parameter. NOTE: CVE disputes this issue, since $boarddir is set to a fixed value

    Published: 31 Dec 2006
    9.3
    Critical

    CVE-2006-6869

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in includes/search/search_mdforum.php in MAXdev MDForum 2.0.1 and earlier, when magic_quotes_gpc is disabled and register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the PNSVlang cookie to error.php, as demonstrated by injecting PHP sequences into an Apache HTTP Server log file, which is then included by error.php.

    Published: 31 Dec 2006
    5
    Medium

    CVE-2006-6870

    Last Modified: 23 Apr 2026

    The consume_labels function in avahi-core/dns.c in Avahi before 0.6.16 allows remote attackers to cause a denial of service (infinite loop) via a crafted compressed DNS response with a label that points to itself.

    Published: 31 Dec 2006
    6
    Medium

    CVE-2006-6879

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in admin/uploads.php in PHP-Update 2.7 and earlier allows remote authenticated users to upload arbitrary PHP scripts to the gfx/ and files/ directories via the userfile parameter.

    Published: 31 Dec 2006
    5
    Medium

    CVE-2006-6888

    Last Modified: 23 Apr 2026

    P-News 1.16 and 1.17 store sensitive information under the web root with insufficient access control, which allows remote attackers to obtain the administrative account name and password hash via a direct request for db/user.dat.

    Published: 31 Dec 2006
    5
    Medium

    CVE-2006-6893

    Last Modified: 23 Apr 2026

    Tor allows remote attackers to discover the IP address of a hidden service by accessing this service at a high rate, thereby changing the server's CPU temperature and consequently changing the pattern of time values visible through (1) ICMP timestamps, (2) TCP sequence numbers, and (3) TCP timestamps, a different vulnerability than CVE-2006-0414. NOTE: it could be argued that this is a laws-of-physics vulnerability that is a fundamental design limitation of certain hardware implementations, so perhaps this issue should not be included in CVE.

    Published: 31 Dec 2006
    2.9
    Low

    CVE-2006-6895

    Last Modified: 23 Apr 2026

    The Bluetooth stack in the Sony Ericsson T60 does not properly implement "Limited discoverable" mode, which allows remote attackers to obtain unauthorized inquiry responses.

    Published: 31 Dec 2006
    5.4
    Medium

    CVE-2006-6897

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in Widcomm Bluetooth for Windows (BTW) 3.0.1.905 allows remote attackers to conduct unauthorized file operations via a .. (dot dot) in an unspecified parameter.

    Published: 31 Dec 2006
    7.9
    High

    CVE-2006-6904

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the Broadcom Bluetooth stack allows remote attackers to gain administrative access (aka Remote Root) via unspecified vectors.

    Published: 31 Dec 2006
    10
    Critical

    CVE-2006-6908

    Last Modified: 23 Apr 2026

    Buffer overflow in the Bluetooth Stack COM Server in the Widcomm Bluetooth stack, as packaged as Widcomm Stack 3.x and earlier on Windows, Widcomm BTStackServer 1.4.2.10 and 1.3.2.7 on Windows, Widcomm Bluetooth Communication Software 1.4.1.03 on Windows, and the Bluetooth implementation in Windows Mobile or Windows CE on the HP IPAQ 2215 and 5450, allows remote attackers to cause a denial of service (service crash) and possibly execute arbitrary code via unspecified vectors.

    Published: 31 Dec 2006
    10
    Critical

    CVE-2006-6909

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in http.c in Karl Dahlke Edbrowse (aka Command line editor browser) 3.1.3 allows remote attackers to execute arbitrary code by operating an FTP server that sends directory listings with (1) long user names or (2) long group names.

    Published: 31 Dec 2006
    6
    Medium

    CVE-2006-6911

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in search.asp in Digitizing Quote And Ordering System 1.0 allows remote authenticated users to execute arbitrary SQL commands via the ordernum parameter.

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-6916

    Last Modified: 23 Apr 2026

    Getahead Direct Web Remoting (DWR) before 1.1.3 allows attackers to cause a denial of service (infinite loop) via unknown vectors related to "crafted input."

    Published: 31 Dec 2006
    4.3
    Medium

    CVE-2006-4220

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in webacc in Novell GroupWise WebAccess before 7 Support Pack 3 Public Beta allow remote attackers to inject arbitrary web script or HTML via the (1) User.html, (2) Error, (3) User.Theme.index, and (4) and User.lang parameters.

    Published: 31 Dec 2006
    9.3
    Critical

    CVE-2006-5857

    Last Modified: 23 Apr 2026

    Adobe Reader and Acrobat 7.0.8 and earlier allows user-assisted remote attackers to execute code via a crafted PDF file that triggers memory corruption and overwrites a subroutine pointer during rendering.

    Published: 31 Dec 2006
    10
    Critical

    CVE-2006-6336

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the Mail Management Server (MAILMA.exe) in Eudora WorldMail 3.1.x allows remote attackers to execute arbitrary code via a crafted request containing successive delimiters.

    Published: 31 Dec 2006
    10
    Critical

    CVE-2006-6836

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in osp-cert in IBM OS/400 V5R3M0 have unspecified impact and attack vectors, related to ASN.1 parsing.

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-6825

    Last Modified: 23 Apr 2026

    Calendar MX BASIC 1.0.2 and earlier store sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for calendar.mdb. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 29 Dec 2006
    7.5
    High

    CVE-2006-6826

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the tab editor for Personal .NET Portal before 2.0.0 has unknown impact and attack vectors related to a "Security leak."

    Published: 29 Dec 2006
    7.5
    High

    CVE-2006-6809

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in process.php in Vladimir Menshakov buratinable templator (aka bubla) 1.0.0rc2 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the (1) bu_dir or (2) bu_config[dir] parameter.

    Published: 29 Dec 2006
    3.5
    Low

    CVE-2006-6822

    Last Modified: 23 Apr 2026

    myprofile.asp in Enthrallweb eClassifieds does not properly validate the MM_recordId parameter during profile updates, which allows remote authenticated users to modify certain profile fields of another account by specifying that account's username in a modified MM_recordId parameter.

    Published: 29 Dec 2006
    7.5
    High

    CVE-2006-6823

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in plugins/metasearch/plug.inc.php in Yrch! 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the path parameter.

    Published: 29 Dec 2006
    6.5
    Medium

    CVE-2006-6811

    Last Modified: 23 Apr 2026

    KsIRC 1.3.12 allows remote attackers to cause a denial of service (crash) via a long PRIVMSG string when connecting to an Internet Relay Chat (IRC) server, which causes an assertion failure and results in a NULL pointer dereference. NOTE: this issue was originally reported as a buffer overflow.

    Published: 29 Dec 2006
    6
    Medium

    CVE-2006-6815

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in DMXReady Secure Login Manager 1.0 allow remote authenticated administrators to inject arbitrary web script or HTML via unspecified parameters to (1) set_preferences.asp, (2) send_password_preferences.asp, and (3) SecureLoginManager/list.asp in the Local-Admin Panel.

    Published: 29 Dec 2006
    5
    Medium

    CVE-2006-6817

    Last Modified: 23 Apr 2026

    AlstraSoft Web Host Directory allows remote attackers to obtain sensitive information by requesting any invalid URI, which reveals the path in an error message, a different vulnerability than CVE-2006-2617.

    Published: 29 Dec 2006