CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2006-5181

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Joshua Muheim phpMyWebmin 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the target parameter in (1) change_preferences2.php, (2) create_file.php, (3) upload_local.php, and (4) upload_multi.php, different vectors than CVE-2006-5124.

    Published: 6 Oct 2006
    6.2
    Medium

    CVE-2006-5072

    Last Modified: 23 Apr 2026

    The System.CodeDom.Compiler classes in Novell Mono create temporary files with insecure permissions, which allows local users to overwrite arbitrary files or execute arbitrary code via a symlink attack.

    Published: 5 Oct 2006
    4.6
    Medium

    CVE-2006-4927

    Last Modified: 23 Apr 2026

    The (a) NAVENG (NAVENG.SYS) and (b) NAVEX15 (NAVEX15.SYS) device drivers 20061.3.0.12 and later, as used in Symantec AntiVirus and security products, allow local users to gain privileges by overwriting critical system addresses using a crafted Irp to the IOCTL functions (1) 0x222AD3, (2) 0x222AD7, and (3) 0x222ADB.

    Published: 5 Oct 2006
    5.1
    Medium

    CVE-2006-5169

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in John Himmelman (aka DaRk2k1) PowerPortal 1.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly related to registering a user. NOTE: the provenance of this information is unknown; the details are obtained from third party information.

    Published: 4 Oct 2006
    4.3
    Medium

    CVE-2006-5168

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the search functionality in Simon Brown Pebble 2.0.0 RC1 and RC2 allows remote attackers to inject arbitrary web script or HTML via the query string.

    Published: 4 Oct 2006
    5
    Medium

    CVE-2006-4511

    Last Modified: 23 Apr 2026

    Messenger Agents (nmma.exe) in Novell GroupWise 2.0.2 and 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted HTTP POST request to TCP port 8300 with a modified val parameter, which triggers a null dereference related to "zero-size strings in blowfish routines."

    Published: 4 Oct 2006
    6.8
    Medium

    CVE-2006-5164

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in cart.php in Sum Effect Software digiSHOP 4.0 allow remote attackers to inject arbitrary web script or HTML via the (1) sortBy or (2) search parameters.

    Published: 4 Oct 2006
    5.1
    Medium

    CVE-2006-5165

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in inc/functions.inc.php in Skrypty PPA Gallery 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the config[ppa_root_path] parameter.

    Published: 4 Oct 2006
    7.5
    High

    CVE-2006-5166

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in functions.php in PHP Web Scripts Easy Banner Free allows remote attackers to execute arbitrary PHP code via a URL in the s[phppath] parameter.

    Published: 4 Oct 2006
    1.2
    Low

    CVE-2006-5297

    Last Modified: 23 Apr 2026

    Race condition in the safe_open function in the Mutt mail client 1.5.12 and earlier, when creating temporary files in an NFS filesystem, allows local users to overwrite arbitrary files due to limitations of the use of the O_EXCL flag on NFS filesystems.

    Published: 4 Oct 2006
    5.1
    Medium

    CVE-2006-5167

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in BasiliX 1.1.1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the (1) BSX_LIBDIR parameter in scripts in /files/ including (a) abook.php3, (b) compose-attach.php3, (c) compose-menu.php3, (d) compose-new.php3, (e) compose-send.php3, (f) folder-create.php3, (g) folder-delete.php3, (h) folder-empty.php3, (i) folder-rename.php3, (j) folders.php3, (k) mbox-action.php3, (l) mbox-list.php3, (m) message-delete.php3, (n) message-forward.php3, (o) message-header.php3, (p) message-print.php3, (q) message-read.php3, (r) message-reply.php3, (s) message-replyall.php3, (t) message-search.php3, or (u) settings.php3; and the (2) BSX_HTXDIR parameter in (v) files/login.php3.

    Published: 4 Oct 2006
    10
    Critical

    CVE-2006-5151

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in HP Ignite-UX server before C.6.9.150 for HP-UX B.11.00, B.11.11, and B.11.23 allows remote attackers to "gain root access" via unspecified vectors.

    Published: 3 Oct 2006
    7.5
    High

    CVE-2006-5155

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in core/pdf.php in VideoDB 2.2.1 and earlier allows remote attackers to execute arbitrary PHP code via the config[pdf_module] parameter.

    Published: 3 Oct 2006
    10
    Critical

    CVE-2006-5156

    Last Modified: 23 Apr 2026

    Buffer overflow in McAfee ePolicy Orchestrator before 3.5.0.720 and ProtectionPilot before 1.1.1.126 allows remote attackers to execute arbitrary code via a request to /spipe/pkg/ with a long source header.

    Published: 3 Oct 2006
    5.1
    Medium

    CVE-2006-5157

    Last Modified: 23 Apr 2026

    Format string vulnerability in the ActiveX control (ATXCONSOLE.OCX) in TrendMicro OfficeScan Corporate Edition (OSCE) before 7.3 Patch 1 allows remote attackers to execute arbitrary code via format string identifiers in the "Management Console's Remote Client Install name search".

    Published: 3 Oct 2006
    5
    Medium

    CVE-2006-5162

    Last Modified: 23 Apr 2026

    wininet.dll in Microsoft Internet Explorer 6.0 SP2 and earlier allows remote attackers to cause a denial of service (unhandled exception and crash) via a long Content-Type header, which triggers a stack overflow.

    Published: 3 Oct 2006
    3.6
    Low

    CVE-2006-5163

    Last Modified: 23 Apr 2026

    IBM Informix Dynamic Server 10.UC3RC1 Trial for Linux and possibly other versions creates /tmp/installserver.txt with insecure permissions, which allows local users to append data to arbitrary files via a symlink attack.

    Published: 3 Oct 2006
    5
    Medium

    CVE-2006-5153

    Last Modified: 23 Apr 2026

    The (1) fwdrv.sys and (2) khips.sys drivers in Sunbelt Kerio Personal Firewall 4.3.268 and earlier do not validate arguments passed through to SSDT functions, including NtCreateFile, NtDeleteFile, NtLoadDriver, NtMapViewOfSection, NtOpenFile, and NtSetInformationFile, which allows local users to cause a denial of service (crash) and possibly other impacts via unspecified vectors.

    Published: 3 Oct 2006
    6.8
    Medium

    CVE-2006-5152

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Microsoft Internet Explorer allows remote attackers to inject arbitrary web script or HTML via a UTF-7 encoded URL that is returned in a large HTTP 404 error message without an explicit charset, a related issue to CVE-2006-0032.

    Published: 3 Oct 2006
    7.5
    High

    CVE-2006-5154

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in cp/sig.php in DeluxeBB 1.09 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the templatefolder parameter.

    Published: 3 Oct 2006
    8.1
    High

    CVE-2006-5160

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in Mozilla Firefox have unspecified vectors and impact, as claimed during ToorCon 2006. NOTE: the vendor and original researchers have released a follow-up comment disputing this issue, in which one researcher states that "I have no undisclosed Firefox vulnerabilities. The person who was speaking with me made this claim, and I honestly have no idea if he has them or not.

    Published: 3 Oct 2006
    6.4
    Medium

    CVE-2006-5161

    Last Modified: 23 Apr 2026

    IBM Client Security Password Manager stores and distributes saved passwords based upon the title of a website, which allows remote attackers to obtain username and password credentials by changing the title of an HTML page.

    Published: 3 Oct 2006
    7.5
    High

    CVE-2006-5159

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Mozilla Firefox allows remote attackers to execute arbitrary code via unspecified vectors involving JavaScript. NOTE: the vendor and original researchers have released a follow-up comment disputing the severity of this issue, in which the researcher states that "we mentioned that there was a previously known Firefox vulnerability that could result in a stack overflow ending up in remote code execution. However, the code we presented did not in fact do this... I have not succeeded in making this code do anything more than cause a crash and eat up system resources"

    Published: 3 Oct 2006
    4.6
    Medium

    CVE-2006-7234

    Last Modified: 23 Apr 2026

    Untrusted search path vulnerability in Lynx before 2.8.6rel.4 allows local users to execute arbitrary code via malicious (1) .mailcap and (2) mime.types files in the current working directory.

    Published: 3 Oct 2006
    7.5
    High

    CVE-2006-5147

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in wamp_dir/setup/yesno.phtml in VAMP Webmail 2.0beta1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the no_url parameter.

    Published: 2 Oct 2006
    6.8
    Medium

    CVE-2006-5144

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in userupload.php in OlateDownload 3.4.0 allows remote attackers to inject arbitrary web script or HTML via the description_small parameter.

    Published: 2 Oct 2006
    7.5
    High

    CVE-2006-5145

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in OlateDownload 3.4.0 allow remote attackers to execute arbitrary SQL commands via the (1) page parameter in details.php or the (2) query parameter in search.php.

    Published: 2 Oct 2006
    6.8
    Medium

    CVE-2006-5146

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Yblog allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter in (a) funk.php, or the (2) action parameter in (b) tem.php and (c) uss.php.

    Published: 2 Oct 2006
    7.5
    High

    CVE-2006-5148

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Forum82 2.5.2b and earlier allow remote attackers to execute arbitrary PHP code via a URL in the repertorylevel parameter including scripts in /forum/ including (1) search.php, (2) message.php, (3) member.php, (4) mail.php, (5) lostpassword.php, (6) gesfil.php, (7) forum82lib.php3, and other unspecified scripts.

    Published: 2 Oct 2006
    7.5
    High

    CVE-2006-5149

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in OpenBiblio before 0.5.2 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in (1) the page parameter to shared/help.php or (2) the tab parameter to shared/header.php.

    Published: 2 Oct 2006
    6.5
    Medium

    CVE-2006-5150

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the reports system in OpenBiblio before 0.5.2 allows remote attackers with report privileges to execute arbitrary SQL commands via unspecified vectors.

    Published: 2 Oct 2006
    5.1
    Medium

    CVE-2006-4395

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in QuickDraw Manager in Apple Mac OS X 10.3.9 and 10.4 through 10.4.7 allows context-dependent attackers to cause a denial of service ("memory corruption" and crash) via a crafted PICT image that is not properly handled by a certain "unsupported QuickDraw operation."

    Published: 2 Oct 2006
    2.1
    Low

    CVE-2006-4399

    Last Modified: 23 Apr 2026

    User interface inconsistency in Workgroup Manager in Apple Mac OS X 10.4 through 10.4.7 appears to allow administrators to change the authentication type from crypt to ShadowHash passwords for accounts in a NetInfo parent, when such an operation is not actually supported, which could result in less secure password management than intended.

    Published: 2 Oct 2006
    7.5
    High

    CVE-2006-4394

    Last Modified: 23 Apr 2026

    A logic error in LoginWindow in Apple Mac OS X 10.4 through 10.4.7, allows network accounts without GUIds to bypass service access controls and log into the system using loginwindow via unknown vectors.

    Published: 2 Oct 2006
    3.7
    Low

    CVE-2006-4393

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in LoginWindow in Apple Mac OS X 10.4 through 10.4.7, when Fast User Switching is enabled, allows local users to gain access to Kerberos tickets of other users.

    Published: 2 Oct 2006
    4.6
    Medium

    CVE-2006-4387

    Last Modified: 23 Apr 2026

    Apple Mac OS X 10.4 through 10.4.7, when the administrator clears the "Allow user to administer this computer" checkbox in System Preferences for a user, does not remove the user's account from the appserveradm or appserverusr groups, which still allows the user to manage WebObjects applications.

    Published: 2 Oct 2006
    5.1
    Medium

    CVE-2006-4391

    Last Modified: 23 Apr 2026

    Buffer overflow in Apple ImageIO on Apple Mac OS X 10.4 through 10.4.7 allows remote attackers to execute arbitrary code via a malformed JPEG2000 image.

    Published: 2 Oct 2006
    4.6
    Medium

    CVE-2006-4397

    Last Modified: 23 Apr 2026

    Unchecked error condition in LoginWindow in Apple Mac OS X 10.4 through 10.4.7 prevents Kerberos tickets from being destroyed if a user does not successfully log on to a network account from the login window, which might allow later users to gain access to the original user's Kerberos tickets.

    Published: 2 Oct 2006
    7.5
    High

    CVE-2006-5102

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in include/editfunc.inc.php in Sebastian Baumann and Philipp Wolfer Newswriter SW 1.42 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the NWCONF_SYSTEM[server_path] parameter.

    Published: 2 Oct 2006
    7.5
    High

    CVE-2006-5103

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in admin/index2.php in bbsNew 2.0.1 allows remote attackers to execute arbitrary PHP code via a URL in the "right" parameter.

    Published: 2 Oct 2006
    7.5
    High

    CVE-2006-5104

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in global.php in Jelsoft vBulletin 2.x allows remote attackers to execute arbitrary SQL commands via the templatesused parameter.

    Published: 2 Oct 2006
    5
    Medium

    CVE-2006-5109

    Last Modified: 23 Apr 2026

    Devellion CubeCart 2.0.x allows remote attackers to obtain sensitive information via a direct request for (1) link_navi.php or (2) spotlight.php, which reveals the path in various error messages. NOTE: the information.php, language.php, list_docs.php, popular_prod.php, sale.php, check_sum.php, and cat_navi.php vectors are already covered by CVE-2005-0607.

    Published: 2 Oct 2006
    5
    Medium

    CVE-2006-5111

    Last Modified: 23 Apr 2026

    The libksba library 0.9.12 and possibly other versions, as used by gpgsm in the newpg package on SUSE LINUX, allows attackers to cause a denial of service (application crash) via a malformed X.509 certificate in a signature.

    Published: 2 Oct 2006
    7.5
    High

    CVE-2006-5112

    Last Modified: 23 Apr 2026

    Buffer overflow in InterVations NaviCOPA Web Server 2.01 allows remote attackers to execute arbitrary code via a long HTTP GET request.

    Published: 2 Oct 2006
    6.8
    Medium

    CVE-2006-5114

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in wgate in SAP Internet Transaction Server (ITS) 6.1 and 6.2 allow remote attackers to inject arbitrary web script or HTML via the (1) ~urlmime or (2) ~command parameter, different vectors than CVE-2003-0749.

    Published: 2 Oct 2006
    5.1
    Medium

    CVE-2006-5115

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in kgcall.php in KGB 1.87 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the engine parameter, as demonstrated by uploading a file containing PHP code with an image/jpeg content type, and then referencing this file through the engine parameter.

    Published: 2 Oct 2006
    5.1
    Medium

    CVE-2006-5116

    Last Modified: 23 Apr 2026

    Multiple cross-site request forgery (CSRF) vulnerabilities in phpMyAdmin before 2.9.1-rc1 allow remote attackers to perform unauthorized actions as another user by (1) directly setting a token in the URL though dynamic variable evaluation and (2) unsetting arbitrary variables via the _REQUEST array, related to (a) libraries/common.lib.php, (b) session.inc.php, and (c) url_generating.lib.php. NOTE: the PHP unset function vector is covered by CVE-2006-3017.

    Published: 2 Oct 2006
    5
    Medium

    CVE-2006-5117

    Last Modified: 23 Apr 2026

    phpMyAdmin before 2.9.1-rc1 has a libraries directory under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information via direct requests for certain files.

    Published: 2 Oct 2006
    7.5
    High

    CVE-2006-5118

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in index.php3 in the PDD package for PHPSelect Web Development Division allows remote attackers to execute arbitrary PHP code via a URL in the Application_Root parameter.

    Published: 2 Oct 2006
    4
    Medium

    CVE-2006-5119

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Zen Cart 1.3.5 allow remote attackers to inject arbitrary web script or HTML via the (1) admin_name or (2) admin_pass parameter in (a) admin/login.php, or the (3) admin_email parameter in (b) admin/password_forgotten.php.

    Published: 2 Oct 2006