CVE Feed

    Dashboard / CVE

    4.6
    Medium

    CVE-2006-4810

    Last Modified: 23 Apr 2026

    Buffer overflow in the readline function in util/texindex.c, as used by the (1) texi2dvi and (2) texindex commands, in texinfo 4.8 and earlier allows local users to execute arbitrary code via a crafted Texinfo file.

    Published: 8 Nov 2006
    4.6
    Medium

    CVE-2006-5784

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in enserver.exe in SAP Web Application Server 6.40 before patch 136 and 7.00 before patch 66 allows remote attackers to read arbitrary files via crafted data on a "3200+SYSNR" TCP port, as demonstrated by port 3201. NOTE: this issue can be leveraged by local users to access a named pipe as the SAPServiceJ2E user.

    Published: 7 Nov 2006
    7.5
    High

    CVE-2006-5792

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in XLink Omni-NFS Enterprise allows remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by vd_xlink2.pm, an "Omni-NFS Enterprise remote exploit." NOTE: this is probably a different vulnerability than CVE-2006-5780. As of 20061107, this disclosure has no actionable information. However, since it is from a reliable researcher, it is being assigned a CVE identifier for tracking purposes.

    Published: 7 Nov 2006
    7.5
    High

    CVE-2006-5790

    Last Modified: 23 Apr 2026

    Multiple format string vulnerabilities in elogd.c in ELOG 2.6.2 and earlier allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via (1) an entry with an attachment whose name contains format string specifiers (el_submit function), and possibly other vectors in the (2) receive_config, (3) show_rss_feed, (4) show_elog_list, (5) show_logbook_node, and (6) server_loop functions.

    Published: 7 Nov 2006
    7.5
    High

    CVE-2006-5786

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in class2.php in e107 0.7.5 and earlier allows remote attackers to read and execute PHP code in arbitrary files via ".." sequences in the e107language_e107cookie cookie to gsitemap.php.

    Published: 7 Nov 2006
    5
    Medium

    CVE-2006-5785

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in SAP Web Application Server 6.40 before patch 136 and 7.00 before patch 66 allows remote attackers to cause a denial of service (enserver.exe crash) via a 0x72F2 sequence on UDP port 64999.

    Published: 7 Nov 2006
    7.5
    High

    CVE-2006-5787

    Last Modified: 23 Apr 2026

    admin/index.php in IPrimal Forums as of 20061105 allows remote attackers to bypass authentication and modify user passwords via a direct request, possibly related to an authentication issue in admin/chk_admin.php.

    Published: 7 Nov 2006
    7.5
    High

    CVE-2006-5788

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in (1) index.php and (2) admin/index.php in IPrimal Forums as of 20061105 allows remote attackers to execute arbitrary PHP code via a URL in the p parameter.

    Published: 7 Nov 2006
    4
    Medium

    CVE-2006-5789

    Last Modified: 23 Apr 2026

    War FTP Daemon (WarFTPd) 1.82.00-RC11 allows remote authenticated users to cause a denial of service via a large number of "%s" format strings in (1) CWD, (2) CDUP, (3) DELE, (4) NLST, (5) LIST, (6) SIZE, and possibly other commands. NOTE: it is possible that vector 1 is an off-by-one variant or incomplete fix of CVE-2005-0312.

    Published: 7 Nov 2006
    2.6
    Low

    CVE-2006-5791

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in elogd.c in ELOG 2.6.2 and earlier allow remote attackers to inject arbitrary HTML or web script via (1) the filename for downloading, which is not quoted in an error message by the send_file_direct function, and (2) the Type or Category values in a New entry, which is not properly handled in an error message by the submit_elog function.

    Published: 7 Nov 2006
    7.8
    High

    CVE-2006-5783

    Last Modified: 23 Apr 2026

    Firefox 1.5.0.7 on Kubuntu Linux allows remote attackers to cause a denial of service (crash) via a long URL in an A tag. NOTE: this issue has been disputed by several vendors, who could not reproduce the report. In addition, the scope of the impact - system freeze - suggests an issue that is not related to Firefox. Due to this impact, CVE concurs with the dispute

    Published: 7 Nov 2006
    5
    Medium

    CVE-2006-5651

    Last Modified: 23 Apr 2026

    list.php in DigiOz Guestbook before 1.7.1 allows remote attackers to obtain sensitive information via a non-numeric page parameter, which displays the installation path in the resulting error message.

    Published: 7 Nov 2006
    7.5
    High

    CVE-2006-5781

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the handshake function in iodine 0.3.2 allows remote attackers to execute arbitrary code via a crafted DNS response.

    Published: 7 Nov 2006
    7.5
    High

    CVE-2006-5650

    Last Modified: 23 Apr 2026

    The ICQPhone.SipxPhoneManager ActiveX control in America Online ICQ 5.1 allows remote attackers to download and execute arbitrary code via the DownloadAgent function, as demonstrated using an ICQ avatar.

    Published: 7 Nov 2006
    4.6
    Medium

    CVE-2006-5778

    Last Modified: 23 Apr 2026

    ftpd in linux-ftpd 0.17, and possibly other versions, performs a chdir before setting the UID, which allows local users to bypass intended access restrictions by redirecting their home directory to a restricted directory.

    Published: 7 Nov 2006
    7.5
    High

    CVE-2006-5780

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in nfsd.exe in XLink Omni-NFS Server 5.2 allows remote attackers to execute arbitrary code via a crafted TCP packet to port 2049 (nfsd), as demonstrated by vd_xlink.pm.

    Published: 7 Nov 2006
    7.5
    High

    CVE-2006-5779

    Last Modified: 23 Apr 2026

    OpenLDAP before 2.3.29 allows remote attackers to cause a denial of service (daemon crash) via LDAP BIND requests with long authcid names, which triggers an assertion failure.

    Published: 7 Nov 2006
    7.5
    High

    CVE-2006-5776

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusions in Ariadne 2.4.1 allows remote attackers to execute arbitrary PHP code via the ariadne parameter in (1) ftp/loader.php and (2) lib/includes/loader.cmd.php. NOTE: this issue is disputed by CVE, since installation instructions recommend that the files be placed outside of the web document root and require the administrator to modify $ariadne in an include file

    Published: 7 Nov 2006
    7.5
    High

    CVE-2006-4572

    Last Modified: 23 Apr 2026

    ip6_tables in netfilter in the Linux kernel before 2.6.16.31 allows remote attackers to (1) bypass a rule that disallows a protocol, via a packet with the protocol header not located immediately after the fragment header, aka "ip6_tables protocol bypass bug;" and (2) bypass a rule that looks for a certain extension header, via a packet with an extension header outside the first fragment, aka "ip6_tables extension header bypass bug."

    Published: 7 Nov 2006
    6.4
    Medium

    CVE-2007-0844

    Last Modified: 23 Apr 2026

    The auth_via_key function in pam_ssh.c in pam_ssh before 1.92, when the allow_blank_passphrase option is disabled, allows remote attackers to bypass authentication restrictions and use private encryption keys requiring a blank passphrase by entering a non-blank passphrase.

    Published: 7 Nov 2006
    5.1
    Medium

    CVE-2006-4809

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in loader_pnm.c in imlib2 before 1.2.1, and possibly other versions, allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PNM image.

    Published: 7 Nov 2006
    4
    Medium

    CVE-2006-5823

    Last Modified: 23 Apr 2026

    The zlib_inflate function in Linux kernel 2.6.x allows local users to cause a denial of service (crash) via a malformed filesystem that uses zlib compression that triggers memory corruption, as demonstrated using cramfs.

    Published: 7 Nov 2006
    5.1
    Medium

    CVE-2006-4806

    Last Modified: 23 Apr 2026

    Multiple integer overflows in imlib2 allow user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted (1) ARGB (loader_argb.c), (2) PNG (loader_png.c), (3) LBM (loader_lbm.c), (4) JPEG (loader_jpeg.c), or (5) TIFF (loader_tiff.c) images.

    Published: 7 Nov 2006
    2.6
    Low

    CVE-2006-4807

    Last Modified: 23 Apr 2026

    loader_tga.c in imlib2 before 1.2.1, and possibly other versions, allows user-assisted remote attackers to cause a denial of service (crash) via a crafted TGA image that triggers an out-of-bounds memory read, a different issue than CVE-2006-4808.

    Published: 7 Nov 2006
    7.5
    High

    CVE-2006-5794

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the sshd Privilege Separation Monitor in OpenSSH before 4.5 causes weaker verification that authentication has been successful, which might allow attackers to bypass authentication. NOTE: as of 20061108, it is believed that this issue is only exploitable by leveraging vulnerabilities in the unprivileged process, which are not known to exist.

    Published: 7 Nov 2006
    2.6
    Low

    CVE-2006-4808

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in loader_tga.c in imlib2 before 1.2.1, and possibly other versions, allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted TGA image.

    Published: 7 Nov 2006
    7.5
    High

    CVE-2006-5777

    Last Modified: 23 Apr 2026

    Creasito E-Commerce Content Manager 1.3.08 allows remote attackers to bypass authentication and perform privileged functions via a non-empty finame parameter to (1) addnewcont.php, (2) adminpassw.php, (3) amministrazione.php, (4) artins.php, (5) bgcolor.php, (6) cancartcat.php, (7) canccat.php, (8) cancelart.php, (9) cancontsit.php, (10) chanpassamm.php, (11) dele.php, (12) delecat.php, (13) delecont.php, (14) emailall.php, (15) gestflashtempl.php, (16) gestmagart.php, (17) gestmagaz.php, (18) gestpre.php, (19) input.php, (20) input3.php, (21) insnucat.php, (22) instempflash.php, (23) mailfc.php, (24) modfdati.php, (25) rescont4.php, (26) ricordo1.php, (27) ricordo4.php, (28) tabcatalg.php, (29) tabcont.php, (30) tabcont3.php, (31) tabstile.php, (32) tabstile3.php, (33) testimmg.php, and (34) update.php in admin/. NOTE: some of these details are obtained from third party information.

    Published: 7 Nov 2006
    6.8
    Medium

    CVE-2006-5770

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in ac4p Mobile allow remote attackers to inject arbitrary web script or HTML via (1) Bloks, (2) Newnews, (3) lBlok, and (4) foooot parameter in (a) index.php; Newnews, (5) newmsgs, and Bloks parameter in (b) MobileNews.php; Newnews parameter in (c) polls.php; (6) cats parameter in (d) send.php; (7) footer parameter in (e) up.php; and (8) pagenav parameter in (f) cp/index.php.

    Published: 6 Nov 2006
    5.1
    Medium

    CVE-2006-5763

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Free File Hosting 1.1, and possibly earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the AD_BODY_TEMP parameter to (1) login.php, (2) register.php, or (3) send.php. NOTE: the original provenance of this information is unknown; the details are obtained solely from third party information. NOTE: this issue was later reported for the "File Upload System" which is a component of Free File Hosting. Vector 1 also affects Free Image Hosting 2.0, which contains the same code.

    Published: 6 Nov 2006
    7.5
    High

    CVE-2006-5772

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in index.php in FreeWebshop 2.2.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) password and (2) prod parameter.

    Published: 6 Nov 2006
    7.5
    High

    CVE-2006-5764

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in contact.php in Free File Hosting 1.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the AD_BODY_TEMP parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: this issue was later reported for the "File Upload System" which is a component of Free File Hosting.

    Published: 6 Nov 2006
    4.3
    Medium

    CVE-2006-5771

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Arkoon SSL360 1.0 and 2.0 before 2.0/2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 6 Nov 2006
    6.8
    Medium

    CVE-2006-5775

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in profile.php in FunkBoard 0.71 before 4 November 2006 at 18:16 GMT allows remote attackers to inject arbitrary web script or HTML, possibly via the name parameter.

    Published: 6 Nov 2006
    7.5
    High

    CVE-2006-5765

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in rss.php in Article Script 1.6.3 and earlier allows remote attackers to execute arbitrary SQL commands via the category parameter.

    Published: 6 Nov 2006
    7.5
    High

    CVE-2006-5766

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in volume.php in Article System 0.6 allows remote attackers to execute arbitrary PHP code via a URL in the config[public_dir] parameter.

    Published: 6 Nov 2006
    6.8
    Medium

    CVE-2006-5767

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in includes/xhtml.php in Drake CMS 0.2.2 alpha rev.846 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the d_root parameter.

    Published: 6 Nov 2006
    7.5
    High

    CVE-2006-5768

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Cyberfolio 2.0 RC1 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the av parameter to (1) msg/view.php, (2) msg/inc_message.php, (3) msg/inc_envoi.php, and (4) admin/incl_voir_compet.php.

    Published: 6 Nov 2006
    4.3
    Medium

    CVE-2006-5769

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in admin.tool CMS 3 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) fSid or (2) fSrcBegriffe parameters in unspecified vectors.

    Published: 6 Nov 2006
    5
    Medium

    CVE-2006-5773

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in index.php in FreeWebshop 2.2.1 and earlier allows remote attackers to read arbitrary files and disclose the installation path via a .. (dot dot) in the action parameter.

    Published: 6 Nov 2006
    4.3
    Medium

    CVE-2006-5774

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Hyper NIKKI System before 2.19.9 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.

    Published: 6 Nov 2006
    5.1
    Medium

    CVE-2006-5762

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in forgot_pass.php in Free File Hosting 1.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the AD_BODY_TEMP parameter. NOTE: this issue was later reported for the "File Upload System" which is a component of Free File Hosting. This also affects Free Image Hosting 2.0, which contains the same code.

    Published: 6 Nov 2006
    4.3
    Medium

    CVE-2006-5761

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in Rhadrix If-CMS 1.01 and 2.07 allows remote attackers to inject arbitrary web script or HTML via the rns parameter.

    Published: 6 Nov 2006
    7.5
    High

    CVE-2006-5760

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in phpDynaSite 3.2.2 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the racine parameter to (1) function_log.php, (2) function_balise_url.php, or (3) connection.php.

    Published: 6 Nov 2006
    5
    Medium

    CVE-2006-5759

    Last Modified: 23 Apr 2026

    index.php in Rhadrix If-CMS, possibly 1.01 and 2.07, allows remote attackers to obtain the full path of the web server via empty (1) rns[] or (2) pag[] arguments, which reveals the path in an error message.

    Published: 6 Nov 2006
    7.2
    High

    CVE-2006-5758

    Last Modified: 23 Apr 2026

    The Graphics Rendering Engine in Microsoft Windows 2000 through 2000 SP4 and Windows XP through SP2 maps GDI Kernel structures on a global shared memory section that is mapped with read-only permissions, but can be remapped by other processes as read-write, which allows local users to cause a denial of service (memory corruption and crash) and gain privileges by modifying the kernel structures.

    Published: 6 Nov 2006
    4.3
    Medium

    CVE-2006-5743

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Highwall Enterprise and Highwall Endpoint 4.0.2.11045 management interface allow remote attackers to inject arbitrary web script or HTML via (1) an Access Point with a crafted SSID, (2) the name of the sensor WIDS, (3) the name of the Highwall EndPoint workstation, or other unspecified vectors.

    Published: 6 Nov 2006
    7.5
    High

    CVE-2006-5744

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Highwall Enterprise and Highwall Endpoint 4.0.2.11045 management interface allow remote attackers to execute arbitrary SQL commands via an Access Point with a crafted SSID, and via unspecified vectors related to a malicious system operator.

    Published: 6 Nov 2006
    5
    Medium

    CVE-2006-5742

    Last Modified: 23 Apr 2026

    The AirMagnet Enterprise console and Remote Sensor console (Laptop) in AirMagnet Enterprise before 7.5 build 6307 allows remote attackers to inject arbitrary web script or HTML from a certain embedded Internet Explorer object into an SSID template value, aka "Cross-Application Scripting (XAS)".

    Published: 6 Nov 2006
    4.3
    Medium

    CVE-2006-5741

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in AirMagnet Enterprise before 7.5 build 6307 allow remote attackers to inject arbitrary web script or HTML via (1) the 404 error page of the Smart Sensor Edge Sensor; (2) the user name for a failed logon, when displayed in the audit journals reviewing interface (/AirMagnetSensor/AMSensor.dll/XH) by the Smart Sensor Edge Sensor log viewer; and (3) an SSID of an AP, when displayed on an ACL page (/Amom/Amom.dll/BD) of the Enterprise Server Status Overview in the Enterprise Server Web interface.

    Published: 6 Nov 2006
    7.2
    High

    CVE-2006-5738

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in PunBB before 1.2.14 allow remote authenticated administrators to execute arbitrary SQL commands via unspecified vectors.

    Published: 6 Nov 2006