CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2006-5260

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in compteur.php in Compteur 2 allows remote attackers to execute arbitrary PHP code via a URL in the cp parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information.

    Published: 12 Oct 2006
    6.8
    Medium

    CVE-2006-5264

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in sql.php in MysqlDumper 1.21 b6 allows remote attackers to inject arbitrary web script or HTML via the db parameter.

    Published: 12 Oct 2006
    4.9
    Medium

    CVE-2006-4516

    Last Modified: 23 Apr 2026

    Integer signedness error in FreeBSD 6.0-RELEASE allows local users to cause a denial of service (memory corruption and kernel panic) via a PT_LWPINFO ptrace command with a large negative data value that satisfies a signed maximum value check but is used in an unsigned copyout function call.

    Published: 12 Oct 2006
    Unknown

    CVE-2006-4840

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-3888. Reason: This candidate is a reservation duplicate of CVE-2006-3888. Notes: All CVE users should reference CVE-2006-3888 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 12 Oct 2006
    7.5
    High

    CVE-2006-5237

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in Blue Smiley Organizer before 4.46 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Published: 12 Oct 2006
    10
    Critical

    CVE-2006-5238

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the file upload module in Blue Smiley Organizer before 4.45 has unknown impact and attack vectors.

    Published: 12 Oct 2006
    4.3
    Medium

    CVE-2006-5239

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in eXpBlog 0.3.5 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the query string (PHP_SELF) in kalender.php or (2) the captcha_session_code parameter in pre_details.php.

    Published: 12 Oct 2006
    6.8
    Medium

    CVE-2006-5247

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Eazy Cart allow remote attackers to inject arbitrary web script or HTML via easycart.php, possibly related to the (1) des and (2) qty parameters in an add action, and via other unspecified vectors. NOTE: some details are obtained from third party information.

    Published: 12 Oct 2006
    7.5
    High

    CVE-2006-5242

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in Etomite Content Management System (CMS) before 0.6.1.1 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Published: 12 Oct 2006
    7.8
    High

    CVE-2006-5248

    Last Modified: 23 Apr 2026

    Eazy Cart stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a customer database via a direct request for admin/config/customer.dat. NOTE: the provenance of this information is unknown; the details are obtained from third party information.

    Published: 12 Oct 2006
    7.5
    High

    CVE-2006-5249

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in tagmin/delTagUser.php in TagIt! Tagboard 2.1.B Build 2 (tagit2b) allows remote attackers to execute arbitrary PHP code via a URL in the configpath parameter.

    Published: 12 Oct 2006
    7.5
    High

    CVE-2006-5243

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in OpenDock Easy Doc 1.4 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the doc_directory parameter in (1) down_stat.php, (2) file.php, (3) find_file.php, (4) lib_file.php, and (5) lib_form_file.php in sw/lib_up_file/; (6) find_comment.php, (7) comment.php, and (8) lib_comment.php in sw/lib_comment/; (9) sw/lib_find/find.php; and other unspecified PHP scripts.

    Published: 12 Oct 2006
    5.1
    Medium

    CVE-2006-5244

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in OpenDock Easy Blog 1.4 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the doc_directory parameter in (1) down_stat.php, (2) file.php, (3) find_file.php, (4) lib_read_file.php, and (5) lib_form_file.php in sw/lib_up_file; (6) find_comment.php, (7) comment.php, and (8) lib_comment.php in sw/lib_comment/; (9) sw/lib_find/find.php; and other unspecified vectors.

    Published: 12 Oct 2006
    7.5
    High

    CVE-2006-5245

    Last Modified: 23 Apr 2026

    Eazy Cart allows remote attackers to bypass authentication and gain administrative access via a direct request for admin/home/index.php, and possibly other PHP scripts under admin/.

    Published: 12 Oct 2006
    5
    Medium

    CVE-2006-5246

    Last Modified: 23 Apr 2026

    Eazy Cart allows remote attackers to change prices and other critical fields via unspecified vectors to easycart.php, probably including the price parameter. NOTE: some details are obtained from third party information.

    Published: 12 Oct 2006
    5.1
    Medium

    CVE-2006-5250

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in lib/googlesearch/GoogleSearch.php in BlueShoes 4.6_public and earlier allows remote attackers to execute arbitrary PHP code via a URL in the APP[path][lib] parameter, a different vector than CVE-2006-2864.

    Published: 12 Oct 2006
    5.1
    Medium

    CVE-2006-5240

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in engine/require.php in Docmint 2.0 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the MY_ENV[BASE_ENGINE_LOC] parameter.

    Published: 12 Oct 2006
    5.1
    Medium

    CVE-2006-5241

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in OpenDock Easy Gallery 1.4 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the doc_directory parameter in (1) file.php; (2) find_user.php, (3) lib_user.php, (4) lib_form_user.php, and (5) user.php in sw/lib_user/; (6) find_session.php and (7) session.php in sw/lib_session/; (8) comment.php and (9) lib_comment.php in sw/lib_comment/; and other unspecified PHP scripts.

    Published: 12 Oct 2006
    7.5
    High

    CVE-2006-5235

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in includes/functions_kb.php in Dimension of phpBB 0.2.6 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information.

    Published: 11 Oct 2006
    7.5
    High

    CVE-2006-5236

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in search.php in 4images 1.7.x allows remote authenticated users to execute arbitrary SQL commands via the search_user parameter.

    Published: 11 Oct 2006
    7.8
    High

    CVE-2006-5233

    Last Modified: 23 Apr 2026

    Polycom SoundPoint IP 301 VoIP Desktop Phone, firmware version 1.4.1.0040, allows remote attackers to cause a denial of service (reboot) via (1) a long URL sent to the HTTP daemon and (2) unspecified manipulations as demonstrated by the Nessus http_fingerprinting_hmap.nasl script.

    Published: 11 Oct 2006
    7.5
    High

    CVE-2006-5234

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in phpWebSite 0.10.2 allow remote attackers to execute arbitrary PHP code via a URL in the PHPWS_SOURCE_DIR parameter in (1) init.php, (2) users.php, (3) Cookie.php, (4) forms.php, (5) Groups.php, (6) ModSetting.php, (7) Calendar.php, (8) DateTime.php, (9) core.php, (10) ImgLibrary.php, (11) Manager.php, and (12) Template.php, and (13) EZform.php. NOTE: CVE disputes this report, since "PHPWS_SOURCE_DIR" is defined as a constant, not accessed as a variable

    Published: 11 Oct 2006
    2.1
    Low

    CVE-2006-4813

    Last Modified: 23 Apr 2026

    The __block_prepare_write function in fs/buffer.c for Linux kernel 2.6.x before 2.6.13 does not properly clear buffers during certain error conditions, which allows local users to read portions of files that have been unlinked.

    Published: 11 Oct 2006
    7.5
    High

    CVE-2006-5230

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in forum.php in FreeForum 0.9.7 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the fpath parameter.

    Published: 11 Oct 2006
    7.8
    High

    CVE-2006-5231

    Last Modified: 23 Apr 2026

    Grandstream GXP-2000 VoIP Desktop Phone, firmware version 1.1.0.5, allows remote attackers to cause a denial of service (hang or reboot) via a large amount of ASCII data sent to port (1) 5060/UDP, (2) 5062/UDP, (3) 5064/UDP, (4) 5066/UDP, (5) 9876/UDP, or (6) 26789/UDP.

    Published: 11 Oct 2006
    7.5
    High

    CVE-2006-5232

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in iSearch 2.16 allow remote attackers to execute arbitrary PHP code via a URL in the isearch_path parameter in (1) index.php, (2) viewcache.php, (3) sitemap.php, (4) isearch.inc.php, (5) google_sitemap.php, (6) stats.php, or (7) auto_spider_img.php. NOTE: this issue has been disputed by a third party who shows that $isearch_path is set to a constant value. CVE analysis as of 20061010 is inconclusive, although the original researcher is known to make mistakes

    Published: 11 Oct 2006
    7.5
    High

    CVE-2006-3887

    Last Modified: 23 Apr 2026

    Buffer overflow in AOL You've Got Pictures (YGP) Screensaver ActiveX control allows remote attackers to execute arbitrary code via unspecified vectors.

    Published: 10 Oct 2006
    7.5
    High

    CVE-2006-3888

    Last Modified: 23 Apr 2026

    Buffer overflow in AOL You've Got Pictures (YGP) Pic Downloader YGPPDownload ActiveX control (AOL.PicDownloadCtrl.1, YGPPicDownload.dll), as used in America Online 9.0 Security Edition, allows remote attackers to execute arbitrary code via a long argument to the SetAlbumName method.

    Published: 10 Oct 2006
    2.6
    Low

    CVE-2006-5229

    Last Modified: 23 Apr 2026

    OpenSSH portable 4.1 on SUSE Linux, and possibly other platforms and versions, and possibly under limited configurations, allows remote attackers to determine valid usernames via timing discrepancies in which responses take longer for valid usernames than invalid ones, as demonstrated by sshtime. NOTE: as of 20061014, it appears that this issue is dependent on the use of manually-set passwords that causes delays when processing /etc/shadow due to an increased number of rounds.

    Published: 10 Oct 2006
    9.3
    Critical

    CVE-2006-3434

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Microsoft Office 2000, XP, 2003, 2004 for Mac, and v.X for Mac allows remote user-assisted attackers to execute arbitrary code via a crafted string that triggers memory corruption.

    Published: 10 Oct 2006
    9.3
    Critical

    CVE-2006-3647

    Last Modified: 23 Apr 2026

    Integer overflow in Microsoft Word 2000, 2002, 2003, 2004 for Mac, and v.X for Mac allows remote user-assisted attackers to execute arbitrary code via a crafted string in a Word document, which overflows a 16-bit integer length value, aka "Memmove Code Execution," a different vulnerability than CVE-2006-3651 and CVE-2006-4693.

    Published: 10 Oct 2006
    9.3
    Critical

    CVE-2006-3651

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Microsoft Word 2000, 2002, and Office 2003 allows remote user-assisted attackers to execute arbitrary code via a crafted mail merge file, a different vulnerability than CVE-2006-3647 and CVE-2006-4693.

    Published: 10 Oct 2006
    5.1
    Medium

    CVE-2006-3868

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Microsoft Office XP and 2003 allows remote user-assisted attackers to execute arbitrary code via a malformed Smart Tag.

    Published: 10 Oct 2006
    5.1
    Medium

    CVE-2006-3867

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Microsoft Excel 2000, 2002, 2003, 2004 for Mac, v.X for Mac, and Excel Viewer 2003 allows user-assisted attackers to execute arbitrary code via a crafted Lotus 1-2-3 file, a different vulnerability than CVE-2006-2387 and CVE-2006-3875.

    Published: 10 Oct 2006
    5.1
    Medium

    CVE-2006-3875

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Microsoft Excel 2000, 2002, 2003, 2004 for Mac, v.X for Mac, and Excel Viewer 2003 allows user-assisted attackers to execute arbitrary code via a crafted COLINFO record in an XLS file, a different vulnerability than CVE-2006-2387 and CVE-2006-3867.

    Published: 10 Oct 2006
    4.6
    Medium

    CVE-2006-3978

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in a Verity third party library, as used on Adobe ColdFusion MX 7 through MX 7.0.2 and possibly other products, allows local users to execute arbitrary code via unknown attack vectors.

    Published: 10 Oct 2006
    2.6
    Low

    CVE-2006-4685

    Last Modified: 23 Apr 2026

    The XMLHTTP ActiveX control in Microsoft XML Parser 2.6 and XML Core Services 3.0 through 6.0 does not properly handle HTTP server-side redirects, which allows remote user-assisted attackers to access content from other domains.

    Published: 10 Oct 2006
    7.5
    High

    CVE-2006-4686

    Last Modified: 23 Apr 2026

    Buffer overflow in the Extensible Stylesheet Language Transformations (XSLT) processing in Microsoft XML Parser 2.6 and XML Core Services 3.0 through 6.0 allows remote attackers to execute arbitrary code via a crafted Web page.

    Published: 10 Oct 2006
    9.3
    Critical

    CVE-2006-4693

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Microsoft Word 2004 for Mac and v.X for Mac allows remote user-assisted attackers to execute arbitrary code via a crafted string in a Word file, a different issue than CVE-2006-3647 and CVE-2006-3651.

    Published: 10 Oct 2006
    9
    Critical

    CVE-2006-4696

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the Server service in Microsoft Windows 2000 SP4, Server 2003 SP1 and earlier, and XP SP2 and earlier allows remote attackers to execute arbitrary code via a crafted packet, aka "SMB Rename Vulnerability."

    Published: 10 Oct 2006
    2.1
    Low

    CVE-2006-5199

    Last Modified: 23 Apr 2026

    Adobe Contribute Publishing Server leaks the administrator password in logs that are created during product installation, which allows local users to gain privileges to the server.

    Published: 10 Oct 2006
    5
    Medium

    CVE-2006-5200

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Adobe Breeze 5 Licensed Server and Breeze 5.1 Licensed Server allows attackers to read arbitrary files via unknown vectors related to "URL parsing."

    Published: 10 Oct 2006
    9.3
    Critical

    CVE-2006-3877

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in PowerPoint in Microsoft Office 2000, Office 2002, Office 2003, Office 2004 for Mac, and Office v.X for Mac allows user-assisted attackers to execute arbitrary code via an unspecified "crafted file," a different vulnerability than CVE-2006-3435, CVE-2006-4694, and CVE-2006-3876.

    Published: 10 Oct 2006
    5.1
    Medium

    CVE-2006-2387

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Microsoft Excel 2000, 2002, 2003, 2004 for Mac, v.X for Mac, Excel Viewer 2003, and Microsoft Works Suite 2004 through 2006 allows user-assisted attackers to execute arbitrary code via a crafted DATETIME record in an XLS file, a different vulnerability than CVE-2006-3867 and CVE-2006-3875.

    Published: 10 Oct 2006
    9.3
    Critical

    CVE-2006-3650

    Last Modified: 23 Apr 2026

    Microsoft Office 2000, XP, 2003, 2004 for Mac, and v.X for Mac do not properly parse the length of a chart record, which allows remote user-assisted attackers to execute arbitrary code via a Word document with an embedded malformed chart record that triggers an overwrite of pointer values with values from the document, a different vulnerability than CVE-2006-3434, CVE-2006-3864, and CVE-2006-3868.

    Published: 10 Oct 2006
    9.3
    Critical

    CVE-2006-3864

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in mso.dll in Microsoft Office 2000, XP, and 2003, and Microsoft PowerPoint 2000, XP, and 2003, allows remote user-assisted attackers to execute arbitrary code via a malformed record in a (1) .DOC, (2) .PPT, or (3) .XLS file that triggers memory corruption, related to an "array boundary condition" (possibly an array index overflow), a different vulnerability than CVE-2006-3434, CVE-2006-3650, and CVE-2006-3868.

    Published: 10 Oct 2006
    5.1
    Medium

    CVE-2006-4692

    Last Modified: 23 Apr 2026

    Argument injection vulnerability in the Windows Object Packager (packager.exe) in Microsoft Windows XP SP1 and SP2 and Server 2003 SP1 and earlier allows remote user-assisted attackers to execute arbitrary commands via a crafted file with a "/" (slash) character in the filename of the Command Line property, followed by a valid file extension, which causes the command before the slash to be executed, aka "Object Packager Dialogue Spoofing Vulnerability."

    Published: 10 Oct 2006
    7.5
    High

    CVE-2006-5221

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Cahier de texte 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) matiere_ID parameter in lire.php or the (2) classe_ID parameter in lire_a_faire.php.

    Published: 10 Oct 2006
    7.5
    High

    CVE-2006-5223

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in includes/functions_user_viewed_posts.php in the Nivisec User Viewed Posts Tracker module 1.0 and earlier for phpBB allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.

    Published: 10 Oct 2006
    7.5
    High

    CVE-2006-5224

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in includes/logger_engine.php in Dimitri Seitz Security Suite IP Logger 1.0.0 in dwingmods for phpBB allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.

    Published: 10 Oct 2006