CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2006-5041

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Hot Properties (possibly com_hotproperties) 0.97 and earlier for Joomla! has unspecified impact and attack vectors.

    Published: 27 Sept 2006
    7.5
    High

    CVE-2006-5042

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in mosMedia (com_mosmedia) 1.0.8 and earlier for Joomla! has unspecified impact and attack vectors.

    Published: 27 Sept 2006
    6.8
    Medium

    CVE-2006-5043

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in the Joomlaboard Forum Component (com_joomlaboard) before 1.1.2 for Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the sbp parameter to (1) file_upload.php or (2) image_upload.php, a variant of CVE-2006-3528.

    Published: 27 Sept 2006
    7.5
    High

    CVE-2006-5044

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Prince Clan (Princeclan) Chess component (com_pcchess) 0.8 and earlier for Mambo and Joomla! has unspecified impact and attack vectors.

    Published: 27 Sept 2006
    6.8
    Medium

    CVE-2006-5045

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in PollXT component (com_pollxt) 1.22.07 and earlier for Joomla! has unspecified impact and attack vectors, probably related to PHP remote file inclusion in the mosConfig_absolute_path to conf.pollxt.php.

    Published: 27 Sept 2006
    7.5
    High

    CVE-2006-5049

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Classifieds (com_classifieds) component 1.3 and earlier for Joomla! has unspecified impact and attack vectors.

    Published: 27 Sept 2006
    5
    Medium

    CVE-2006-5050

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in httpd in Rob Landley BusyBox allows remote attackers to read arbitrary files via URL-encoded "%2e%2e/" sequences in the URI.

    Published: 27 Sept 2006
    5
    Medium

    CVE-2006-5052

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in portable OpenSSH before 4.4, when running on some platforms, allows remote attackers to determine the validity of usernames via unknown vectors involving a GSSAPI "authentication abort."

    Published: 27 Sept 2006
    7.5
    High

    CVE-2006-5022

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in includes/global.php in Joshua Wilson pNews System 1.1.0 (aka PowerNews) allows remote attackers to execute arbitrary PHP code via a URL in the nbs parameter.

    Published: 27 Sept 2006
    7.5
    High

    CVE-2006-5030

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in modules/messages/index.php in exV2 2.0.4.3 and earlier allows remote authenticated users to execute arbitrary SQL commands via the sort parameter.

    Published: 27 Sept 2006
    7.5
    High

    CVE-2006-5047

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in rsgallery2.html.php in RS Gallery2 component (com_rsgallery2) before 1.11.3 for Joomla! allows attackers to execute arbitrary code.

    Published: 27 Sept 2006
    5
    Medium

    CVE-2006-5016

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in admin/x_image.php in Szava Gyula and Csaba Tamas e-Vision CMS, probably 1.0, allows remote attackers to upload arbitrary files to the /imagebank directory.

    Published: 27 Sept 2006
    7.5
    High

    CVE-2006-5020

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in SolidState 0.4 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the base_path parameter in manager/pages/ scripts including (1) AccountsPage.class.php, (2) AddInvoicePage.class.php, (3) AddIPAddressPage.class.php, (4) AddPaymentPage.class.php, (5) AddTaxRulePage.class.php, (6) AssignDomainPage.class.php, (7) AssignHostingPage.class.php, (8) AssignProductPage.class.php, (9) BillingPage.class.php, (10) BillingPaymentPage.class.php, (11) BrowseAccountsPage.class.php, (12) BrowseInvoicesPage.class.php, (13) ConfigureEditUserPage.class.php, (14) ConfigureNewUserPage.class.php, (15) ConfigureNewUserReceiptPage.class.php, (16) ConfigureUsersPage.class.php, (17) DeleteAccountPage.class.php, (18) DeleteDomainServicePage.class.php, (19) DeleteHostingServicePage.class.php, (20) DeleteInvoicePage.class.php, (21) DeleteProductPage.class.php, (22) DeleteServerPage.class.php, (23) DomainServicesPage.class.php, (24) DomainsPage.class.php, (25) EditAccountPage.class.php, (26) EditDomainPage.class.php, (27) EditDomainServicePage.class.php, (28) EditHostingServicePage.class.php, (29) EditPaymentPage.class.php, (30) EditProductPage.class.php, (31) EditServerPage.class.php, (32) EmailInvoicePage.class.php, (33) ExecuteOrderPage.class.php, (34) ExpiredDomainsPage.class.php, (35) FulfilledOrdersPage.class.php, (36) GenerateInvoicesPage.class.php, (37) HomePage.class.php, (38) InactiveAccountsPage.class.php, (39) IPManagerPage.class.php, (40) LoginPage.class.php, (41) LogPage.class.php, (42) ModulesPage.class.php, (43) NewAccountPage.class.php, (44) NewDomainServicePage.class.php, (45) NewProductPage.class.php, (46) OutstandingInvoicesPage.class.php, (47) PendingAccountsPage.class.php, (48) PendingOrdersPage.class.php, (49) PrintInvoicePage.class.php, (50) ProductsPage.class.php, (51) RegisterDomainPage.class.php, (52) RegisteredDomainsPage.class.php, (53) ServersPage.class.php, (54) ServicesHostingServicesPage.class.php, (55) ServicesNewHostingPage.class.php, (56) ServicesPage.class.php, (57) ServicesWebHostingPage.class.php, (58) SettingsPage.class.php, (59) TaxesPage.class.php, (60) TransferDomainPage.class.php, (61) ViewAccountPage.class.php, (62) ViewDomainServicePage.class.php, (63) ViewHostingServicePage.class.php, (64) ViewInvoicePage.class.php, (65) ViewLogMessagePage.class.php, (66) ViewOrderPage.class.php, (67) ViewProductPage.class.php, (68) ViewServerPage.class.php, (69) WelcomeEmailPage.class.php; and (70) modules/RegistrarModule.class.php, (71) modules/SolidStateModule.class.php, (72) modules/authorizeaim/authorizeaim.class.php, and (73) modules/authorizeaim/pages/AAIMConfigPage.class.php.

    Published: 27 Sept 2006
    9.8
    Critical

    CVE-2006-5021

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in redgun RedBLoG 0.5 allow remote attackers to execute arbitrary PHP code via a URL in (1) the root parameter in imgen.php, and the root_path parameter in (2) admin/config.php, (3) common.php, and (4) admin/index.php. NOTE: the provenance of this information is unknown; the details are obtained from third party information.

    Published: 27 Sept 2006
    7.5
    High

    CVE-2006-5023

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in kategori.asp in xweblog 2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the kategori parameter.

    Published: 27 Sept 2006
    10
    Critical

    CVE-2006-5025

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in Paisterist Simple HTTP Scanner (sHTTPScanner) before 0.2 have unknown impact and attack vectors.

    Published: 27 Sept 2006
    5
    Medium

    CVE-2006-5027

    Last Modified: 23 Apr 2026

    Jeroen Vennegoor JevonCMS, possibly pre alpha, allows remote attackers to obtain sensitive information via a direct request for php/main/phplib files (1) db_msql.inc, (2) db_mssql.inc, (3) db_mysql.inc, (4) db_oci8.inc, (5) db_odbc.inc, (6) db_oracle.inc, and (7) db_pgsql.inc; and (8) db_sybase.inc, which reveals the path in various error messages.

    Published: 27 Sept 2006
    5
    Medium

    CVE-2006-5031

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in app/webroot/js/vendors.php in Cake Software Foundation CakePHP before 1.1.8.3544 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter, followed by a filename ending with "%00" and a .js filename.

    Published: 27 Sept 2006
    7.5
    High

    CVE-2006-5038

    Last Modified: 23 Apr 2026

    The FiWin SS28S WiFi VoIP SIP/Skype Phone, firmware version 01_02_07, has a hard-coded username and password, which allows remote attackers to gain administrative access via telnet.

    Published: 27 Sept 2006
    6.8
    Medium

    CVE-2006-5048

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Security Images (com_securityimages) component 3.0.5 and earlier for Joomla! allow remote attackers to execute arbitrary code via a URL in the mosConfig_absolute_path parameter in (1) configinsert.php, (2) lang.php, (3) client.php, and (4) server.php.

    Published: 27 Sept 2006
    8.1
    High

    CVE-2006-5051

    Last Modified: 23 Apr 2026

    Signal handler race condition in OpenSSH before 4.4 allows remote attackers to cause a denial of service (crash), and possibly execute arbitrary code if GSSAPI authentication is enabled, via unspecified vectors that lead to a double-free.

    Published: 27 Sept 2006
    9.8
    Critical

    CVE-2006-5024

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in Paisterist Simple HTTP Scanner (sHTTPScanner) before 0.4 have unknown impact and attack vectors.

    Published: 27 Sept 2006
    5
    Medium

    CVE-2006-5028

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in filemanager/filemanager.php in SWsoft Plesk 7.5 Reload and Plesk 7.6 for Microsoft Windows allows remote attackers to list arbitrary directories via a ../ (dot dot slash) in the file parameter in a chdir action.

    Published: 27 Sept 2006
    7.5
    High

    CVE-2006-5029

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in thread.php in WoltLab Burning Board (wBB) 2.3.x allows remote attackers to obtain the version numbers of PHP, MySQL, and wBB via the page parameter. NOTE: this issue might be a forced SQL error. Also, the original report was disputed by a third party for 2.3.3 and 2.3.4.

    Published: 27 Sept 2006
    6.8
    Medium

    CVE-2006-5037

    Last Modified: 23 Apr 2026

    MySource Matrix after 3.8 allows remote attackers to use the application as an HTTP proxy server via a MIME encoded URL in the sq_content_src parameter to access arbitrary sites with the server's IP address and conduct cross-site scripting (XSS) attacks. NOTE: the researcher reports that "The vendor does not consider this a vulnerability.

    Published: 27 Sept 2006
    7.5
    High

    CVE-2006-5046

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in RS Gallery2 (com_rsgallery2) 1.11.3 and earlier for Joomla! has unspecified impact and attack vectors, related to lack of "hardened language files."

    Published: 27 Sept 2006
    9.3
    Critical

    CVE-2006-4694

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in PowerPoint in Microsoft Office 2000, Office XP and Office 2003 allows user-assisted attackers to execute arbitrary code via a crafted record in a PPT file, as exploited by malware such as Exploit:Win32/Controlppt.W, Exploit:Win32/Controlppt.X, and Exploit-PPT.d/Trojan.PPDropper.F. NOTE: it has been reported that the attack vector involves SlideShowWindows.View.GotoNamedShow.

    Published: 27 Sept 2006
    5
    Medium

    CVE-2006-5002

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in IBM Inventory Scout for AIX 2.2.0.0 through 2.2.0.9 (invscoutClient_VPD_Survey) allows attackers to overwrite arbitrary files via unspecified vectors.

    Published: 27 Sept 2006
    7.2
    High

    CVE-2006-5003

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in the named8 command in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via unspecified vectors.

    Published: 27 Sept 2006
    2.1
    Low

    CVE-2006-5004

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the rdist command in IBM AIX 5.2.0 and 5.3.0 allows local users to overwrite arbitrary files via unspecified vectors.

    Published: 27 Sept 2006
    7.2
    High

    CVE-2006-5005

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in bos.net.tcp.client in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via unspecified vectors involving /etc/slip.login.

    Published: 27 Sept 2006
    7.2
    High

    CVE-2006-5009

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in xlock in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands and overwrite arbitrary files via unspecified vectors, possibly involving a buffer overflow.

    Published: 27 Sept 2006
    7.2
    High

    CVE-2006-5010

    Last Modified: 23 Apr 2026

    Untrusted search path vulnerability in acctctl in IBM AIX 5.3.0 allows local users to execute arbitrary commands by modifying the path to point to a malicious mkdir program.

    Published: 27 Sept 2006
    7.2
    High

    CVE-2006-5011

    Last Modified: 23 Apr 2026

    Untrusted search path vulnerability in snappd in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via a Trojan horse program, involving the "system subroutine".

    Published: 27 Sept 2006
    7.8
    High

    CVE-2006-5013

    Last Modified: 23 Apr 2026

    Sun Solaris 10 before patch 118855-16 (20060925), when run on x64 systems using IPv6, allows remote attackers to cause a denial of service (kernel panic) via crafted IPv6 packets.

    Published: 27 Sept 2006
    7.5
    High

    CVE-2006-5015

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in hit.php in Kietu 3.2 allows remote attackers to execute arbitrary PHP code via an FTP URL in the url_hit parameter.

    Published: 27 Sept 2006
    4.6
    Medium

    CVE-2006-5007

    Last Modified: 23 Apr 2026

    Untrusted search path vulnerability in uucp in IBM AIX 5.2.0 and 5.3.0 allows local users to local users to gain privileges via a Trojan horse program involving uux.

    Published: 27 Sept 2006
    10
    Critical

    CVE-2006-5008

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in utape in IBM AIX 5.2.0 and 5.3.0 allows attackers to execute arbitrary commands and overwrite arbitrary files via unspecified vectors.

    Published: 27 Sept 2006
    6.6
    Medium

    CVE-2006-5012

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Sun Solaris 8, 9, and 10 before 20060925 allows local users to cause a denial of service (disable syslog) and prevent security messages from being logged via unspecified vectors.

    Published: 27 Sept 2006
    8.8
    High

    CVE-2006-5014

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in cPanel before 10.9.0 12 Tree allows remote authenticated users to gain privileges via unspecified vectors in (1) mysqladmin and (2) hooksadmin.

    Published: 27 Sept 2006
    7.2
    High

    CVE-2006-5006

    Last Modified: 23 Apr 2026

    Buffer overflow in cfgmgr in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary code via a long directory path argument.

    Published: 27 Sept 2006
    5
    Medium

    CVE-2006-5001

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in the log analyzer in WS_FTP Server 5.05 before Hotfix 1, and possibly other versions down to 5.0, prevents certain sensitive information from being displayed in the (1) Files and (2) Summary tabs. NOTE: in the early publication of this identifier on 20060926, the description was used for the wrong issue.

    Published: 26 Sept 2006
    6.5
    Medium

    CVE-2006-5000

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in WS_FTP Server 5.05 before Hotfix 1, and possibly other versions down to 5.0, have unknown impact and remote authenticated attack vectors via the (1) XCRC, (2) XMD5, and (3) XSHA1 commands. NOTE: in the early publication of this identifier on 20060926, the description was used for the wrong issue.

    Published: 26 Sept 2006
    7.2
    High

    CVE-2006-4172

    Last Modified: 16 Apr 2026

    Integer overflow vulnerability in the i386_set_ldt call in FreeBSD 5.5, and possibly earlier versions down to 5.2, allows local users to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2006-4178.

    Published: 26 Sept 2006
    4.6
    Medium

    CVE-2006-4982

    Last Modified: 16 Apr 2026

    Cisco NAC maintains an exception list that does not record device properties other than MAC address, which allows physically proximate attackers to bypass control methods and join a local network by spoofing the MAC address of a different type of device, as demonstrated by using the MAC address of a disconnected printer.

    Published: 26 Sept 2006
    7.5
    High

    CVE-2006-4983

    Last Modified: 16 Apr 2026

    Cisco NAC allows quarantined devices to communicate over the network with (1) DNS, (2) DHCP, and (3) EAPoUDP, which allows attackers to bypass control methods by tunneling network traffic through one of these protocols.

    Published: 26 Sept 2006
    7.5
    High

    CVE-2006-4984

    Last Modified: 16 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Grayscale BandSite CMS allow remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[root_path] parameter in (1) adminpanel/includes/mailinglist/mlist_xls.php and (2) adminpanel/includes/add_forms/addmp3.php. NOTE: the other vectors from the original disclosure are already covered by CVE-2006-3193.

    Published: 26 Sept 2006
    3.6
    Low

    CVE-2006-4991

    Last Modified: 16 Apr 2026

    RSA Keon Certificate Authority (KeonCA) Manager 6.5.1 and 6.6 allows privileged local users to hide malicious Certificate Authority (CA) activities by modifying CA auditor logs without detection by (1) modifying or deleting a <LOG BLOCK> and its signature from the XML log in a way that is not detected by the integrity check function that operates on the entire pool, or (2) modifying entries in the live log file, which is only signed during rotation.

    Published: 26 Sept 2006
    4.6
    Medium

    CVE-2006-4994

    Last Modified: 16 Apr 2026

    Multiple unquoted Windows search path vulnerabilities in Apache Friends XAMPP 1.5.2 might allow local users to gain privileges via a malicious program file in %SYSTEMDRIVE%, which is run when XAMPP attempts to execute (1) FileZillaServer.exe, (2) mysqld-nt.exe, (3) Perl.exe, or (4) xamppcontrol.exe with an unquoted "Program Files" pathname.

    Published: 26 Sept 2006
    7.5
    High

    CVE-2006-4995

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in BSQ Sitestats (bsq_sitestats) before 2.1.1 for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

    Published: 26 Sept 2006