CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2006-0944

    Last Modified: 16 Apr 2026

    Archangel Weblog 0.90.02 allows remote attackers to bypass authentication by setting the ba_admin cookie to 1.

    Published: 1 Mar 2006
    7.5
    High

    CVE-2006-0947

    Last Modified: 16 Apr 2026

    Thomson SpeedTouch modem running firmware 5.3.2.6.0 allows remote attackers to create users that cannot be deleted via scripting code in the "31" parameter in a NewUser function, which is not filtered by the modem when creating the account, but cannot be deleted by the administrator, possibly due to cleansing that occurs in the administrator interface.

    Published: 1 Mar 2006
    5
    Medium

    CVE-2006-0040

    Last Modified: 16 Apr 2026

    GNOME Evolution 2.4.2.1 and earlier allows remote attackers to cause a denial of service (CPU and memory consumption) via a text e-mail with a large number of URLs, possibly due to unknown problems in gtkhtml.

    Published: 1 Mar 2006
    5
    Medium

    CVE-2006-0910

    Last Modified: 16 Apr 2026

    Invision Power Board (IPB) 2.1.4 and earlier allows remote attackers to list directory contents via a direct request to multiple directories, including (1) sources/loginauth/convert/, (2) sources/portal_plugins/, (3) cache/skin_cache/cacheid_2/, (4) ips_kernel/PEAR/, (5) ips_kernel/PEAR/Text/, (6) ips_kernel/PEAR/Text/Diff/, (7) ips_kernel/PEAR/Text/Diff/Renderer/, (8) style_images/1/folder_rte_files/, (9) style_images/1/folder_js_skin/, (10) style_images/1/folder_rte_images/, and (11) upgrade/ and its subdirectories.

    Published: 28 Feb 2006
    5.5
    Medium

    CVE-2006-0914

    Last Modified: 16 Apr 2026

    Bugzilla 2.16.10, 2.17 through 2.18.4, and 2.20 does not properly handle certain characters in the mostfreqthreshold parameter in duplicates.cgi, which allows remote attackers to trigger a SQL error.

    Published: 28 Feb 2006
    7.5
    High

    CVE-2006-0915

    Last Modified: 16 Apr 2026

    Bugzilla 2.16.10 does not properly handle certain characters in the (1) maxpatchsize and (2) maxattachmentsize parameters in attachment.cgi, which allows remote attackers to trigger a SQL error.

    Published: 28 Feb 2006
    7.5
    High

    CVE-2006-0916

    Last Modified: 16 Apr 2026

    Bugzilla 2.19.3 through 2.20 does not properly handle "//" sequences in URLs when redirecting a user from the login form, which could cause it to generate a partial URL in a form action that causes the user's browser to send the form data to another domain.

    Published: 28 Feb 2006
    2.1
    Low

    CVE-2006-0917

    Last Modified: 16 Apr 2026

    Melange Chat Server (aka M-Chat), when accessed via a web browser, automatically sends cookies and other sensitive information for a server to any port specified in the associated link, which allows local users on that server to read the cookies from HTTP headers and possibly gain sensitive information, such as credentials, by setting up a listening port and reading the credentials when the victim clicks on the link.

    Published: 28 Feb 2006
    7.5
    High

    CVE-2006-0918

    Last Modified: 16 Apr 2026

    Buffer overflow in RITLabs The Bat! 3.60.07 allows remote attackers to execute arbitrary code via a long Subject field.

    Published: 28 Feb 2006
    4.3
    Medium

    CVE-2006-0923

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in MyPHPNuke (MPN) 1.88 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the letter parameter in reviews.php and (2) the dcategory parameter in download.php.

    Published: 28 Feb 2006
    4.3
    Medium

    CVE-2006-0924

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Brown Bear iCal 3.10 allows remote attackers to inject arbitrary web script or HTML via the Calendar Text field when a new event is added. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 28 Feb 2006
    5
    Medium

    CVE-2006-0925

    Last Modified: 16 Apr 2026

    Format string vulnerability in the IMAP4rev1 server in Alt-N MDaemon 8.1.1 and possibly 8.1.4 allows remote attackers to cause a denial of service (CPU consumption) by creating and then listing folders whose names contain format string specifiers.

    Published: 28 Feb 2006
    2.6
    Low

    CVE-2006-0926

    Last Modified: 16 Apr 2026

    Multiple directory traversal vulnerabilities in Allume StuffIt Standard and Deluxe 9.0, ZipMagic Deluxe 9.0, and StuffIt Expander 9.0.0.21 Engine 9.0.0.21 allow remote attackers to create and overwrite arbitrary files via certain crafted pathnames in a (1) zip or (2) tar archive.

    Published: 28 Feb 2006
    6.4
    Medium

    CVE-2006-0921

    Last Modified: 16 Apr 2026

    Multiple directory traversal vulnerabilities in connector.php in FCKeditor 2.0 FC, as used in products such as RunCMS, allow remote attackers to list and create arbitrary directories via a .. (dot dot) in the CurrentFolder parameter to (1) GetFoldersAndFiles and (2) CreateFolder.

    Published: 28 Feb 2006
    4
    Medium

    CVE-2006-0930

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in Webmail in ArGoSoft Mail Server Pro 1.8 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the UIDL parameter.

    Published: 28 Feb 2006
    5
    Medium

    CVE-2006-0931

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in PEAR::Archive_Tar 1.2, and other versions before 1.3.2, allows remote attackers to create and overwrite arbitrary files via certain crafted pathnames in a TAR archive.

    Published: 28 Feb 2006
    5
    Medium

    CVE-2006-0932

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in zip.lib.php 0.1.1 in PEAR::Archive_Zip allows remote attackers to create and overwrite arbitrary files via certain crafted pathnames in a ZIP archive.

    Published: 28 Feb 2006
    4.3
    Medium

    CVE-2006-0933

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in PHPX 3.5.9 allows remote attackers to inject arbitrary web script or HTML via a javascript URI in a url XCode tag in a posted message. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 28 Feb 2006
    4.3
    Medium

    CVE-2006-0934

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in webinsta Limbo 1.0.4.2 allows remote attackers to inject arbitrary web script or HTML via the message field in the Contact Form.

    Published: 28 Feb 2006
    5.5
    Medium

    CVE-2006-0913

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in whineatnews.pl in Bugzilla 2.17 through 2.18.4 and 2.20 allows remote authenticated users with administrative privileges to execute arbitrary SQL commands via the whinedays parameter, as accessible from editparams.cgi.

    Published: 28 Feb 2006
    5
    Medium

    CVE-2006-0928

    Last Modified: 16 Apr 2026

    The POP3 Server in ArGoSoft Mail Server Pro 1.8 allows remote attackers to obtain sensitive information via the _DUMP command, which reveals the operating system, registered user, and registration code.

    Published: 28 Feb 2006
    5
    Medium

    CVE-2006-0909

    Last Modified: 16 Apr 2026

    Invision Power Board (IPB) 2.1.4 and earlier allows remote attackers to view sensitive information via a direct request to multiple PHP scripts that include the full path in error messages, including (1) PEAR/Text/Diff/Renderer/inline.php, (2) PEAR/Text/Diff/Renderer/unified.php, (3) PEAR/Text/Diff3.php, (4) class_db.php, (5) class_db_mysql.php, and (6) class_xml.php in the ips_kernel/ directory; (7) mysql_admin_queries.php, (8) mysql_extra_queries.php, (9) mysql_queries.php, and (10) mysql_subsm_queries.php in the sources/sql directory; (11) sources/acp_loaders/acp_pages_components.php; (12) sources/action_admin/member.php and (13) sources/action_admin/paysubscriptions.php; (14) login.php, (15) messenger.php, (16) moderate.php, (17) paysubscriptions.php, (18) register.php, (19) search.php, (20) topics.php, (21) and usercp.php in the sources/action_public directory; (22) bbcode/class_bbcode.php, (23) bbcode/class_bbcode_legacy.php, (24) editor/class_editor_rte.php, (25) editor/class_editor_std.php, (26) post/class_post.php, (27) post/class_post_edit.php, (28) post/class_post_new.php, (29) and post/class_post_reply.php in the sources/classes directory; (30) sources/components_acp/registration_DEPR.php; (31) sources/handlers/han_paysubscriptions.php; (32) func_usercp.php; (33) search_mysql_ftext.php, and (34) search_mysql_man.php in the sources/lib/ directory; and (35) convert/auth.php.bak, (36) external/auth.php, and (37) ldap/auth.php in the sources/loginauth directory.

    Published: 28 Feb 2006
    5
    Medium

    CVE-2006-0911

    Last Modified: 16 Apr 2026

    NmService.exe in Ipswitch WhatsUp Professional 2006 allows remote attackers to cause a denial of service (CPU consumption) via crafted requests to Login.asp, possibly involving the (1) "In]" and (2) "b;tnLogIn" parameters, or (3) malformed btnLogIn parameters, possibly involving missing "[" (open bracket) or "[" (closing bracket) characters, as demonstrated by "&btnLogIn=[Log&In]=&" or "&b;tnLogIn=[Log&In]=&" in the URL. NOTE: due to the lack of diagnosis by the original researcher, the precise nature of the vulnerability is unclear.

    Published: 28 Feb 2006
    1.7
    Low

    CVE-2006-0920

    Last Modified: 16 Apr 2026

    Oi! Email Marketing System 3.0 (aka Oi! 3) stores the server's FTP password in cleartext on a Configuration web page, which allows local users with superadministrator privileges, or attackers who have obtained access to the web page, to view the password.

    Published: 28 Feb 2006
    5
    Medium

    CVE-2006-0922

    Last Modified: 16 Apr 2026

    CubeCart 3.0 through 3.6 does not properly check authorization for an administration session because of a missing auth.inc.php include, which results in an absolute path traversal vulnerability in FileUpload in connector.php (aka upload.php) that allows remote attackers to upload arbitrary files via a modified CurrentFolder parameter in a direct request to admin/filemanager/upload.php.

    Published: 28 Feb 2006
    4
    Medium

    CVE-2006-0929

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in the IMAP server in ArGoSoft Mail Server Pro 1.8.8.1 allows remote authenticated users to create arbitrary folders via a .. (dot dot) in the RENAME command.

    Published: 28 Feb 2006
    6.5
    Medium

    CVE-2006-0936

    Last Modified: 16 Apr 2026

    Free Host Shop Website Generator 3.3 allows remote authenticated users with administrative privileges to upload and execute arbitrary files via a formname parameter with a filename containing a dangerous file extension and a trailing %00.

    Published: 28 Feb 2006
    5
    Medium

    CVE-2006-0937

    Last Modified: 16 Apr 2026

    U.N.U. Mailgust 1.9 allows remote attackers to obtain sensitive information via a direct request to index.php with method=showfullcsv, which reveals the POP3 server configuration, including account name and password.

    Published: 28 Feb 2006
    5
    Medium

    CVE-2006-0912

    Last Modified: 16 Apr 2026

    Oreka before 0.5 allows remote attackers to cause a denial of service (application crash) via a "certain RTP sequence."

    Published: 28 Feb 2006
    7.5
    High

    CVE-2006-0919

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in index.php (aka the login page) in Oi! Email Marketing System 3.0 (aka Oi! 3) allows remote attackers to execute arbitrary SQL commands via the (1) Username and (2) Password fields.

    Published: 28 Feb 2006
    2.6
    Low

    CVE-2006-0935

    Last Modified: 16 Apr 2026

    Microsoft Word 2003 allows remote attackers to cause a denial of service (application crash) via a crafted file, as demonstrated by 101_filefuzz.

    Published: 28 Feb 2006
    2.6
    Low

    CVE-2006-0927

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in the JGS-XA JGS-Gallery Addon 4.0.0 and earlier for Woltlab Burning Board (wBB) 2.x allow remote attackers to inject arbitrary web script or HTML via the (1) userid parameter in (a) jgs_galerie_slideshow.php and (b) jgs_galerie_scroll.php, and the (2) katid parameter in (c) jgs_galerie_slideshow.php.

    Published: 28 Feb 2006
    7.5
    High

    CVE-2006-0907

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in PHP-Nuke before 7.8 Patched 3.2 allows remote attackers to execute arbitrary SQL commands via encoded /%2a (/*) sequences in the query string, which bypasses regular expressions that are intended to protect against SQL injection, as demonstrated via the kala parameter.

    Published: 28 Feb 2006
    7.5
    High

    CVE-2006-0908

    Last Modified: 16 Apr 2026

    PHP-Nuke 7.8 Patched 3.2 allows remote attackers to bypass SQL injection protection mechanisms via /%2a (/*) sequences with the "ad_click" word in the query string, as demonstrated via the kala parameter.

    Published: 28 Feb 2006
    7.5
    High

    CVE-2006-0906

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in D3Jeeb Pro 3 allows remote attackers to execute arbitrary SQL commands via the catid parameter in (1) fastlinks.php and (2) catogary.php.

    Published: 28 Feb 2006
    4.6
    Medium

    CVE-2006-0742

    Last Modified: 16 Apr 2026

    The die_if_kernel function in arch/ia64/kernel/unaligned.c in Linux kernel 2.6.x before 2.6.15.6, possibly when compiled with certain versions of gcc, has the "noreturn" attribute set, which allows local users to cause a denial of service by causing user faults on Itanium systems.

    Published: 28 Feb 2006
    2.6
    Low

    CVE-2006-1045

    Last Modified: 16 Apr 2026

    The HTML rendering engine in Mozilla Thunderbird 1.5, when "Block loading of remote images in mail messages" is enabled, does not properly block external images from inline HTML attachments, which could allow remote attackers to obtain sensitive information, such as application version or IP address, when the user reads the email and the external image is accessed.

    Published: 28 Feb 2006
    10
    Critical

    CVE-2006-0736

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in the pam_micasa PAM authentication module in CASA on Novell Linux Desktop 9 and Open Enterprise Server 1 allows remote attackers to execute arbitrary code via unspecified vectors.

    Published: 27 Feb 2006
    7.5
    High

    CVE-2006-0899

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in index.php in 4Images 1.7.1 and earlier allows remote attackers to read and include arbitrary files via ".." (dot dot) sequences in the template parameter.

    Published: 27 Feb 2006
    7.8
    High

    CVE-2006-0900

    Last Modified: 16 Apr 2026

    nfsd in FreeBSD 6.0 kernel allows remote attackers to cause a denial of service via a crafted NFS mount request, as demonstrated by the ProtoVer NFS test suite.

    Published: 27 Feb 2006
    7.2
    High

    CVE-2006-0901

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in the hsfs filesystem in Solaris 8, 9, and 10 allows unspecified attackers to cause a denial of service (panic) or execute arbitrary code.

    Published: 27 Feb 2006
    2.1
    Low

    CVE-2006-0555

    Last Modified: 16 Apr 2026

    The Linux Kernel before 2.6.15.5 allows local users to cause a denial of service (NFS client panic) via unknown attack vectors related to the use of O_DIRECT (direct I/O).

    Published: 27 Feb 2006
    1.2
    Low

    CVE-2006-0741

    Last Modified: 16 Apr 2026

    Linux kernel before 2.6.15.5, when running on Intel processors, allows local users to cause a denial of service ("endless recursive fault") via unknown attack vectors related to a "bad elf entry address."

    Published: 26 Feb 2006
    4.3
    Medium

    CVE-2006-0885

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in show_news.php in CuteNews 1.4.1 allows remote attackers to inject arbitrary web script or HTML via the show parameter.

    Published: 25 Feb 2006
    4.3
    Medium

    CVE-2006-0886

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in register.php in DEV web management system 1.5 allows remote attackers to inject arbitrary web script or HTML via the "City/Region" field (mesto variable). NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 25 Feb 2006
    5
    Medium

    CVE-2006-0890

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in SpeedProject Squeez 5.1, as used in (1) ZipStar 5.1 and (2) SpeedCommander 11.01.4450, allows remote attackers to overwrite arbitrary files via unspecified manipulations in a (1) JAR or (2) ZIP archive.

    Published: 25 Feb 2006
    5
    Medium

    CVE-2006-0891

    Last Modified: 16 Apr 2026

    Multiple directory traversal vulnerabilities in NOCC Webmail 1.0 allow remote attackers to include arbitrary files via .. (dot dot) sequences and a trailing NULL (%00) byte in (1) the _SESSION['nocc_theme'] parameter in (a) html/footer.php; and (2) the lang and (3) theme parameters and the (4) Accept-Language HTTP header field, when force_default_lang is disabled, in (b) index.php, as demonstrated by injecting PHP code into a profile and accessing it using the lang parameter in index.php.

    Published: 25 Feb 2006
    7.5
    High

    CVE-2006-0892

    Last Modified: 16 Apr 2026

    NOCC Webmail 1.0 stores e-mail attachments in temporary files with predictable filenames, which makes it easier for remote attackers to execute arbitrary code by accessing the e-mail attachment via directory traversal vulnerabilities.

    Published: 25 Feb 2006
    5
    Medium

    CVE-2006-0893

    Last Modified: 16 Apr 2026

    NOCC Webmail 1.0 allows remote attackers to obtain sensitive information via a direct request to (1) the profiles directory, which leaks e-mail addresses contained in filenames of profiles, and (2) the tmp directory, which lists names of uploaded attachments.

    Published: 25 Feb 2006
    4.3
    Medium

    CVE-2006-0889

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Calcium 3.10.1 allows remote attackers to inject arbitrary web script or HTML via the EventText parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 25 Feb 2006