CVE Feed

    Dashboard / CVE

    6.8
    Medium

    CVE-2006-4199

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Soft3304 04WebServer 1.83 and earlier allows remote attackers to inject arbitrary web script or HTML via the URL, which is not properly sanitized before it is returned in an error page, a different vulnerability than CVE-2004-1512.

    Published: 17 Aug 2006
    7.5
    High

    CVE-2006-4205

    Last Modified: 16 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in WebDynamite ProjectButler 0.8.4 allow remote attackers to execute arbitrary PHP code via a URL in the rootdir parameter to /classes/ scripts including (1) Cache.class.php, (2) Customer.class.php, (3) Performance.class.php, (4) Project.class.php, (5) Representative.class.php, (6) User.class.php, or (7) common.php.

    Published: 17 Aug 2006
    7.5
    High

    CVE-2006-4213

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in config.php in David Kent Norman Thatware 0.4.6 and possibly earlier allows remote attackers to execute arbitrary PHP code via a URL in the root_path parameter.

    Published: 17 Aug 2006
    2.6
    Low

    CVE-2006-4021

    Last Modified: 16 Apr 2026

    The cryptographic module in ScatterChat 1.0.x allows attackers to identify patterns in large numbers of messages by identifying collisions using a birthday attack on the custom padding mechanism for ECB mode encryption.

    Published: 17 Aug 2006
    5.1
    Medium

    CVE-2006-4198

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in includes/session.php in Wheatblog (wB) 1.1 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the wb_class_dir parameter.

    Published: 17 Aug 2006
    4.3
    Medium

    CVE-2006-4206

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in calendar.asp in ASPPlayground.NET Forum Advanced Edition 2.4.5 Unicode, and possibly other versions before October 15, 2006, allows remote attackers to inject arbitrary web script or HTML via the calendarID parameter.

    Published: 17 Aug 2006
    7.5
    High

    CVE-2006-4214

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in Zen Cart 1.3.0.2 and earlier allow remote attackers to execute arbitrary SQL commands via (1) GPC data to the ipn_get_stored_session function in ipn_main_handler.php, which can be leveraged to modify elements of $_SESSION; and allow remote authenticated users to execute arbitrary SQL commands via (2) a session id within a cookie to whos_online_session_recreate, (3) the quantity field to the add_cart function, (4) an id[] parameter when adding an item to a shopping cart, or (5) a redemption code when checking out (dc_redeem_code parameter to includes/modules/order_total/ot_coupon.php).

    Published: 17 Aug 2006
    5.1
    Medium

    CVE-2006-4215

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in index.php in Zen Cart 1.3.0.2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the autoLoadConfig[999][0][loadFile] parameter.

    Published: 17 Aug 2006
    7.5
    High

    CVE-2006-4196

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in index.php in WEBInsta CMS 0.3.1 and possibly earlier allows remote attackers to execute arbitrary PHP code via a URL in the templates_dir parameter.

    Published: 17 Aug 2006
    7.5
    High

    CVE-2006-4204

    Last Modified: 16 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in PHProjekt 5.1 and possibly earlier allow remote attackers to execute arbitrary PHP code via a URL in the (1) path_pre parameter in lib/specialdays.php and the (2) lib_path parameter in lib/dbman_filter.inc.php.

    Published: 17 Aug 2006
    7.5
    High

    CVE-2006-4212

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in b0zz and Chris Vincent Owl Intranet Engine 0.90 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Published: 17 Aug 2006
    5
    Medium

    CVE-2006-3121

    Last Modified: 16 Apr 2026

    The peel_netstring function in cl_netstring.c in the heartbeat subsystem in High-Availability Linux before 1.2.5, and 2.0 before 2.0.7, allows remote attackers to cause a denial of service (crash) via the length parameter in a heartbeat message.

    Published: 17 Aug 2006
    4
    Medium

    CVE-2006-3859

    Last Modified: 16 Apr 2026

    IBM Informix Dynamic Server (IDS) allows remote authenticated users to create and overwrite arbitrary files via the (1) LOTOFILE and (2) trl_tracefile_set functions, and the (3) "SET DEBUG FILE" commands.

    Published: 17 Aug 2006
    7.5
    High

    CVE-2006-3860

    Last Modified: 16 Apr 2026

    IBM Informix Dynamic Server (IDS) before 9.40.xC7 and 10.00 before 10.00.xC3 allows allows remote authenticated users to execute arbitrary commands via the (1) "SET DEBUG FILE" SQL command, and the (2) start_onpload and (3) dbexp functions.

    Published: 17 Aug 2006
    5.1
    Medium

    CVE-2006-4192

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in MODPlug Tracker (OpenMPT) 1.17.02.43 and earlier and libmodplug 0.8 and earlier, as used in GStreamer and possibly other products, allow user-assisted remote attackers to execute arbitrary code via (1) long strings in ITP files used by the CSoundFile::ReadITProject function in soundlib/Load_it.cpp and (2) crafted modules used by the CSoundFile::ReadSample function in soundlib/Sndfile.cpp, as demonstrated by crafted AMF files.

    Published: 17 Aug 2006
    7.5
    High

    CVE-2006-4193

    Last Modified: 16 Apr 2026

    Microsoft Internet Explorer 6.0 SP1 and possibly other versions allows remote attackers to cause a denial of service and possibly execute arbitrary code by instantiating COM objects as ActiveX controls, including (1) imskdic.dll (Microsoft IME), (2) chtskdic.dll (Microsoft IME), and (3) msoe.dll (Outlook), which leads to memory corruption. NOTE: it is not certain whether the issue is in Internet Explorer or the individual DLL files.

    Published: 17 Aug 2006
    5.1
    Medium

    CVE-2006-4189

    Last Modified: 16 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Dolphin 5.1 allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter in (1) index.php, (2) aemodule.php, (3) browse.php, (4) cc.php, (5) click.php, (6) faq.php, (7) gallery.php, (8) im.php, (9) inbox.php, (10) join_form.php, (11) logout.php, (12) messages_inbox.php, and many other scripts.

    Published: 17 Aug 2006
    2.1
    Low

    CVE-2006-4190

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in autohtml.php in the AutoHTML module for PHP-Nuke allows local users to include arbitrary files via a .. (dot dot) in the name parameter for a modload operation.

    Published: 17 Aug 2006
    5.1
    Medium

    CVE-2006-4191

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in memcp.php in XMB (Extreme Message Board) 1.9.6 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the langfilenew parameter, as demonstrated by injecting PHP sequences into an Apache HTTP Server log file, which is then included by header.php.

    Published: 17 Aug 2006
    5
    Medium

    CVE-2006-4194

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in Cisco PIX 500 Series Security Appliances allows remote attackers to send arbitrary UDP packets to intranet devices via unspecified vectors involving Session Initiation Protocol (SIP) fixup commands, a different issue than CVE-2006-4032. NOTE: the vendor, after working with the researcher, has been unable to reproduce the issue

    Published: 17 Aug 2006
    7.5
    High

    CVE-2006-3854

    Last Modified: 16 Apr 2026

    Buffer overflow in IBM Informix Dynamic Server (IDS) 9.40.TC7, 9.40.TC8, 10.00.TC4, and 10.00.TC5, when running on Windows, allows remote attackers to execute arbitrary code via a long username, which causes an overflow in vsprintf when displaying in the resulting error message. NOTE: this issue is due to an incomplete fix for CVE-2006-3853.

    Published: 17 Aug 2006
    9.3
    Critical

    CVE-2006-4482

    Last Modified: 16 Apr 2026

    Multiple heap-based buffer overflows in the (1) str_repeat and (2) wordwrap functions in ext/standard/string.c in PHP before 5.1.5, when used on a 64-bit system, have unspecified impact and attack vectors, a different vulnerability than CVE-2006-1990.

    Published: 17 Aug 2006
    4.9
    Medium

    CVE-2006-4185

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in the NCPENGINE in Novell eDirectory 8.7.3.8 allows local users to cause a denial of service (CPU consumption) via unspecified vectors, as originally demonstrated using a Nessus scan.

    Published: 17 Aug 2006
    2.1
    Low

    CVE-2006-4186

    Last Modified: 16 Apr 2026

    The iManager in eMBoxClient.jar in Novell eDirectory 8.7.3.8 writes passwords in plaintext to a log file, which allows local users to obtain passwords by reading the file.

    Published: 17 Aug 2006
    2.1
    Low

    CVE-2006-4187

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in HP-UX B.11.00, B.11.11 and B.11.23, when running in trusted mode, allows local users to cause a denial of service via unspecified vectors.

    Published: 17 Aug 2006
    5
    Medium

    CVE-2006-4188

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in the LP subsystem in HP-UX B.11.00, B.11.04, B.11.11, and B.11.23 allows remote attackers to cause a denial of service via unknown vectors.

    Published: 17 Aug 2006
    10
    Critical

    CVE-2006-4485

    Last Modified: 16 Apr 2026

    The stripos function in PHP before 5.1.5 has unknown impact and attack vectors related to an out-of-bounds read.

    Published: 17 Aug 2006
    4.9
    Medium

    CVE-2006-4093

    Last Modified: 16 Apr 2026

    Linux kernel 2.x.6 before 2.6.17.9 and 2.4.x before 2.4.33.1 on PowerPC PPC970 systems allows local users to cause a denial of service (crash) related to the "HID0 attention enable on PPC970 at boot time."

    Published: 17 Aug 2006
    4.9
    Medium

    CVE-2006-4184

    Last Modified: 16 Apr 2026

    SmartLine DeviceLock before 5.73 Build 305 does not properly enforce access control lists (ACL) in raw mode, which allows local users to bypass NTFS controls and obtain sensitive information.

    Published: 17 Aug 2006
    7.5
    High

    CVE-2006-4155

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in func_topic_threaded.php (aka threaded view mode) in Invision Power Board (IPB) before 2.1.7 21013.60810.s allows remote attackers to "access posts outside the topic."

    Published: 16 Aug 2006
    7.5
    High

    CVE-2006-4163

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in cls_fast_template.php in myWebland miniBloggie 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the fname parameter. NOTE: another researcher was unable to find a way to execute code after including it via a URL. CVE analysis as of 20060816 was inconclusive

    Published: 16 Aug 2006
    7.5
    High

    CVE-2006-4164

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in inc/header.inc.php in phpPrintAnalyzer 1.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the ficStyle parameter.

    Published: 16 Aug 2006
    6.8
    Medium

    CVE-2006-4165

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in NetCommons 1.0.8 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 16 Aug 2006
    7.5
    High

    CVE-2006-4160

    Last Modified: 16 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Tony Bibbs and Vincent Furia MVCnPHP 3.0 allow remote attackers to execute arbitrary PHP code via a URL in the glConf[path_library] parameter to (1) BaseCommand.php, (2) BaseLoader.php, and (3) BaseView.php.

    Published: 16 Aug 2006
    5
    Medium

    CVE-2006-4030

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in the stats module in Gallery 1.5.1-RC2 and earlier allows remote attackers to obtain sensitive information via unspecified attack vectors, related to "two file exposure bugs."

    Published: 16 Aug 2006
    7.5
    High

    CVE-2006-4156

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in big.php in pearlabs mafia moblog 6 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the pathtotemplate parameter. NOTE: a third party claims that the researcher is incorrect, because template.php defines pathtotemplate before big.php uses pathtotemplate. CVE has not verified either claim, but during August 2006, the original researcher made several significant errors regarding this bug type

    Published: 16 Aug 2006
    6.8
    Medium

    CVE-2006-4157

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in Yet another Bulletin Board (YaBB) allows remote attackers to inject arbitrary web script or HTML via the categories parameter.

    Published: 16 Aug 2006
    5.1
    Medium

    CVE-2006-4158

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in Login.php in Spaminator 1.7 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the page parameter.

    Published: 16 Aug 2006
    7.5
    High

    CVE-2006-4159

    Last Modified: 16 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Chaussette 080706 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the _BASE parameter to scripts in Classes/ including (1) Evenement.php, (2) Event.php, (3) Event_for_month.php, (4) Event_for_week.php, (5) My_Log.php, (6) My_Smarty.php, and possibly (7) Event_for_month_per_day.php.

    Published: 16 Aug 2006
    5
    Medium

    CVE-2006-4161

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in the avatar_gallery action in profile.php in XennoBB 2.1.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the category parameter.

    Published: 16 Aug 2006
    6.8
    Medium

    CVE-2006-4162

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Dragonfly CMS 9.0.6.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the search field.

    Published: 16 Aug 2006
    7.5
    High

    CVE-2006-4166

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in TinyWebGallery 1.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the image parameter to (1) image.php or (2) image.php2.

    Published: 16 Aug 2006
    7.5
    High

    CVE-2006-4980

    Last Modified: 23 Apr 2026

    Buffer overflow in the repr function in Python 2.3 through 2.6 before 20060822 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via crafted wide character UTF-32/UCS-4 strings to certain scripts.

    Published: 16 Aug 2006
    7.8
    High

    CVE-2006-4143

    Last Modified: 16 Apr 2026

    Netgear FVG318 running firmware 1.0.40 allows remote attackers to cause a denial of service (router reset) via TCP packets with bad checksums.

    Published: 15 Aug 2006
    7.5
    High

    CVE-2006-4122

    Last Modified: 16 Apr 2026

    Simple one-file guestbook 1.0 and earlier allows remote attackers to bypass authentication and delete guestbook entries via a modified id parameter to guestbook.php.

    Published: 14 Aug 2006
    7.5
    High

    CVE-2006-4123

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in boitenews4/index.php in Boite de News 4.0.1 allows remote attackers to execute arbitrary PHP code via a URL in the url_index parameter.

    Published: 14 Aug 2006
    4.6
    Medium

    CVE-2006-4124

    Last Modified: 16 Apr 2026

    The libXm library in LessTif 0.95.0 and earlier allows local users to gain privileges via the DEBUG_FILE environment variable, which is used to create world-writable files when libXm is run from a setuid program.

    Published: 14 Aug 2006
    7.5
    High

    CVE-2006-4125

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in main.c in DConnect Daemon 0.7.0 and earlier allows remote attackers to execute arbitrary code via a large nickname, which is not properly handled by the listen_thread_udp function.

    Published: 14 Aug 2006
    6.8
    Medium

    CVE-2006-4130

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in admin.remository.php in the Remository Component (com_remository) 3.25 and earlier for Mambo and Joomla!, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

    Published: 14 Aug 2006
    5
    Medium

    CVE-2006-4132

    Last Modified: 16 Apr 2026

    ArcSoft MMS Composer 1.5.5.6 and possibly earlier, and 2.0.0.13 and possibly earlier, allow remote attackers to cause a denial of service (resource exhaustion and application crash) via WAPPush messages to UDP port UDP 2948.

    Published: 14 Aug 2006