CVE Feed

    Dashboard / CVE

    6.8
    Medium

    CVE-2006-6520

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Messageriescripthp 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) pseudo parameter to (a) existepseudo.php, the (2) email parameter to (b) existeemail.php, or the (3) pageName or (4) cssform parameter to (c) Contact/contact.php.

    Published: 14 Dec 2006
    6.8
    Medium

    CVE-2006-6523

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in mail/manage.html in BoxTrapper in cPanel 11 allows remote attackers to inject arbitrary web script or HTML via the account parameter.

    Published: 14 Dec 2006
    7.5
    High

    CVE-2006-6525

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in vdateUsr.asp in EzHRS HR Assist 1.05 and earlier allows remote attackers to execute arbitrary SQL commands via the password parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 14 Dec 2006
    6.8
    Medium

    CVE-2006-6532

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Vt-Forum Lite 1.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) StrMsg or (2) Topic_ID parameter to (a) vf_info.asp, (b) vf_newtopic.asp, (c) vf_settings.asp, and (d) vf_replytopic.asp, different vectors than CVE-2006-6447. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 14 Dec 2006
    7.5
    High

    CVE-2006-6533

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in admin/templates_boxes_layout.php in osCommerce 3.0a3 allows remote attackers to include and execute arbitrary PHP files via a .. (dot dot) in the filter parameter. NOTE: this issue can be leveraged to obtain full path information in error messages.

    Published: 14 Dec 2006
    7.5
    High

    CVE-2006-6530

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the Help Tip module before 4.7.x-1.0 for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Published: 14 Dec 2006
    3.5
    Low

    CVE-2006-6513

    Last Modified: 23 Apr 2026

    The CControl::Download function (/dl URI) in Winamp Web Interface (Wawi) 7.5.13 and earlier allows remote authenticated users to download arbitrary file types under the root via a trailing "." (dot) in a filename in the file parameter, related to erroneous behavior of the IsWinampFile function.

    Published: 14 Dec 2006
    7.5
    High

    CVE-2006-6516

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in KDPics 1.16 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the (1) page parameter to (a) index.php3, or the (2) lib_path parameter to (b) authenticate.inc.php3 or (c) lib/exifer/exif.php.

    Published: 14 Dec 2006
    6.8
    Medium

    CVE-2006-6518

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in ProNews 1.5 allow remote attackers to inject arbitrary web script or HTML via the (1) pseudo, (2) email, (3) date, (4) sujet, (5) message, (6) site, and (7) lien parameters to (a) admin/change.php, and the (8) aa parameter to (b) lire-avis.php.

    Published: 14 Dec 2006
    6.8
    Medium

    CVE-2006-6522

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in WikiTimeScale TwoZero before 2.31 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors in the (1) forum module and (2) event descriptions. NOTE: some of these details are obtained from third party information.

    Published: 14 Dec 2006
    6.8
    Medium

    CVE-2006-5875

    Last Modified: 23 Apr 2026

    eoc.py in Enemies of Carlotta (EoC) before 1.2.4 allows remote attackers to execute arbitrary commands via shell metacharacters in an "SMTP level e-mail address".

    Published: 14 Dec 2006
    4.1
    Medium

    CVE-2006-6509

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the skinning feature in SiteKiosk before 6.5.150 allows local users to bypass security protections and inject arbitrary web script or HTML via an ABOUT: URI, which is displayed in the title bar of the browser.

    Published: 14 Dec 2006
    1.7
    Low

    CVE-2006-6510

    Last Modified: 23 Apr 2026

    An unspecified ActiveX control in SiteKiosk before 6.5.150 is installed "safe for scripting", which allows local users to bypass security protections and read arbitrary files via certain functions.

    Published: 14 Dec 2006
    9.4
    Critical

    CVE-2006-6535

    Last Modified: 23 Apr 2026

    The dev_queue_xmit function in Linux kernel 2.6 can fail before calling the local_bh_disable function, which could lead to data corruption and "node lockups." NOTE: it is not clear whether this issue is exploitable.

    Published: 14 Dec 2006
    5.5
    Medium

    CVE-2006-5649

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the "alignment check exception handling" in Ubuntu 5.10, 6.06 LTS, and 6.10 for the PowerPC (PPC) allows local users to cause a denial of service (kernel panic) via unspecified vectors.

    Published: 14 Dec 2006
    5.5
    Medium

    CVE-2006-5648

    Last Modified: 23 Apr 2026

    Ubuntu Linux 6.10 for the PowerPC (PPC) allows local users to cause a denial of service (resource consumption) by using the (1) sys_get_robust_list and (2) sys_set_robust_list functions to create processes that cannot be killed.

    Published: 14 Dec 2006
    7.5
    High

    CVE-2006-6106

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in the cmtp_recv_interopmsg function in the Bluetooth driver (net/bluetooth/cmtp/capi.c) in the Linux kernel 2.4.22 up to 2.4.33.4 and 2.6.2 before 2.6.18.6, and 2.6.19.x, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via CAPI messages with a large value for the length of the (1) manu (manufacturer) or (2) serial (serial number) field.

    Published: 14 Dec 2006
    6
    Medium

    CVE-2006-6508

    Last Modified: 23 Apr 2026

    Cross-site request forgery (CSRF) vulnerability in phpBB 2.0.21 allows remote authenticated users to send unauthorized messages as an arbitrary user via unspecified vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 14 Dec 2006
    6.8
    Medium

    CVE-2006-6511

    Last Modified: 23 Apr 2026

    dadaIMC .99.3 uses an insufficiently restrictive FilesMatch directive in the installed .htaccess file, which allows remote attackers to execute arbitrary PHP code by uploading files whose names contain (1) feature, (2) editor, (3) newswire, (4) otherpress, (5) admin, (6) pbook, (7) media, or (8) mod, which are processed as PHP file types (application/x-httpd-php).

    Published: 14 Dec 2006
    4.6
    Medium

    CVE-2006-4814

    Last Modified: 23 Apr 2026

    The mincore function in the Linux kernel before 2.4.33.6 does not properly lock access to user space, which has unspecified impact and attack vectors, possibly related to a deadlock.

    Published: 14 Dec 2006
    6.6
    Medium

    CVE-2006-6496

    Last Modified: 23 Apr 2026

    The (1) VetMONNT.sys and (2) VetFDDNT.sys drivers in CA Anti-Virus 2007 8.1, Anti-Virus for Vista Beta 8.2, and CA Internet Security Suite 2007 v3.0 do not properly handle NULL buffers, which allows local users with administrative access to cause a denial of service (system crash) via certain IOCTLs.

    Published: 13 Dec 2006
    6.8
    Medium

    CVE-2006-2386

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Microsoft Outlook Express 6 and earlier allows remote attackers to execute arbitrary code via a crafted contact record in a Windows Address Book (WAB) file.

    Published: 13 Dec 2006
    7.5
    High

    CVE-2006-5584

    Last Modified: 23 Apr 2026

    The Remote Installation Service (RIS) in Microsoft Windows 2000 SP4 uses a TFTP server that allows anonymous access, which allows remote attackers to upload and overwrite arbitrary files to gain privileges on systems that use RIS.

    Published: 13 Dec 2006
    7.2
    High

    CVE-2006-5585

    Last Modified: 23 Apr 2026

    The Client-Server Run-time Subsystem in Microsoft Windows XP SP2 and Server 2003 allows local users to gain privileges via a crafted file manifest within an application, aka "File Manifest Corruption Vulnerability."

    Published: 13 Dec 2006
    6.6
    Medium

    CVE-2006-6494

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in ld.so.1 in Sun Solaris 8, 9, and 10 allows local users to execute arbitrary code via a .. (dot dot) sequence in the LANG environment variable that points to a locale file containing attacker-controlled format string specifiers.

    Published: 13 Dec 2006
    6.6
    Medium

    CVE-2006-6495

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in ld.so.1 in Sun Solaris 8, 9, and 10 allows local users to execute arbitrary code via large precision padding values in a format string specifier in the format parameter of the doprf function. NOTE: this issue normally does not cross privilege boundaries, except in cases of external introduction of malicious message files, or if it is leveraged with other vulnerabilities such as CVE-2006-6494.

    Published: 13 Dec 2006
    6.8
    Medium

    CVE-2006-4702

    Last Modified: 23 Apr 2026

    Buffer overflow in the Windows Media Format Runtime in Microsoft Windows Media Player (WMP) 6.4 and Windows XP SP2, Server 2003, and Server 2003 SP1 allows remote attackers to execute arbitrary code via a crafted Advanced Systems Format (ASF) file.

    Published: 13 Dec 2006
    5.1
    Medium

    CVE-2006-6493

    Last Modified: 23 Apr 2026

    Buffer overflow in the krbv4_ldap_auth function in servers/slapd/kerberos.c in OpenLDAP 2.4.3 and earlier, when OpenLDAP is compiled with the --enable-kbind (Kerberos KBIND) option, allows remote attackers to execute arbitrary code via an LDAP bind request using the LDAP_AUTH_KRBV41 authentication method and long credential data.

    Published: 13 Dec 2006
    4.3
    Medium

    CVE-2006-5577

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 6 and earlier allows remote attackers to obtain sensitive information via unspecified uses of the OBJECT HTML tag, which discloses the absolute path of the corresponding TIF folder, aka "TIF Folder Information Disclosure Vulnerability," and a different issue than CVE-2006-5578.

    Published: 12 Dec 2006
    2.6
    Low

    CVE-2006-5578

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 6 and earlier allows remote attackers to read Temporary Internet Files (TIF) and obtain sensitive information via unspecified vectors involving certain drag and drop operations, aka "TIF Folder Information Disclosure Vulnerability," and a different issue than CVE-2006-5577.

    Published: 12 Dec 2006
    10
    Critical

    CVE-2006-5583

    Last Modified: 23 Apr 2026

    Buffer overflow in the SNMP Service in Microsoft Windows 2000 SP4, XP SP2, Server 2003, Server 2003 SP1, and possibly other versions allows remote attackers to execute arbitrary code via a crafted SNMP packet, aka "SNMP Memory Corruption Vulnerability."

    Published: 12 Dec 2006
    10
    Critical

    CVE-2006-6335

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in Sophos Anti-Virus scanning engine before 2.40 allow remote attackers to execute arbitrary code via (1) a SIT archive with a long filename that is not null-terminated, which triggers a heap-based overflow in veex.dll due to improper length calculation, and (2) a CPIO archive, with a long filename that is not null-terminated, which triggers a stack-based overflow in veex.dll.

    Published: 12 Dec 2006
    6.8
    Medium

    CVE-2006-6485

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in ShopSite 8.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the prevlocation parameter in shopper/sc/registration.cgi and other unspecified vectors.

    Published: 12 Dec 2006
    7.5
    High

    CVE-2006-6486

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in EasyPage allows remote attackers to execute arbitrary SQL commands via unspecified vectors in sptrees/default.aspx, possibly involving the docId parameter. NOTE: this issue appears to have been disputed by a third party researcher, stating that SQL injection is not possible. However, insufficient details were provided to evaluate the dispute.

    Published: 12 Dec 2006
    9.3
    Critical

    CVE-2006-5581

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Microsoft Internet Explorer 6 allows remote attackers to execute arbitrary code via certain DHTML script functions, such as normalize, and "incorrectly created elements" that trigger memory corruption, aka "DHTML Script Function Memory Corruption Vulnerability."

    Published: 12 Dec 2006
    2.6
    Low

    CVE-2006-6483

    Last Modified: 23 Apr 2026

    Adobe ColdFusion MX 7.x before 7.0.2 does not properly filter HTML tags when protecting against cross-site scripting (XSS) attacks, which allows remote attackers to inject arbitrary web script or HTML via a NULL byte (%00) in certain HTML tags, as demonstrated using "%00script" in a tag.

    Published: 12 Dec 2006
    9.3
    Critical

    CVE-2006-5579

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 6 allows remote attackers to execute arbitrary code by using JavaScript to cause certain errors simultaneously, which results in the access of previously freed memory, aka "Script Error Handling Memory Corruption Vulnerability."

    Published: 12 Dec 2006
    5
    Medium

    CVE-2006-6482

    Last Modified: 23 Apr 2026

    Adobe ColdFusion MX7 allows remote attackers to obtain sensitive information via a URL request (1) for a non-existent (a) JWS, (b) CFM, (c) CFML, or (d) CFC file, which displays the installation path in the resulting error message; or (2) to /CFIDE/administrator/login.cfm without a host, which can reveal the server's internal IP address in an HREF tag.

    Published: 12 Dec 2006
    5
    Medium

    CVE-2006-6484

    Last Modified: 23 Apr 2026

    The IMAP service for MailEnable Professional and Enterprise Edition 2.0 through 2.34, Professional Edition 1.6 through 1.83, and Enterprise Edition 1.1 through 1.40 allows remote attackers to cause a denial of service (crash) via unspecified vectors that trigger a null pointer dereference, as addressed by the ME-10023 hotfix, and a different issue than CVE-2006-6423. NOTE: some details were obtained from third party information.

    Published: 12 Dec 2006
    10
    Critical

    CVE-2006-6423

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the IMAP service for MailEnable Professional and Enterprise Edition 2.0 through 2.35, Professional Edition 1.6 through 1.84, and Enterprise Edition 1.1 through 1.41 allows remote attackers to execute arbitrary code via a pre-authentication command followed by a crafted parameter and a long string, as addressed by the ME-10025 hotfix.

    Published: 12 Dec 2006
    5
    Medium

    CVE-2006-6481

    Last Modified: 23 Apr 2026

    Clam AntiVirus (ClamAV) 0.88.6 allows remote attackers to cause a denial of service (stack overflow and application crash) by wrapping many layers of multipart/mixed content around a document, a different vulnerability than CVE-2006-5874 and CVE-2006-6406.

    Published: 12 Dec 2006
    6.8
    Medium

    CVE-2006-6479

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in AnnonceScriptHP 2.0 allow remote attackers to inject arbitrary web script or HTML via the email parameter in (1) erreurinscription.php, (2) Templates/admin.dwt.php, (3) Templates/commun.dwt.php, (4) membre.dwt.php, and (5) admin/admin_config/Aide.php.

    Published: 12 Dec 2006
    5
    Medium

    CVE-2006-6480

    Last Modified: 23 Apr 2026

    admin/admin_membre/fiche_membre.php in AnnonceScriptHP 2.0 allows remote attackers to obtain sensitive information via the idmembre parameter, which discloses the passwords for arbitrary users.

    Published: 12 Dec 2006
    7.8
    High

    CVE-2006-5873

    Last Modified: 23 Apr 2026

    Buffer overflow in the cluster_process_heartbeat function in cluster.c in layer 2 tunneling protocol network server (l2tpns) before 2.1.21 allows remote attackers to cause a denial of service via a large heartbeat packet.

    Published: 12 Dec 2006
    7.5
    High

    CVE-2006-6478

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in AnnonceScriptHP 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in (a) email.php, the (2) no parameter in (b) voirannonce.php, the (3) idmembre parameter in (c) admin/admin_membre/fiche_membre.php, and the (4) idannonce parameter in (d) admin/admin_annonce/okvalannonce.php and (e) admin/admin_annonce/changeannonce.php.

    Published: 12 Dec 2006
    1.7
    Low

    CVE-2006-6107

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the match_rule_equal function in bus/signals.c in D-Bus before 1.0.2 allows local applications to remove match rules for other applications and cause a denial of service (lost process messages).

    Published: 12 Dec 2006
    6.5
    Medium

    CVE-2006-6463

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in admin/add.php in Midicart allows remote authenticated users to upload arbitrary .php files, and possibly other files, to the images/ directory under the web root.

    Published: 11 Dec 2006
    5
    Medium

    CVE-2006-6464

    Last Modified: 23 Apr 2026

    viewcart in Midicart accepts negative numbers in the Qty (quantity) field, which allows remote attackers to obtain a smaller total price for a shopping cart.

    Published: 11 Dec 2006
    6.5
    Medium

    CVE-2006-6465

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in WBmap.php in WikyBlog 1.3.2 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the l parameter. NOTE: CVE disputes this vulnerability because l is validated by ctype_alpha before use

    Published: 11 Dec 2006
    6.8
    Medium

    CVE-2006-6466

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in WBmap.php in WikyBlog 1.3.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) key, (2) d, (3) l, or (4) v parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: CVE disputes the l vector because l is validated by ctype_alpha before use.

    Published: 11 Dec 2006