CVE Feed

    Dashboard / CVE

    6.8
    Medium

    CVE-2006-6375

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in display.php in Simple Machines Forum (SMF) 1.1 Final and earlier allows remote attackers to inject arbitrary web script or HTML via the contents of a file that is uploaded with the image parameter set, which can be interpreted as script by Internet Explorer's automatic type detection.

    Published: 7 Dec 2006
    7.5
    High

    CVE-2006-6358

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the login function in auth.inc in Stefan Frech online-bookmarks 0.6.12 allows remote attackers to execute arbitrary SQL commands via the (1) username and possibly the (2) password parameter. NOTE: some of these details are obtained from third party information.

    Published: 7 Dec 2006
    7.5
    High

    CVE-2006-6365

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in detail.asp in DUware DUpaypal 3.1, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the iType parameter. NOTE: the iState parameter is already covered by CVE-2005-3976 and the iPro parameter is already covered by CVE-2005-2047.

    Published: 7 Dec 2006
    Unknown

    CVE-2006-6362

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-5873. Reason: This candidate is a duplicate of CVE-2006-5873. Notes: All CVE users should reference CVE-2006-5873 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 7 Dec 2006
    6.8
    Medium

    CVE-2006-6366

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in includes/elements/spellcheck/spellwin.php in Cerberus Helpdesk 0.97.3, 2.0 through 2.7, 3.2.1, and 3.3 allows remote attackers to inject arbitrary web script or HTML via the js parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 7 Dec 2006
    6.8
    Medium

    CVE-2006-6359

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Stefan Frech online-bookmarks 0.6.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 7 Dec 2006
    10
    Critical

    CVE-2006-6361

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the uploadprogress_php_rfc1867_file function in uploadprogress.c in Bitflux Upload Progress Meter before 8276 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via crafted HTTP POST fileupload requests.

    Published: 7 Dec 2006
    6.8
    Medium

    CVE-2006-6363

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in admin.pl in BlueSocket Secure Controller (BSC) before 5.2, or without 5.1.1-BluePatch, allows remote attackers to inject arbitrary web script or HTML via the ad_name parameter.

    Published: 7 Dec 2006
    6.8
    Medium

    CVE-2006-6364

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in error.php in Inside Systems Mail (ISMail) 2.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the error parameter.

    Published: 7 Dec 2006
    7.5
    High

    CVE-2006-6368

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in login.php.inc in awrate 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the toroot parameter to search.php.

    Published: 7 Dec 2006
    7.5
    High

    CVE-2006-6360

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in activate.php in PHP Upload Center 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the footerpage parameter.

    Published: 7 Dec 2006
    7.5
    High

    CVE-2006-6367

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in detail.asp in DUware DUdownload 1.1, and possibly earlier, allow remote attackers to execute arbitrary SQL commands via the (1) iFile or (2) action parameter. NOTE: the iType parameter is already covered by CVE-2005-3976.

    Published: 7 Dec 2006
    6.8
    Medium

    CVE-2006-6339

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in sites/index.php in deV!L`z Clanportal (DZCP) before 1.3.6.1 allows remote attackers to execute arbitrary SQL commands via the show element in a GET request.

    Published: 7 Dec 2006
    5
    Medium

    CVE-2006-6340

    Last Modified: 23 Apr 2026

    keystone.exe in nVIDIA nView allows attackers to cause a denial of service via a long command line argument. NOTE: it is not clear whether this issue crosses security boundaries. If not, then this is not a vulnerability.

    Published: 7 Dec 2006
    7.5
    High

    CVE-2006-6342

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in KLF-DESIGN (aka Kim L. Fraser) KLF-REALTY allow remote attackers to execute arbitrary SQL commands via the (1) category and (2) agent parameters in (a) search_listing.asp, and the (3) property_id parameter in (b) detail.asp.

    Published: 7 Dec 2006
    7.5
    High

    CVE-2006-6337

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in giris.asp in Aspee and Dogantepe Ziyaretci Defteri allow remote attackers to execute arbitrary SQL commands via the (1) kullanici or (2) parola parameter.

    Published: 7 Dec 2006
    6.5
    Medium

    CVE-2006-6347

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in TFT-Gallery allows remote authenticated administrators to upload arbitrary .php files, possibly using admin/index.php. NOTE: this can be leveraged with CVE-2006-1412 to create a remote unauthenticated vector.

    Published: 7 Dec 2006
    6.8
    Medium

    CVE-2006-6348

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in board.php in mowdBB RC-6 allows remote attackers to inject arbitrary web script or HTML via the forum_name[] parameter.

    Published: 7 Dec 2006
    7.5
    High

    CVE-2006-6349

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in PWP Technologies The Classified Ad System allow remote attackers to execute arbitrary SQL commands via (1) the main parameter in a view action (includes/mainpage/view.asp) in default.asp or (2) a query in the search engine.

    Published: 7 Dec 2006
    10
    Critical

    CVE-2006-6350

    Last Modified: 23 Apr 2026

    listpics 5 stores sensitive data under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for listpics.mdb.

    Published: 7 Dec 2006
    10
    Critical

    CVE-2006-6355

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in default.asp in DuWare DuClassmate allows remote attackers to execute arbitrary SQL commands via the iCity parameter. NOTE: the iState parameter is already covered by CVE-2005-2049.

    Published: 7 Dec 2006
    6.8
    Medium

    CVE-2006-6356

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in templates/link_temp.php in PHPNews 1.3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) url, (2) id, (3) subject, (4) username, or (5) time parameter.

    Published: 7 Dec 2006
    6.8
    Medium

    CVE-2006-6357

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in templates/cat_temp.php in PHPNews 1.3.0 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 7 Dec 2006
    5
    Medium

    CVE-2006-6338

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in upload/index.php in deV!L`z Clanportal (DZCP) before 1.3.6.1 allows remote attackers to upload and execute arbitrary .php files by embedding PHP code in a JPEG or GIF file that is uploaded to inc/images/uploads/userpics/.

    Published: 7 Dec 2006
    7.5
    High

    CVE-2006-6341

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in mg.applanix 1.3.1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the apx_root_path parameter to (1) act/act_check_access.php, (2) dsp/dsp_form_booking_ctl.php, and (3) dsp/dsp_bookings.php.

    Published: 7 Dec 2006
    5
    Medium

    CVE-2006-6352

    Last Modified: 23 Apr 2026

    FRISK Software F-Prot Antivirus before 4.6.7 allows user-assisted remote attackers to cause a denial of service (infinite loop) via a crafted ACE file. NOTE: this issue has at least a partial overlap with CVE-2006-6294.

    Published: 7 Dec 2006
    7.5
    High

    CVE-2006-6344

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in Neocrome Seditio 1.10 and earlier have unknown impact and attack vectors related to (1) plugins/ipsearch/ipsearch.admin.php, and (2) pfs/pfs.edit.inc.php, (3) users/users.register.inc.php in system/core. NOTE: the users.profile.inc.php vector is identified by CVE-2006-6177. NOTE: these issues might be related to SQL injection.

    Published: 7 Dec 2006
    7.5
    High

    CVE-2006-6345

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in SAP Internet Graphics Service (IGS) 6.40 Patchlevel 16 and earlier, and 7.00 Patchlevel 6 and earlier, allows remote attackers to delete arbitrary files via directory traversal sequences in an HTTP request. NOTE: This information is based upon an initial disclosure. Details will be updated after the grace period has ended. This issue is different from CVE-2006-4133 and CVE-2006-4134.

    Published: 7 Dec 2006
    5
    Medium

    CVE-2006-6353

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in BOMArchiveHelper in Mac OS X allow user-assisted remote attackers to cause a denial of service (application crash) via unspecified vectors related to (1) certain KERN_PROTECTION_FAILURE thread crashes and (2) certain KERN_INVALID_ADDRESS thread crashes, as discovered with the "iSec Partners FileP fuzzer".

    Published: 7 Dec 2006
    7.5
    High

    CVE-2006-6354

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in detail.asp in DuWare DuNews allow remote attackers to execute arbitrary SQL commands via the (1) iNews, (2) iType, or (3) Action parameter. NOTE: the iType parameter in type.asp is covered by CVE-2005-3976.

    Published: 7 Dec 2006
    6.8
    Medium

    CVE-2006-6343

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in polls.php in Neocrome Seditio 1.10 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 7 Dec 2006
    10
    Critical

    CVE-2006-6346

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in SAP Internet Graphics Service (IGS) 6.40 Patchlevel 15 and earlier, and 7.00 Patchlevel 3 and earlier, allows remote attackers to cause a denial of service (service shutdown), obtain sensitive information (configuration files), and conduct certain other unauthorized activities, related to "Undocumented Features." NOTE: it is possible that there are multiple issues. This information is based upon a vague initial disclosure. Details will be updated after the grace period has ended. This is likely a different issue than CVE-2006-4134.

    Published: 7 Dec 2006
    10
    Critical

    CVE-2006-6351

    Last Modified: 23 Apr 2026

    KhaledMuratList stores sensitive data under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for (1) CL2F9R1A2C1N.mdb or (2) Data2F9R1A2C1N.mdb.

    Published: 7 Dec 2006
    5
    Medium

    CVE-2006-6112

    Last Modified: 23 Apr 2026

    LifeType 1.0.x and 1.1.x have insufficient access control for all of the PHP scripts under (1) class/ and (2) plugins/, which allows remote attackers to obtain the installation path via a direct request to any of the scripts, as demonstrated by (a) bayesianfilter.class.php and (b) bootstrap.php, which leaks the path in an error message.

    Published: 6 Dec 2006
    7.5
    High

    CVE-2006-6305

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Net-SNMP 5.3 before 5.3.0.1, when configured using the rocommunity or rouser snmpd.conf tokens, causes Net-SNMP to grant write access to users or communities that only have read-only access.

    Published: 6 Dec 2006
    7.8
    High

    CVE-2006-6333

    Last Modified: 23 Apr 2026

    The tr_rx function in ibmtr.c for Linux kernel 2.6.19 assigns the wrong flag to the ip_summed field, which allows remote attackers to cause a denial of service (memory corruption) via crafted packets that cause the kernel to interpret another field as an offset.

    Published: 6 Dec 2006
    4.9
    Medium

    CVE-2006-6328

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in index.php for TorrentFlux 2.2 allows remote attackers to create or overwrite arbitrary files via sequences in the alias_file parameter.

    Published: 6 Dec 2006
    4.9
    Medium

    CVE-2006-6329

    Last Modified: 23 Apr 2026

    index.php for TorrentFlux 2.2 allows remote attackers to delete files by specifying the target filename in the delfile parameter.

    Published: 6 Dec 2006
    6
    Medium

    CVE-2006-6330

    Last Modified: 23 Apr 2026

    index.php for TorrentFlux 2.2 allows remote registered users to execute arbitrary commands via shell metacharacters in the kill parameter.

    Published: 6 Dec 2006
    6
    Medium

    CVE-2006-6331

    Last Modified: 23 Apr 2026

    metaInfo.php in TorrentFlux 2.2, when $cfg["enable_file_priority"] is false, allows remote attackers to execute arbitrary commands via shell metacharacters (backticks) in the torrent parameter to (1) details.php and (2) startpop.php.

    Published: 6 Dec 2006
    7.5
    High

    CVE-2006-6309

    Last Modified: 23 Apr 2026

    Multiple array index errors in IBM Tivoli Storage Manager (TSM) before 5.2.9 and 5.3.x before 5.3.4 allow remote attackers to read arbitrary memory locations and cause a denial of service (crash) via a large index value in unspecified messages, a different issue than CVE-2006-5855.

    Published: 6 Dec 2006
    5
    Medium

    CVE-2006-6310

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 6.0 SP1 and earlier allows remote attackers to cause a denial of service (crash) via an invalid src attribute value ("?") in an HTML frame tag that is in a frameset tag with a large rows attribute. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 6 Dec 2006
    5
    Medium

    CVE-2006-6311

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 6.0.2900.2180 allows remote attackers to cause a denial of service via a style attribute in an HTML table tag with a width value that is dynamically calculated using JavaScript.

    Published: 6 Dec 2006
    4.3
    Medium

    CVE-2006-6308

    Last Modified: 23 Apr 2026

    Symantec LiveState 7.1 Agent for Windows allows local users to gain privileges by stopping the shstart.exe process and open "Web Self-Service" from the system tray icon, which will open a browser window running with elevated privileges. NOTE: several third-party researchers have noted that administrator privileges may be necessary to terminate shstart.exe. If this is the case, then no privilege escalation occurs, and this is not a vulnerability

    Published: 6 Dec 2006
    9.3
    Critical

    CVE-2006-5994

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Microsoft Word 2000 and 2002, Office Word and Word Viewer 2003, Word 2004 and 2004 v. X for Mac, and Works 2004, 2005, and 2006 allows remote attackers to execute arbitrary code via a Word document with a malformed string that triggers memory corruption, a different vulnerability than CVE-2006-6456.

    Published: 6 Dec 2006
    10
    Critical

    CVE-2006-5855

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in IBM Tivoli Storage Manager (TSM) before 5.2.9 and 5.3.x before 5.3.4 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in (1) the language field at logon that begins with a 0x18 byte, (2) two unspecified parameters to the SmExecuteWdsfSession function, and (3) the contact field in an open registration message.

    Published: 6 Dec 2006
    6.8
    Medium

    CVE-2006-5856

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the Adobe Download Manager before 2.2 allows remote attackers to execute arbitrary code via a long section name in the dm.ini file, which is populated via an AOM file.

    Published: 6 Dec 2006
    5
    Medium

    CVE-2006-6301

    Last Modified: 23 Apr 2026

    DenyHosts 2.5 does not properly parse sshd log files, which allows remote attackers to add arbitrary hosts to the /etc/hosts.deny file and cause a denial of service by adding arbitrary IP addresses to the sshd log file, as demonstrated by logging in via ssh with a login name containing certain strings with an IP address, which is not properly handled by a regular expression.

    Published: 6 Dec 2006
    5
    Medium

    CVE-2006-6302

    Last Modified: 23 Apr 2026

    fail2ban 0.7.4 and earlier does not properly parse sshd log files, which allows remote attackers to add arbitrary hosts to the /etc/hosts.deny file and cause a denial of service by adding arbitrary IP addresses to the sshd log file, as demonstrated by logging in via ssh with a login name containing certain strings with an IP address.

    Published: 6 Dec 2006
    10
    Critical

    CVE-2006-6235

    Last Modified: 23 Apr 2026

    A "stack overwrite" vulnerability in GnuPG (gpg) 1.x before 1.4.6, 2.x before 2.0.2, and 1.9.0 through 1.9.95 allows attackers to execute arbitrary code via crafted OpenPGP packets that cause GnuPG to dereference a function pointer from deallocated stack memory.

    Published: 6 Dec 2006