CVE Feed

    Dashboard / CVE

    4.6
    Medium

    CVE-2006-0635

    Last Modified: 16 Apr 2026

    Tiny C Compiler (TCC) 0.9.23 (aka TinyCC) evaluates the "i>sizeof(int)" expression to false when i equals -1, which might introduce integer overflow vulnerabilities into applications that could be exploited by context-dependent attackers.

    Published: 10 Feb 2006
    2.1
    Low

    CVE-2006-0640

    Last Modified: 16 Apr 2026

    Orbicule Undercover allows attackers with physical or root access to disable the protection by using the chmod command to change the permissions of the /private/etc/uc.app/Contents/MacOS/uc file, which prevents the service from being started in LaunchDaemon.

    Published: 10 Feb 2006
    6.5
    Medium

    CVE-2006-0638

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in moderation.php in MyBB (aka MyBulletinBoard) 1.0.3 allows remote authenticated users, with certain privileges for moderating and merging posts, to execute arbitrary SQL commands via the posts parameter.

    Published: 10 Feb 2006
    7.5
    High

    CVE-2006-0637

    Last Modified: 16 Apr 2026

    Buffer overflow in cram.dll in QUALCOMM Eudora WorldMail 3.0 allows remote attackers to execute arbitrary code via an IMAP APPEND command with a long message literal argument, as demonstrated by Worldmail.pl. NOTE: this is a different vector and a different manipulation than CVE-2005-4267, so it might be a different vulnerability than CVE-2005-4267.

    Published: 10 Feb 2006
    5.1
    Medium

    CVE-2006-0629

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in AOL Instant Messenger (AIM) 5.9.3861 allows user-assisted remote attackers to cause a denial of service (client crash) and possibly execute arbitrary code by tricking the user into requesting Buddy Info about a long screen name, which might cause a buffer overflow.

    Published: 10 Feb 2006
    4.3
    Medium

    CVE-2006-0639

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in search.php in MyBB (aka MyBulletinBoard) 1.0.2 allows remote attackers with knowledge of the table prefix to inject arbitrary web script or HTML via a URL encoded value of the keywords parameter, as demonstrated by %3Cscript%3E.

    Published: 10 Feb 2006
    2.6
    Low

    CVE-2006-0641

    Last Modified: 16 Apr 2026

    Orbicule Undercover uses a third-party web server to determine the IP address through which the computer is accessing the Internet, but does not document this third-party disclosure, which leads to a potential privacy leak that might allow transmission of sensitive information to an unintended remote destination.

    Published: 10 Feb 2006
    5.1
    Medium

    CVE-2006-0642

    Last Modified: 16 Apr 2026

    Trend Micro ServerProtect 5.58, and possibly InterScan Messaging Security Suite and InterScan Web Security Suite, have a default configuration setting of "Do not scan compressed files when Extracted file count exceeds 500 files," which may be too low in certain circumstances, which allows remote attackers to bypass anti-virus checks by sending compressed archives containing many small files. NOTE: since this is related to a configuration setting that has an operational impact that might vary depending on the environment, and the product is claimed to report a message when the compressed file exceeds specified limits, perhaps this should not be included in CVE.

    Published: 10 Feb 2006
    7.5
    High

    CVE-2006-0628

    Last Modified: 16 Apr 2026

    myquiz.pl in Dale Ray MyQuiz 1.01 allows remote attackers to execute arbitrary commands via shell metacharacters in the URL, which are not properly handled as part of the PATH_INFO environment variable.

    Published: 10 Feb 2006
    7.5
    High

    CVE-2006-0636

    Last Modified: 16 Apr 2026

    desktop.php in eyeOS 0.8.9 and earlier tests for the existence of the _SESSION variable before calling the session_start function, which allows remote attackers to execute arbitrary PHP code and possibly conduct other attacks by modifying critical assumed-immutable variables, as demonstrated using PHP code in the _SESSION[apps][eyeOptions.eyeapp][wrapup] variable.

    Published: 10 Feb 2006
    4.3
    Medium

    CVE-2006-0643

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in WiredRed e/pop Web Conferencing 4.1.0.755 allows remote authenticated users to inject arbitrary web script or HTML via the topic name of a conference.

    Published: 10 Feb 2006
    7.5
    High

    CVE-2006-0644

    Last Modified: 16 Apr 2026

    Multiple directory traversal vulnerabilities in install.php in CPG-Nuke Dragonfly CMS (aka CPG Dragonfly CMS) 9.0.6.1 allow remote attackers to include and execute arbitrary local files via directory traversal sequences and a NUL (%00) character in (1) the newlang parameter and (2) the installlang parameter in a cookie, as demonstrated by using error.php to insert malicious code into a log file, or uploading a malicious .png file, which is then included using install.php.

    Published: 10 Feb 2006
    4.3
    Medium

    CVE-2006-0195

    Last Modified: 16 Apr 2026

    Interpretation conflict in the MagicHTML filter in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to conduct cross-site scripting (XSS) attacks via style sheet specifiers with invalid (1) "/*" and "*/" comments, or (2) a newline in a "url" specifier, which is processed by certain web browsers including Internet Explorer.

    Published: 10 Feb 2006
    4.3
    Medium

    CVE-2006-0627

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Clever Copy 2.0, 2.0a, and 3.0 allows remote attackers to inject arbitrary web script or HTML via the (1) Referer or (2) X-Forwarded-For headers in an HTTP request, which are not properly handled when the administrator accesses Site Stats.

    Published: 9 Feb 2006
    7.5
    High

    CVE-2006-0626

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in spip_acces_doc.php3 in SPIP 1.8.2g and earlier allows remote attackers to execute arbitrary SQL commands via the file parameter.

    Published: 9 Feb 2006
    6.4
    Medium

    CVE-2006-0625

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in Spip_RSS.PHP in SPIP 1.8.2g and earlier allows remote attackers to read or include arbitrary files via ".." sequences in the GLOBALS[type_urls] parameter, which could then be used to execute arbitrary code via resultant direct static code injection in the file parameter to spip_acces_doc.php3.

    Published: 9 Feb 2006
    7.5
    High

    CVE-2006-0645

    Last Modified: 16 Apr 2026

    Tiny ASN.1 Library (libtasn1) before 0.2.18, as used by (1) GnuTLS 1.2.x before 1.2.10 and 1.3.x before 1.3.4, and (2) GNU Shishi, allows attackers to crash the DER decoder and possibly execute arbitrary code via "out-of-bounds access" caused by invalid input, as demonstrated by the ProtoVer SSL test suite.

    Published: 9 Feb 2006
    6.4
    Medium

    CVE-2006-0614

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in Sun Java JDK and JRE 5.0 Update 3 and earlier, SDK and JRE 1.3.x through 1.3.1_16 and 1.4.x through 1.4.2_08 allows remote attackers to bypass Java sandbox security and obtain privileges via unspecified vectors involving the reflection APIs, aka the "first issue."

    Published: 9 Feb 2006
    4
    Medium

    CVE-2006-0615

    Last Modified: 16 Apr 2026

    Multiple unspecified vulnerabilities in Sun Java JDK and JRE 5.0 Update 4 and earlier, SDK and JRE 1.4.x through 1.4.2_09 allow remote attackers to bypass Java sandbox security and obtain privileges via unspecified vectors involving the reflection APIs, aka the "second and third issues."

    Published: 9 Feb 2006
    4
    Medium

    CVE-2006-0616

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in Sun Java JDK and JRE 5.0 Update 4 and earlier allows remote attackers to bypass Java sandbox security and obtain privileges via unspecified vectors involving the reflection APIs, aka the "fourth issue."

    Published: 9 Feb 2006
    4
    Medium

    CVE-2006-0617

    Last Modified: 16 Apr 2026

    Multiple unspecified vulnerabilities in Sun Java JDK and JRE 5.0 Update 5 and earlier allow remote attackers to bypass Java sandbox security and obtain privileges via unspecified vectors involving the reflection APIs, aka the "fifth, sixth, and seventh issues."

    Published: 9 Feb 2006
    4.6
    Medium

    CVE-2006-0618

    Last Modified: 16 Apr 2026

    Format string vulnerability in fontsleuth in QNX Neutrino RTOS 6.3.0 allows local users to execute arbitrary code via format string specifiers in the zeroth argument (program name).

    Published: 9 Feb 2006
    4.9
    Medium

    CVE-2006-0622

    Last Modified: 16 Apr 2026

    QNX Neutrino RTOS 6.3.0 allows local users to cause a denial of service (hang) by supplying a "break *0xb032d59f" command to gdb.

    Published: 9 Feb 2006
    7.2
    High

    CVE-2006-0623

    Last Modified: 16 Apr 2026

    QNX Neutrino RTOS 6.3.0 ships /etc/rc.d/rc.local with world-writable permissions, which allows local users to modify the file and execute arbitrary code at system startup.

    Published: 9 Feb 2006
    7.5
    High

    CVE-2006-0624

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in check.asp in Whomp Real Estate Manager XP 2005 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.

    Published: 9 Feb 2006
    6.2
    Medium

    CVE-2006-0620

    Last Modified: 16 Apr 2026

    Race condition in phfont in QNX Neutrino RTOS 6.2.1 allows local users to execute arbitrary code via unspecified manipulations of the PHFONT and PHOTON2_PATH environment variables.

    Published: 9 Feb 2006
    4
    Medium

    CVE-2006-0613

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in Java Web Start after 1.0.1_02, as used in J2SE 5.0 Update 5 and earlier, allows remote attackers to obtain privileges via unspecified vectors involving untrusted applications.

    Published: 9 Feb 2006
    7.2
    High

    CVE-2006-0621

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in QNX Neutrino RTOS 6.2.0 allow local users to execute arbitrary code via a long first argument to the (1) su or (2) passwd commands.

    Published: 9 Feb 2006
    4.6
    Medium

    CVE-2006-0619

    Last Modified: 16 Apr 2026

    Multiple stack-based buffer overflows in QNX Neutrino RTOS 6.3.0 allow local users to execute arbitrary code via long (1) ABLPATH or (2) ABLANG environment variables in the libAP library (libAp.so.2) or (3) a long PHOTON_PATH environment variable to the setitem function in the libph library.

    Published: 9 Feb 2006
    7.5
    High

    CVE-2006-0610

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in 2200net Calendar system 1.2, with gpc_magic_quotes disabled, allow remote attackers to execute arbitrary SQL commands and bypass authentication via (1) the fm_data[id] parameter to calendar.php and (2) the $ad['acc'] variable in adminlogin.php.

    Published: 9 Feb 2006
    7.5
    High

    CVE-2006-0611

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in compose.pl in @Mail 4.3 and earlier for Windows allows remote attackers to upload arbitrary files to arbitrary locations via a .. (dot dot) in the unique parameter.

    Published: 9 Feb 2006
    4.6
    Medium

    CVE-2006-0612

    Last Modified: 16 Apr 2026

    Powersave daemon before 0.10.15.2 allows local users to gain privileges (unauthorized access to an X session) via unspecified vectors. NOTE: the provenance of this information is unknown; portions of the details are obtained from third party information.

    Published: 9 Feb 2006
    4.3
    Medium

    CVE-2006-0609

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in add.php in Hinton Design phphd 1.0 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.

    Published: 8 Feb 2006
    7.5
    High

    CVE-2006-0602

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in Hinton Design phphg Guestbook 1.2 allow remote attackers to execute arbitrary SQL commands via the (1) username parameter to check.php or the id parameter to (2) admin/edit_smilie.php, (3) admin/add_theme.php, (4) admin/ban_ip.php, (5) admin/add_lang.php, or (6) admin/edit_filter.php.

    Published: 8 Feb 2006
    6.4
    Medium

    CVE-2006-0603

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting vulnerabilities in signed.php in Hinton Design phphg Guestbook 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) location, (2) website, or (3) message parameter.

    Published: 8 Feb 2006
    7.5
    High

    CVE-2006-0608

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in Hinton Design phphd 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the username parameter to check.php or (2) unknown attack vectors to scripts that display information from the database.

    Published: 8 Feb 2006
    7.5
    High

    CVE-2006-0607

    Last Modified: 16 Apr 2026

    check.php in Hinton Design phphd 1.0 does not check passwords when certain cookies are provided, which allows remote attackers to bypass authentication.

    Published: 8 Feb 2006
    7.5
    High

    CVE-2006-0606

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in Unknown Domain Shoutbox 2005.07.21 allows remote attackers to execute arbitrary SQL commands via unknown attack vectors.

    Published: 8 Feb 2006
    4.3
    Medium

    CVE-2006-0605

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Unknown Domain Shoutbox 2005.07.21 allow remote attackers to inject arbitrary web script or HTML, possibly via the (1) Handle or (2) Message fields.

    Published: 8 Feb 2006
    7.5
    High

    CVE-2006-0604

    Last Modified: 16 Apr 2026

    check.php in Hinton Design phphg Guestbook 1.2 does not check the user password when authenticating via cookies, which allows remote attackers to gain unauthorized access.

    Published: 8 Feb 2006
    4.3
    Medium

    CVE-2006-0023

    Last Modified: 16 Apr 2026

    Microsoft Windows XP SP1 and SP2 before August 2004, and possibly other operating systems and versions, uses insecure default ACLs that allow the Authenticated Users group to gain privileges by modifying critical configuration information for the (1) Simple Service Discovery Protocol (SSDP), (2) Universal Plug and Play Device Host (UPnP), (3) NetBT, (4) SCardSvr, (5) DHCP, and (6) DnsCache services, aka "Permissive Windows Services DACLs." NOTE: the NetBT, SCardSvr, DHCP, DnsCache already require privileged access to exploit.

    Published: 8 Feb 2006
    7.5
    High

    CVE-2006-0583

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in mailarticle.php in Clever Copy 3.0 and earlier allows remote attackers to execute arbitrary SQL commands via the ID parameter.

    Published: 8 Feb 2006
    7.5
    High

    CVE-2006-0592

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in the Lexmark Printer Sharing LexBce Server Service (LexPPS), possibly 8.29 and 9.41, allows remote attackers to execute arbitrary code via unspecified vectors. NOTE: This information is based on a vague initial disclosure; details will be updated after the grace period has ended.

    Published: 8 Feb 2006
    5
    Medium

    CVE-2006-0589

    Last Modified: 16 Apr 2026

    MyTopix 1.2.3 allows remote attackers to obtain the installation path via a direct request to logon.mod.php, which leaks the path in an error message.

    Published: 8 Feb 2006
    7.5
    High

    CVE-2006-0586

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in Oracle 10g Release 1 before CPU Jan 2006 allow remote attackers to execute arbitrary SQL commands via multiple parameters in (1) ATTACH_JOB, (2) HAS_PRIVS, and (3) OPEN_JOB functions in the SYS.KUPV$FT package; and (4) UPDATE_JOB, (5) ACTIVE_JOB, (6) ATTACH_POSSIBLE, (7) ATTACH_TO_JOB, (8) CREATE_NEW_JOB, (9) DELETE_JOB, (10) DELETE_MASTER_TABLE, (11) DETACH_JOB, (12) GET_JOB_INFO, (13) GET_JOB_QUEUES, (14) GET_SOLE_JOBNAME, (15) MASTER_TBL_LOCK, and (16) VALID_HANDLE functions in the SYS.KUPV$FT_INT package. NOTE: due to the lack of relevant details from the Oracle advisory, a separate CVE is being created since it cannot be conclusively proven that these issues has been addressed by Oracle. It is unclear which, if any, Oracle Vuln# identifiers apply to these issues.

    Published: 8 Feb 2006
    2.1
    Low

    CVE-2006-0584

    Last Modified: 16 Apr 2026

    The PSCipher function in PeopleSoft People Tools 8.4x uses PKCS #5 with a fixed DES key to store user passwords, which makes it easier for local users to guess passwords using a dictionary attack that compares output strings.

    Published: 8 Feb 2006
    7.5
    High

    CVE-2006-0579

    Last Modified: 16 Apr 2026

    Multiple integer overflows in (1) the new_demux_packet function in demuxer.h and (2) the demux_asf_read_packet function in demux_asf.c in MPlayer 1.0pre7try2 and earlier allow remote attackers to execute arbitrary code via an ASF file with a large packet length value. NOTE: the provenance of this information is unknown; portions of the details are obtained from third party information.

    Published: 8 Feb 2006
    5
    Medium

    CVE-2006-0590

    Last Modified: 16 Apr 2026

    MyTopix 1.2.3 allows remote attackers to obtain the installation path via an invalid hl parameter to index.php, which leads to path disclosure, possibly related to invalid SQL syntax.

    Published: 8 Feb 2006
    6.5
    Medium

    CVE-2006-0587

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in util.php in Gallery before 1.5.2-pl2 allows remote authenticated users with trick an owner into modifying stored album data and possibly executing arbitrary code via unspecified vectors involving a crafted link to a crafted file.

    Published: 8 Feb 2006
    7.5
    High

    CVE-2006-0588

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in search.php in MyTopix 1.2.3 allows remote attackers to execute arbitrary SQL commands via the (1) mid and (2) keywords parameters.

    Published: 8 Feb 2006