CVE Feed

    Dashboard / CVE

    5
    Medium

    CVE-2006-3882

    Last Modified: 16 Apr 2026

    Shalwan MusicBox 2.3.4 and earlier allows remote attackers to obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function.

    Published: 27 Jul 2006
    4.3
    Medium

    CVE-2006-3883

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Gonafish LinksCaffe 3.0 allow remote attackers to inject arbitrary web script or HTML via (1) the tablewidth parameter in (a) counter.php; (2) the newdays parameter in (b) links.php; and the (3) tableborder, (4) menucolor, (5) textcolor, and (6) bodycolor parameters in (c) menu.inc.php.

    Published: 27 Jul 2006
    7.5
    High

    CVE-2006-3884

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in links.php in Gonafish LinksCaffe 3.0 allow remote attackers to execute arbitrary SQL commands via the (1) offset and (2) limit parameters, (3) newdays parameter in a new action, and the (4) link_id parameter in a deadlink action. NOTE: this issue can also be used for path disclosure by a forced SQL error, or to modify PHP files using OUTFILE.

    Published: 27 Jul 2006
    5
    Medium

    CVE-2006-3885

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in Check Point Firewall-1 R55W before HFA03 allows remote attackers to read arbitrary files via an encoded .. (dot dot) in the URL on TCP port 18264.

    Published: 27 Jul 2006
    4.3
    Medium

    CVE-2006-3881

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Shalwan MusicBox 2.3.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the id parameter in a request for the top-level URI. NOTE: the id parameter in index.php, and the type and show parameters in a top action, are already covered by CVE-2006-1349; and the term parameter in a search action is already covered by CVE-2006-1806.

    Published: 27 Jul 2006
    2.1
    Low

    CVE-2006-3878

    Last Modified: 16 Apr 2026

    Opsware Network Automation System (NAS) 6.0 installs /etc/init.d/mysql with insecure permissions, which allows local users to read the root password for the MySQL MAX database or gain privileges by modifying /etc/init.d/mysql.

    Published: 27 Jul 2006
    5
    Medium

    CVE-2006-3880

    Last Modified: 16 Apr 2026

    Microsoft Windows NT 4.0, Windows 2000, Windows XP, and Windows Small Business Server 2003 allow remote attackers to cause a denial of service (IP stack hang) via a continuous stream of packets on TCP port 135 that have incorrect TCP header checksums and random numbers in certain TCP header fields, as demonstrated by the Achilles Windows Attack Tool. NOTE: the researcher reports that the Microsoft Security Response Center has stated "Our investigation which has included code review, review of the TCPDump, and attempts on reproing the issue on multiple fresh installs of various Windows Operating Systems have all resulted in non confirmation.

    Published: 27 Jul 2006
    5
    Medium

    CVE-2006-3879

    Last Modified: 16 Apr 2026

    Integer overflow in the loadChunk function in loaders/load_gt2.c in libmikmod in Mikmod Sound System 3.2.2 allows remote attackers to cause a denial of service via a GRAOUMF TRACKER (GT2) module file with a large (0xffffffff) comment length value in an XCOM chunk.

    Published: 27 Jul 2006
    7.5
    High

    CVE-2006-3886

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in Shalwan MusicBox 2.3.4 and earlier allows remote attackers to execute arbitrary SQL commands via the page parameter in a viewgallery action in a request for the top-level URI. NOTE: the start parameter/search action is already covered by CVE-2006-1807, and the show parameter/top action is already covered by CVE-2006-1360.

    Published: 27 Jul 2006
    5
    Medium

    CVE-2006-3678

    Last Modified: 16 Apr 2026

    TippingPoint IPS running the TippingPoint Operating System (TOS) before 2.2.4.6519 allows remote attackers to "force the device into layer 2 fallback (L2FB)", causing a denial of service (page fault), via a malformed packet.

    Published: 26 Jul 2006
    7.5
    High

    CVE-2006-3677

    Last Modified: 16 Apr 2026

    Mozilla Firefox 1.5 before 1.5.0.5 and SeaMonkey before 1.0.3 allows remote attackers to execute arbitrary code by changing certain properties of the window navigator object (window.navigator) that are accessed when Java starts up, which causes a crash that leads to code execution.

    Published: 26 Jul 2006
    7.5
    High

    CVE-2006-3801

    Last Modified: 16 Apr 2026

    Mozilla Firefox 1.5 before 1.5.0.5 and SeaMonkey before 1.0.3 does not properly clear a JavaScript reference to a frame or window, which leaves a pointer to a deleted object that allows remote attackers to execute arbitrary native code.

    Published: 26 Jul 2006
    5.1
    Medium

    CVE-2006-3803

    Last Modified: 16 Apr 2026

    Race condition in the JavaScript garbage collection in Mozilla Firefox 1.5 before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 might allow remote attackers to execute arbitrary code by causing the garbage collector to delete a temporary variable while it is still being used during the creation of a new Function object.

    Published: 26 Jul 2006
    7.5
    High

    CVE-2006-3808

    Last Modified: 16 Apr 2026

    Mozilla Firefox before 1.5.0.5 and SeaMonkey before 1.0.3 allows remote Proxy AutoConfig (PAC) servers to execute code with elevated privileges via a PAC script that sets the FindProxyForURL function to an eval method on a privileged object.

    Published: 26 Jul 2006
    7.5
    High

    CVE-2006-3809

    Last Modified: 16 Apr 2026

    Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 allows scripts with the UniversalBrowserRead privilege to gain UniversalXPConnect privileges and possibly execute code or obtain sensitive data by reading into a privileged context.

    Published: 26 Jul 2006
    6.8
    Medium

    CVE-2006-3810

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Mozilla Firefox 1.5 before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 allows remote attackers to inject arbitrary web script or HTML via the XPCNativeWrapper(window).Function construct.

    Published: 26 Jul 2006
    7.5
    High

    CVE-2006-3805

    Last Modified: 16 Apr 2026

    The Javascript engine in Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 might allow remote attackers to execute arbitrary code via vectors involving garbage collection that causes deletion of a temporary object that is still being used.

    Published: 26 Jul 2006
    7.5
    High

    CVE-2006-3113

    Last Modified: 16 Apr 2026

    Mozilla Firefox 1.5 before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via simultaneous XPCOM events, which causes a timer object to be deleted in a way that triggers memory corruption.

    Published: 26 Jul 2006
    5
    Medium

    CVE-2006-3804

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in Mozilla Thunderbird before 1.5.0.5 and SeaMonkey before 1.0.3 allows remote attackers to cause a denial of service (crash) via a VCard attachment with a malformed base64 field, which copies more data than expected due to an integer underflow.

    Published: 26 Jul 2006
    7.5
    High

    CVE-2006-3806

    Last Modified: 16 Apr 2026

    Multiple integer overflows in the Javascript engine in Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 might allow remote attackers to execute arbitrary code via vectors involving (1) long strings in the toSource method of the Object, Array, and String objects; and (2) unspecified "string function arguments."

    Published: 26 Jul 2006
    7.5
    High

    CVE-2006-3807

    Last Modified: 16 Apr 2026

    Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 allows remote attackers to execute arbitrary code via script that changes the standard Object() constructor to return a reference to a privileged object and calling "named JavaScript functions" that use the constructor.

    Published: 26 Jul 2006
    7.5
    High

    CVE-2006-3811

    Last Modified: 16 Apr 2026

    Multiple vulnerabilities in Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via Javascript that leads to memory corruption, including (1) nsListControlFrame::FireMenuItemActiveEvent, (2) buffer overflows in the string class in out-of-memory conditions, (3) table row and column groups, (4) "anonymous box selectors outside of UA stylesheets," (5) stale references to "removed nodes," and (6) running the crypto.generateCRMFRequest callback on deleted context.

    Published: 26 Jul 2006
    2.6
    Low

    CVE-2006-3812

    Last Modified: 16 Apr 2026

    Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 allows remote attackers to reference remote files and possibly load chrome: URLs by tricking the user into copying or dragging links.

    Published: 26 Jul 2006
    5.8
    Medium

    CVE-2006-3802

    Last Modified: 16 Apr 2026

    Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 allows remote attackers to hijack native DOM methods from objects in another domain and conduct cross-site scripting (XSS) attacks using DOM methods of the top-level object.

    Published: 26 Jul 2006
    2.6
    Low

    CVE-2006-3841

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in WebScarab before 20060718-1904, when used with Microsoft Internet Explorer 6 SP2 or Konqueror 3.5.3, allows remote attackers to inject arbitrary web script or HTML via the URL, which is not sanitized before being returned in an error message when WebScarab is not able to access the URL.

    Published: 25 Jul 2006
    7.5
    High

    CVE-2006-3849

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in Warzone 2100 and Warzone Resurrection 2.0.3 and earlier allows remote attackers to execute arbitrary code via a (1) long message handled by the recvTextMessage function in multiplay.c or a (2) long filename handled by NETrecvFile function in netplay/netplay.c.

    Published: 25 Jul 2006
    5.1
    Medium

    CVE-2006-3850

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in upgrader.php in Vanilla CMS 1.0.1 and earlier, when /conf/old_settings.php exists, allows remote attackers to execute arbitrary PHP code via a URL in the RootDirectory parameter. NOTE: this issue has been disputed by a third party who states that the RootDirectory parameter is initialized before being used, for version 1.0. CVE analysis concurs with the dispute, but it is unclear whether older versions are affected

    Published: 25 Jul 2006
    7.5
    High

    CVE-2006-3851

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in upgradev1.php in X7 Chat 2.0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the old_prefix parameter.

    Published: 25 Jul 2006
    4.3
    Medium

    CVE-2006-3852

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in Micro GuestBook allows remote attackers to execute arbitrary SQL commands via the (1) name or (2) comment ("text") fields.

    Published: 25 Jul 2006
    5.1
    Medium

    CVE-2006-3119

    Last Modified: 16 Apr 2026

    The fbgs framebuffer Postscript/PDF viewer in fbi before 2.01 has a typo that prevents a filter from working correctly, which allows user-assisted attackers to bypass the filter and execute malicious Postscript commands.

    Published: 25 Jul 2006
    5.1
    Medium

    CVE-2006-3847

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in (1) admin.php, and possibly (2) details.php, (3) modify.php, (4) newgroup.php, (5) newtask.php, and (6) rss.php, in MoSpray (aka com_mospray) 1.8 RC1 allows remote attackers to execute arbitrary PHP code via a URL in the basedir parameter.

    Published: 25 Jul 2006
    9.3
    Critical

    CVE-2006-3845

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in lzh.fmt in WinRAR 3.00 through 3.60 beta 6 allows remote attackers to execute arbitrary code via a long filename in a LHA archive.

    Published: 25 Jul 2006
    4.3
    Medium

    CVE-2006-3842

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Zoho Virtual Office 3.2 Build 3210 allows remote attackers to execute arbitrary web script or HTML via an HTML message.

    Published: 25 Jul 2006
    7.5
    High

    CVE-2006-3843

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in com_calendar.php in Calendar Mambo Module 1.5.7 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the absolute_path parameter.

    Published: 25 Jul 2006
    6.5
    Medium

    CVE-2006-3844

    Last Modified: 16 Apr 2026

    Buffer overflow in Quick 'n Easy FTP Server 3.0 allows remote authenticated users to execute arbitrary commands via a long argument to the LIST command, a different issue than CVE-2006-2027.

    Published: 25 Jul 2006
    2.6
    Low

    CVE-2006-3848

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in CGI wrapper for IP Calculator (IPCalc) 0.40 allows remote attackers to inject arbitrary web script or HTML via the URI (REQUEST_URI environment variable), which is used in the actionurl variable.

    Published: 25 Jul 2006
    6.8
    Medium

    CVE-2006-3846

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in extadminmenus.class.php in the MultiBanners 1.0.1 for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

    Published: 25 Jul 2006
    5
    Medium

    CVE-2006-3837

    Last Modified: 16 Apr 2026

    delcookie.php in Professional Home Page Tools Guestbook changes the expiration date of a cookie instead of deleting the cookie's value, which makes it easier for attackers to steal the cookie and obtain the administrator's password hash after logout.

    Published: 25 Jul 2006
    5.1
    Medium

    CVE-2006-3822

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in index.php in GeodesicSolutions GeoAuctions Enterprise 1.0.6 allows remote attackers to execute arbitrary SQL commands via the d parameter.

    Published: 25 Jul 2006
    5.1
    Medium

    CVE-2006-3823

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in index.php in GeodesicSolutions (1) GeoAuctions Premier 2.0.3 and (2) GeoClassifieds Basic 2.0.3 allows remote attackers to execute arbitrary SQL commands via the b parameter.

    Published: 25 Jul 2006
    4.9
    Medium

    CVE-2006-3824

    Last Modified: 16 Apr 2026

    systeminfo.c for Sun Solaris allows local users to read kernel memory via a 0 variable count argument to the sysinfo system call, which causes a -1 argument to be used by the copyout function. NOTE: this issue has been referred to as an integer overflow, but it is probably more like a signedness error or integer underflow.

    Published: 25 Jul 2006
    2.1
    Low

    CVE-2006-3825

    Last Modified: 16 Apr 2026

    The IPv4 implementation in Sun Solaris 10 before 20060721 allows local users to select routes that differ from the routing table, possibly facilitating firewall bypass or unauthorized network communication.

    Published: 25 Jul 2006
    4.3
    Medium

    CVE-2006-3826

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Kailash Nadh boastMachine (formerly bMachine) 3.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) user_login, (2) full_name, and (3) URL parameters in register.php; and allow remote authenticated administrators to inject arbitrary web script or HTML via the (4) cat_list and (5) key parameters in a certain portion of the admin interface.

    Published: 25 Jul 2006
    6.5
    Medium

    CVE-2006-3827

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in bmc/Inc/core/admin/search.inc.php in Kailash Nadh boastMachine (formerly bMachine) 3.1 and earlier allows remote authenticated administrators to execute arbitrary SQL commands via the blog parameter.

    Published: 25 Jul 2006
    7.5
    High

    CVE-2006-3832

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in index.php in Gerrit van Aaken Loudblog 0.5 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 25 Jul 2006
    5
    Medium

    CVE-2006-3833

    Last Modified: 16 Apr 2026

    index.php in EJ3 TOPo 2.2.178 allows remote attackers to overwrite existing entries and establish new passwords for the overwritten entries via a URL with a modified entry ID.

    Published: 25 Jul 2006
    5
    Medium

    CVE-2006-3834

    Last Modified: 16 Apr 2026

    EJ3 TOPo 2.2.178 includes the password in cleartext in the ID field to index.php, which allows context-dependent attackers to obtain entry passwords via log files, referrers, or other vectors.

    Published: 25 Jul 2006
    5
    Medium

    CVE-2006-3836

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in index.php in UNIDOmedia Chameleon LE 1.203 and earlier, and possibly Chameleon PRO, allows remote attackers to read arbitrary files via the rmid parameter.

    Published: 25 Jul 2006
    5
    Medium

    CVE-2006-3829

    Last Modified: 16 Apr 2026

    Cross-site request forgery (CSRF) vulnerability in bmc/admin.php in Kailash Nadh boastMachine (formerly bMachine) 3.1 and earlier allows remote attackers to perform unauthorized actions as an administrator and delete arbitrary user accounts via a delete_user action.

    Published: 25 Jul 2006
    4.3
    Medium

    CVE-2006-3821

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in ATutor 1.5.3 allow remote attackers to inject arbitrary web script or HTML via the (1) lang parameter in (a) index_list.php and (2) year, (3) month, and (4) day parameter in (b) registration.php.

    Published: 25 Jul 2006