CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2006-4099

    Last Modified: 23 Apr 2026

    Business Objects Crystal Enterprise 9 and 10 generates predictable session identifiers, which allows remote attackers to hijack sessions of other users via WCSID cookie values.

    Published: 29 Nov 2006
    7.5
    High

    CVE-2006-6168

    Last Modified: 23 Apr 2026

    tiki-register.php in TikiWiki before 1.9.7 allows remote attackers to trigger "notification-spam" via certain vectors such as a comma-separated list of addresses in the email field, related to lack of "a minimal check on email."

    Published: 29 Nov 2006
    6.8
    Medium

    CVE-2006-6166

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in jce.php in the JCE Admin Component in Ryan Demmer Joomla Content Editor (JCE) 1.0.4 for Joomla! (com_jce), without the 20060821 jce_patch, allows remote attackers to inject arbitrary web script or HTML via the mosConfig_live_site parameter.

    Published: 29 Nov 2006
    7.5
    High

    CVE-2006-6167

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in L. Brandon Stone and Nathanial P. Hendler Active PHP Bookmarks (APB) 1.1.02 allow remote attackers to execute arbitrary PHP code via a URL in the APB_SETTINGS['apb_path'] parameter in (1) apb_common.php or (2) apb.php. NOTE: CVE and another third party dispute this vulnerability because these PHP scripts exit if the attack vectors are present in GPC variables

    Published: 29 Nov 2006
    4.3
    Medium

    CVE-2006-6162

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in tiki-edit_structures.php in TikiWiki 1.9.6 allows remote attackers to inject arbitrary web script or HTML via the pageAlias parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 29 Nov 2006
    4.3
    Medium

    CVE-2006-6163

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in tiki-setup_base.php in TikiWiki before 1.9.7 allows remote attackers to inject arbitrary JavaScript via unspecified parameters.

    Published: 29 Nov 2006
    7.8
    High

    CVE-2006-6165

    Last Modified: 23 Apr 2026

    ld.so in FreeBSD, NetBSD, and possibly other BSD distributions does not remove certain harmful environment variables, which allows local users to gain privileges by passing certain environment variables to loading processes. NOTE: this issue has been disputed by a third party, stating that it is the responsibility of the application to properly sanitize the environment

    Published: 29 Nov 2006
    7.2
    High

    CVE-2006-6164

    Last Modified: 23 Apr 2026

    The _dl_unsetenv function in loader.c in the ELF ld.so in OpenBSD 3.9 and 4.0 does not properly remove duplicate environment variables, which allows local users to pass dangerous variables such as LD_PRELOAD to loading processes, which might be leveraged to gain privileges.

    Published: 29 Nov 2006
    6.8
    Medium

    CVE-2006-6120

    Last Modified: 23 Apr 2026

    Integer overflow in the KPresenter import filter for Microsoft PowerPoint files (filters/olefilters/lib/klaola.cc) in KOffice before 1.6.1 allows user-assisted remote attackers to execute arbitrary code via a crafted PPT file, which results in a heap-based buffer overflow.

    Published: 29 Nov 2006
    7.2
    High

    CVE-2006-5751

    Last Modified: 23 Apr 2026

    Integer overflow in the get_fdb_entries function in net/bridge/br_ioctl.c in the Linux kernel before 2.6.18.4 allows local users to execute arbitrary code via a large maxnum value in an ioctl request.

    Published: 29 Nov 2006
    5
    Medium

    CVE-2006-6113

    Last Modified: 23 Apr 2026

    Monkey Boards 0.3.5 allows remote attackers to obtain sensitive information via direct requests to (1) include/admin_auth.inc.php and (2) include/engine/class.compiler.php, which reveals the full path in an error message. NOTE: this issue is only an exposure if the administrator has changed the default script path.

    Published: 28 Nov 2006
    2.1
    Low

    CVE-2006-6145

    Last Modified: 23 Apr 2026

    CRYPTOCard CRYPTO-Server before 6.4.56 stores LDAP credentials in plaintext in UninstallerData\installvariables.properties, which has insecure permissions and allows local users to obtain the credentials. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 28 Nov 2006
    2.6
    Low

    CVE-2006-6146

    Last Modified: 23 Apr 2026

    Buffer overflow in the HPDF_Page_Circle function in hpdf_page_operator.c in Takeshi Kanno Haru Free PDF Library (libharu2, aka libharu) 2.0.7 and earlier allows context-dependent attackers to cause a denial of service (application crash) via certain arguments that yield a large amount of PDF data, as demonstrated by a filled circle.

    Published: 28 Nov 2006
    7.5
    High

    CVE-2006-6147

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in JiRos Links Manager allow remote attackers to execute arbitrary SQL commands via the (1) LinkID parameter to openlink.asp or the (2) CategoryID parameter to viewlinks.asp.

    Published: 28 Nov 2006
    6.8
    Medium

    CVE-2006-6148

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in submitlink.asp in JiRos Links Manager allow remote attackers to inject arbitrary web script or HTML via the (1) lName, (2) lURL, (3) lImage, and (4) lDescription parameters. NOTE: some of these details are obtained from third party information.

    Published: 28 Nov 2006
    7.5
    High

    CVE-2006-6152

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in vSpin.net Classified System 2004 allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter to (a) cat.asp, or the (2) keyword, (3) order, (4) sort, (5) menuSelect, or (6) state parameter to (b) search.asp.

    Published: 28 Nov 2006
    4.3
    Medium

    CVE-2006-6153

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in vSpin.net Classified System 2004 allow remote attackers to inject arbitrary web script or HTML via (1) catname parameter to cat.asp or the (2) minprice parameter to search.asp.

    Published: 28 Nov 2006
    7.5
    High

    CVE-2006-6154

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in addcode.php in HIOX Star Rating System Script (HSRS) 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the hm parameter.

    Published: 28 Nov 2006
    7.5
    High

    CVE-2006-6150

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in memory/OWLMemoryProperty.php in OWLLib 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the OWLLIB_ROOT parameter.

    Published: 28 Nov 2006
    7.5
    High

    CVE-2006-6160

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in details.asp in Doug Luxem Liberum Help Desk 0.97.3 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 28 Nov 2006
    7.5
    High

    CVE-2006-6161

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Doug Luxem Liberum Help Desk 0.97.3 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id and (2) uid parameter to (a) inout/status.asp, (b) inout/update.asp, and (c) forgotpass.asp. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 28 Nov 2006
    5
    Medium

    CVE-2006-4518

    Last Modified: 23 Apr 2026

    Qbik WinGate 6.1.4 and earlier allows remote attackers to cause a denial of service (CPU consumption) via a DNS request with a self-referencing compressed name pointer, which triggers an infinite loop.

    Published: 28 Nov 2006
    7.5
    High

    CVE-2006-6157

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in ContentNow 1.39 and earlier allows remote attackers to execute arbitrary SQL commands via the pageid parameter. NOTE: this issue can be leveraged for path disclosure with an invalid pageid parameter.

    Published: 28 Nov 2006
    7.5
    High

    CVE-2006-6151

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in centre.php in Messagerie Locale as of 20061127 allows remote attackers to execute arbitrary PHP code via a URL in the page parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 28 Nov 2006
    7.5
    High

    CVE-2006-6155

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in addrating.php in HIOX Star Rating System Script (HSRS) 1.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) ipadd or (2) url parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 28 Nov 2006
    6.8
    Medium

    CVE-2006-6158

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in (a) PMOS Help Desk 2.4, formerly (b) InverseFlow Help Desk 2.31 and also sold as (c) Ace Helpdesk 2.31, allow remote attackers to inject arbitrary web script or HTML via the (1) id or email parameter to ticketview.php, or (2) the email parameter to ticket.php.

    Published: 28 Nov 2006
    6.8
    Medium

    CVE-2006-6159

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in newticket.php in DeskPRO 2.0.0 and 2.0.1 allow remote attackers to inject arbitrary web script or HTML via the (1) message or (2) subject parameter.

    Published: 28 Nov 2006
    7.5
    High

    CVE-2006-6149

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.asp in JiRos FAQ Manager 1.0 allows remote attackers to execute arbitrary SQL commands via the tID parameter.

    Published: 28 Nov 2006
    4.3
    Medium

    CVE-2006-6156

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in auth/message.php in HIOX Star Rating System Script (HSRS) 1.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the query string (PHP_SELF). NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 28 Nov 2006
    10
    Critical

    CVE-2006-6136

    Last Modified: 23 Apr 2026

    IBM WebSphere Application Server 6.1.0 before Fix Pack 3 (6.1.0.3) does not perform EAL4 authentication checks at the proper time during "registering of response operation," which has unknown impact and attack vectors.

    Published: 28 Nov 2006
    7.5
    High

    CVE-2006-6137

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Sisfo Kampus 0.8 allow remote attackers to execute arbitrary PHP code via a URL in the (1) exec parameter to index.php or (2) print parameter to print.php, which is also accessible via the print command to index.php.

    Published: 28 Nov 2006
    5
    Medium

    CVE-2006-6138

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in download.php in Sisfo Kampus 0.8 allows remote attackers to list arbitrary directories via an absolute pathname in the dir parameter.

    Published: 28 Nov 2006
    5
    Medium

    CVE-2006-6139

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in downloadexcel.php in Sisfo Kampus 2006 (Semarang 3) allows remote attackers to read arbitrary files via the fn parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 28 Nov 2006
    7.5
    High

    CVE-2006-6140

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in Sisfo Kampus 2006 (Semarang 3) allows remote attackers to execute arbitrary PHP code via a URL in the slnt parameter to (1) index.php and (2) print.php. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 28 Nov 2006
    10
    Critical

    CVE-2006-6135

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in IBM WebSphere Application Server 6.1.0 before Fix Pack 3 (6.1.0.3) have unknown impact and attack vectors, related to (1) a "Potential security vulnerability" (PK29725) and (2) "Potential security exposure" (PK30831).

    Published: 28 Nov 2006
    10
    Critical

    CVE-2006-4181

    Last Modified: 23 Apr 2026

    Format string vulnerability in the sqllog function in the SQL accounting code for radiusd in GNU Radius 1.2 and 1.3 allows remote attackers to execute arbitrary code via unknown vectors.

    Published: 28 Nov 2006
    5
    Medium

    CVE-2006-6141

    Last Modified: 23 Apr 2026

    Buffer overflow in Tftpd32 3.01 allows remote attackers to cause a denial of service via a long GET or PUT request, which is not properly handled when the request is displayed in the title of the gauge window.

    Published: 28 Nov 2006
    6.2
    Medium

    CVE-2006-6131

    Last Modified: 23 Apr 2026

    Untrusted search path vulnerability in (1) WSAdminServer and (2) WSWebServer in Kerio WebSTAR (4D WebSTAR Server Suite) 5.4.2 and earlier allows local users with webstar privileges to gain root privileges via a malicious libucache.dylib helper library in the current working directory.

    Published: 28 Nov 2006
    7.5
    High

    CVE-2006-6132

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Link Exchange Lite allow remote attackers to execute arbitrary SQL commands via (1) the search engine field to search.asp and (2) psearch parameter to linkslist.asp.

    Published: 28 Nov 2006
    7.5
    High

    CVE-2006-6134

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the WMCheckURLScheme function in WMVCORE.DLL in Microsoft Windows Media Player (WMP) 10.00.00.4036 on Windows XP SP2, Server 2003, and Server 2003 SP1 allows remote attackers to cause a denial of service (application crash) and execute arbitrary code via a long HREF attribute, using an unrecognized protocol, in a REF element in an ASX PlayList file.

    Published: 28 Nov 2006
    4.9
    Medium

    CVE-2006-6130

    Last Modified: 23 Apr 2026

    Apple Mac OS X AppleTalk allows local users to cause a denial of service (kernel panic) by calling the AIOCREGLOCALZN ioctl command with a crafted data structure on an AppleTalk socket.

    Published: 28 Nov 2006
    7.6
    High

    CVE-2006-6133

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Visual Studio Crystal Reports for Microsoft Visual Studio .NET 2002 and 2002 SP1, .NET 2003 and 2003 SP1, and 2005 and 2005 SP1 (formerly Business Objects Crystal Reports XI Professional) allows user-assisted remote attackers to execute arbitrary code via a crafted RPT file.

    Published: 28 Nov 2006
    5
    Medium

    CVE-2006-5896

    Last Modified: 23 Apr 2026

    REMLAB Web Mech Designer 2.0.5 allows remote attackers to obtain the full path of the script via an incorrect Tonnage parameter to calculate.php that triggers a divide-by-zero error, which leaks the path in an error message.

    Published: 27 Nov 2006
    7.5
    High

    CVE-2006-5750

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in the DeploymentFileRepository class in JBoss Application Server (jbossas) 3.2.4 through 4.0.5 allows remote authenticated users to read or modify arbitrary files, and possibly execute arbitrary code, via unspecified vectors related to the console manager.

    Published: 27 Nov 2006
    7.5
    High

    CVE-2006-6125

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the wireless driver (WG311ND5.SYS) 2.3.1.10 for NetGear WG311v1 wireless adapter allows remote attackers to execute arbitrary code via an 802.11 management frame with a long SSID.

    Published: 27 Nov 2006
    2.1
    Low

    CVE-2006-6126

    Last Modified: 23 Apr 2026

    Apple Mac OS X allows local users to cause a denial of service (memory corruption) via a crafted Mach-O binary with a malformed load_command data structure.

    Published: 27 Nov 2006
    2.1
    Low

    CVE-2006-6127

    Last Modified: 23 Apr 2026

    Apple Mac OS X kernel allows local users to cause a denial of service via a process that uses kevent to register a queue and an event, then fork a child process that uses kevent to register an event for the same queue as the parent.

    Published: 27 Nov 2006
    2.1
    Low

    CVE-2006-6128

    Last Modified: 23 Apr 2026

    The ReiserFS functionality in Linux kernel 2.6.18, and possibly other versions, allows local users to cause a denial of service via a malformed ReiserFS file system that triggers memory corruption when a sync is performed.

    Published: 27 Nov 2006
    4.6
    Medium

    CVE-2006-6129

    Last Modified: 23 Apr 2026

    Integer overflow in the fatfile_getarch2 in Apple Mac OS X allows local users to cause a denial of service and possibly execute arbitrary code via a crafted Mach-O Universal program that triggers memory corruption.

    Published: 27 Nov 2006
    7.5
    High

    CVE-2006-6122

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in TIN before 1.8.2 have unspecified impact and attack vectors, a different vulnerability than CVE-2006-0804.

    Published: 26 Nov 2006