CVE Feed

    Dashboard / CVE

    7.1
    High

    CVE-2006-6502

    Last Modified: 23 Apr 2026

    Use-after-free vulnerability in the LiveConnect bridge code for Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 allows remote attackers to cause a denial of service (crash) via unknown vectors.

    Published: 19 Dec 2006
    6.8
    Medium

    CVE-2006-6503

    Last Modified: 23 Apr 2026

    Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 allows remote attackers to bypass cross-site scripting (XSS) protection by changing the src attribute of an IMG element to a javascript: URI.

    Published: 19 Dec 2006
    10
    Critical

    CVE-2006-6605

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the POP service in MailEnable Standard 1.98 and earlier; Professional 1.84, and 2.35 and earlier; and Enterprise 1.41, and 2.35 and earlier before ME-10026 allows remote attackers to execute arbitrary code via a long argument to the PASS command.

    Published: 19 Dec 2006
    6.8
    Medium

    CVE-2006-6497

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in the layout engine for Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 allow remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via unknown attack vectors.

    Published: 19 Dec 2006
    9.3
    Critical

    CVE-2006-6504

    Last Modified: 23 Apr 2026

    Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, and SeaMonkey before 1.0.7 allows remote attackers to execute arbitrary code by appending an SVG comment DOM node to another type of document, which triggers memory corruption.

    Published: 19 Dec 2006
    6.8
    Medium

    CVE-2006-6498

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in the JavaScript engine for Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, SeaMonkey before 1.0.7, and Mozilla 1.7 and probably earlier on Solaris, allow remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via unknown impact and attack vectors.

    Published: 19 Dec 2006
    2.1
    Low

    CVE-2007-2797

    Last Modified: 23 Apr 2026

    xterm, including 192-7.el4 in Red Hat Enterprise Linux and 208-3.1 in Debian GNU/Linux, sets the wrong group ownership of tty devices, which allows local users to write data to other users' terminals.

    Published: 19 Dec 2006
    2.1
    Low

    CVE-2006-6921

    Last Modified: 23 Apr 2026

    Unspecified versions of the Linux kernel allow local users to cause a denial of service (unrecoverable zombie process) via a program with certain instructions that prevent init from properly reaping a child whose parent has died.

    Published: 19 Dec 2006
    7.5
    High

    CVE-2006-6635

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in includes/functions.php in JumbaCMS 0.0.1 allows remote attackers to execute arbitrary PHP code via a URL in the jcms_root_path parameter.

    Published: 18 Dec 2006
    7.5
    High

    CVE-2006-6634

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in the ExtCalThai (com_extcalendar) 0.9.1 and earlier component for Mambo allow remote attackers to execute arbitrary PHP code via a URL in (1) the CONFIG_EXT[LANGUAGES_DIR] parameter to admin_events.php, (2) the mosConfig_absolute_path parameter to extcalendar.php, or (3) the CONFIG_EXT[LIB_DIR] parameter to lib/mail.inc.php.

    Published: 18 Dec 2006
    7.5
    High

    CVE-2006-6629

    Last Modified: 23 Apr 2026

    lib/WeBWorK/PG/Translator.pm in WeBWorK Program Generation (PG) Language before 2.3.1 uses an insufficiently restrictive regular expression to determine valid macro filenames, which allows attackers to load arbitrary macro files whose names contain the strings (1) dangerousMacros.pl, (2) PG.pl, or (3) IO.pl.

    Published: 18 Dec 2006
    10
    Critical

    CVE-2006-6627

    Last Modified: 23 Apr 2026

    Integer overflow in the packed PE file parsing implementation in BitDefender products before 20060829, including Antivirus, Antivirus Plus, Internet Security, Mail Protection for Enterprises, and Online Scanner; and BitDefender products for Microsoft ISA Server and Exchange 5.5 through 2003; allows remote attackers to execute arbitrary code via a crafted file, which triggers a heap-based buffer overflow, aka the "cevakrnl.xmd vulnerability."

    Published: 18 Dec 2006
    7.2
    High

    CVE-2006-6622

    Last Modified: 23 Apr 2026

    Soft4Ever Look 'n' Stop (LnS) 2.05p2 before 20061215 relies on the Process Environment Block (PEB) to identify a process, which allows local users to bypass the product's controls on a process by spoofing the (1) ImagePathName, (2) CommandLine, and (3) WindowTitle fields in the PEB.

    Published: 18 Dec 2006
    7.2
    High

    CVE-2006-6621

    Last Modified: 23 Apr 2026

    Filseclab Personal Firewall 3.0.0.8686 relies on the Process Environment Block (PEB) to identify a process, which allows local users to bypass the product's controls on a process by spoofing the (1) ImagePathName, (2) CommandLine, and (3) WindowTitle fields in the PEB.

    Published: 18 Dec 2006
    7.2
    High

    CVE-2006-6618

    Last Modified: 23 Apr 2026

    AntiHook 3.0.0.23 - Desktop relies on the Process Environment Block (PEB) to identify a process, which allows local users to bypass the product's controls on a process by spoofing the (1) ImagePathName, (2) CommandLine, and (3) WindowTitle fields in the PEB.

    Published: 18 Dec 2006
    4.3
    Medium

    CVE-2006-6628

    Last Modified: 23 Apr 2026

    Integer overflow in OpenOffice.org (OOo) 2.1 allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted DOC file, as demonstrated by the 12122006-djtest.doc file, a variant of CVE-2006-6561 in a separate codebase.

    Published: 18 Dec 2006
    7.2
    High

    CVE-2006-6620

    Last Modified: 23 Apr 2026

    Comodo Personal Firewall 2.3.6.81 relies on the Process Environment Block (PEB) to identify a process, which allows local users to bypass the product's controls on a process by spoofing the (1) ImagePathName, (2) CommandLine, and (3) WindowTitle fields in the PEB.

    Published: 18 Dec 2006
    7.2
    High

    CVE-2006-6623

    Last Modified: 23 Apr 2026

    Sygate Personal Firewall 5.6.2808 relies on the Process Environment Block (PEB) to identify a process, which allows local users to bypass the product's controls on a process by spoofing the (1) ImagePathName, (2) CommandLine, and (3) WindowTitle fields in the PEB.

    Published: 18 Dec 2006
    4
    Medium

    CVE-2006-6624

    Last Modified: 23 Apr 2026

    The FTP Server in Sambar Server 6.4 allows remote authenticated users to cause a denial of service (application crash) via a long series of "./" sequences in the SIZE command.

    Published: 18 Dec 2006
    6.8
    Medium

    CVE-2006-6626

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in an unspecified component of Moodle 1.5 allows remote attackers to inject arbitrary web script or HTML via a javascript URI in the SRC attribute of an IMG element. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information. NOTE: It is unclear whether this candidate overlaps CVE-2006-4784 or CVE-2006-4941.

    Published: 18 Dec 2006
    6.8
    Medium

    CVE-2006-6625

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in mod/forum/discuss.php in Moodle 1.6.1 allows remote attackers to inject arbitrary web script or HTML via the navtail parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 18 Dec 2006
    7.5
    High

    CVE-2006-6630

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in ListRecords.php in osprey 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the lib_dir parameter.

    Published: 18 Dec 2006
    6.8
    Medium

    CVE-2006-6632

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in genepi.php in Genepi 1.6 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the topdir parameter.

    Published: 18 Dec 2006
    7.5
    High

    CVE-2006-6633

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in include/yapbb_session.php in YapBB 1.2 Beta2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[include_Bit] parameter.

    Published: 18 Dec 2006
    6.8
    Medium

    CVE-2006-6631

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in lib/xml/oai/GetRecord.php in osprey 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the lib_dir parameter.

    Published: 18 Dec 2006
    7.2
    High

    CVE-2006-6619

    Last Modified: 23 Apr 2026

    AVG Anti-Virus plus Firewall 7.5.431 relies on the Process Environment Block (PEB) to identify a process, which allows local users to bypass the product's controls on a process by spoofing the (1) ImagePathName, (2) CommandLine, and (3) WindowTitle fields in the PEB.

    Published: 18 Dec 2006
    6.5
    Medium

    CVE-2006-6617

    Last Modified: 23 Apr 2026

    projectserver/logon/pdsrequest.asp in Microsoft Project Server 2003 allows remote authenticated users to obtain the MSProjectUser password for a SQL database via a GetInitializationData request, which includes the information in the UserName and Password tags of the response.

    Published: 18 Dec 2006
    6.8
    Medium

    CVE-2006-6613

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in language.php in phpAlbum 0.4.1 Beta 6 and earlier, when magic_quotes_gpc is disabled and register_globals is enabled, allows remote attackers to include and execute arbitrary local files or obtain sensitive information via a .. (dot dot) in the pa_lang[include_file] parameter, as demonstrated by injecting PHP sequences into an Apache HTTP Server log file, which is then included by language.php.

    Published: 18 Dec 2006
    5
    Medium

    CVE-2006-6609

    Last Modified: 23 Apr 2026

    Nexuiz before 2.2.1 allows remote attackers to cause a denial of service (resource exhaustion or crash) via unspecified vectors related to "fake players." NOTE: some of these details are obtained from third party information.

    Published: 18 Dec 2006
    1.9
    Low

    CVE-2006-6614

    Last Modified: 23 Apr 2026

    The save_log_local function in Fully Automatic Installation (FAI) 2.10.1, and possibly 3.1.2, when verbose mode is enabled, stores the root password hash in /var/log/fai/current/fai.log, whose file permissions allow it to be copied to other hosts when fai-savelog is called and allows attackers to obtain the hash.

    Published: 18 Dec 2006
    7.5
    High

    CVE-2006-6611

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in interface.php in Barman 0.0.1r3 allows remote attackers to execute arbitrary PHP code via a URL in the basepath parameter.

    Published: 18 Dec 2006
    7.5
    High

    CVE-2006-6612

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in basic.inc.php in PhpMyCms 0.3 allows remote attackers to execute arbitrary PHP code via a URL in the basepath_start parameter.

    Published: 18 Dec 2006
    6
    Medium

    CVE-2006-6616

    Last Modified: 23 Apr 2026

    index.php in w00t Gallery 1.4.0 allows remote authenticated users with privileges for one installation to gain access to other installations on the same web server, aka "multi-gallery admin session spanning." NOTE: some of these details are obtained from third party information.

    Published: 18 Dec 2006
    7.5
    High

    CVE-2006-6610

    Last Modified: 23 Apr 2026

    clientcommands in Nexuiz before 2.2.1 has unknown impact and remote attack vectors related to "remote console command injection."

    Published: 18 Dec 2006
    7.5
    High

    CVE-2006-6615

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in includes/act_constants.php in the Activity Games (mx_act) 0.92 module for mxBB allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path parameter.

    Published: 18 Dec 2006
    7.5
    High

    CVE-2006-6608

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in SSH key based authentication in HP Integrated Lights Out (iLO) 1.70 through 1.87, and iLO 2 1.00 through 1.11, on Proliant servers, allows remote attackers to "gain unauthorized access."

    Published: 18 Dec 2006
    2.7
    Low

    CVE-2006-6607

    Last Modified: 23 Apr 2026

    The Java Key Store (JKS) for WebSphere Application Server (WAS) for IBM Tivoli Identity Manager (ITIM) 4.6 places the JKS password in a -Djavax.net.ssl.trustStorePassword command line argument, which allows local users to obtain the password by listing the process or using other methods.

    Published: 18 Dec 2006
    7.5
    High

    CVE-2006-6606

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Clarens jclarens before 0.6.2 allow remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Published: 18 Dec 2006
    5
    Medium

    CVE-2006-6719

    Last Modified: 23 Apr 2026

    The ftp_syst function in ftp-basic.c in Free Software Foundation (FSF) GNU wget 1.10.2 allows remote attackers to cause a denial of service (application crash) via a malicious FTP server with a large number of blank 220 responses to the SYST command.

    Published: 18 Dec 2006
    7.5
    High

    CVE-2006-5872

    Last Modified: 23 Apr 2026

    login.pl in SQL-Ledger before 2.6.21 and LedgerSMB before 1.1.5 allows remote attackers to execute arbitrary Perl code via the "-e" flag in the script parameter, which is used as an argument to the perl program.

    Published: 18 Dec 2006
    5
    Medium

    CVE-2006-7243

    Last Modified: 11 Apr 2025

    PHP before 5.3.4 accepts the \0 character in a pathname, which might allow context-dependent attackers to bypass intended access restrictions by placing a safe file extension after this character, as demonstrated by .php\0.jpg at the end of the argument to the file_exists function.

    Published: 18 Dec 2006
    4.3
    Medium

    CVE-2006-6601

    Last Modified: 23 Apr 2026

    Windows Media Player 10.00.00.4036 in Microsoft Windows XP SP2 allows user-assisted remote attackers to cause a denial of service via a .MID (MIDI) file with a malformed header chunk without any track chunks, possibly involving (1) number of tracks of (2) time division fields that are set to 0.

    Published: 15 Dec 2006
    6.5
    Medium

    CVE-2006-6598

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in viewnfo.php in (1) TorrentFlux before 2.2 and (2) torrentflux-b4rt before 2.1-b4rt-972 allows remote authenticated users to read arbitrary files via .. (dot dot) sequences in the path parameter, a different vector than CVE-2006-6328.

    Published: 15 Dec 2006
    9.3
    Critical

    CVE-2006-6603

    Last Modified: 23 Apr 2026

    Buffer overflow in the YMMAPI.YMailAttach ActiveX control (ymmapi.dll) before 2005.1.1.4 in Yahoo! Messenger allows remote attackers to execute arbitrary code via a crafted HTML document. NOTE: some details were obtained from third party information.

    Published: 15 Dec 2006
    6.8
    Medium

    CVE-2006-6597

    Last Modified: 23 Apr 2026

    Argument injection vulnerability in HyperAccess 8.4 allows user-assisted remote attackers to execute arbitrary vbscript and commands via the /r option in a telnet:// URI, which is configured to use hawin32.exe.

    Published: 15 Dec 2006
    6.8
    Medium

    CVE-2006-6596

    Last Modified: 23 Apr 2026

    HyperAccess 8.4 allows user-assisted remote attackers to execute arbitrary vbscript and commands via a session (HAW) file, which can be automatically opened using Internet Explorer.

    Published: 15 Dec 2006
    4.3
    Medium

    CVE-2006-6602

    Last Modified: 23 Apr 2026

    explorer.exe in Windows Explorer 6.00.2900.2180 in Microsoft Windows XP SP2 allows user-assisted remote attackers to cause a denial of service via a crafted WMV file.

    Published: 15 Dec 2006
    6.5
    Medium

    CVE-2006-6604

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in downloaddetails.php in TorrentFlux 2.2 allows remote authenticated users to read arbitrary files via .. (dot dot) sequences in the alias parameter, a different vector than CVE-2006-6328.

    Published: 15 Dec 2006
    6
    Medium

    CVE-2006-6600

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in dir.php in TorrentFlux 2.2, when allows remote attackers to inject arbitrary web script or HTML via double URL-encoded strings in the dir parameter, a related issue to CVE-2006-5609.

    Published: 15 Dec 2006
    6
    Medium

    CVE-2006-6599

    Last Modified: 23 Apr 2026

    maketorrent.php in TorrentFlux 2.2 allows remote authenticated users to execute arbitrary commands via shell metacharacters (";" semicolon) in the announce parameter.

    Published: 15 Dec 2006