CVE Feed

    Dashboard / CVE

    4
    Medium

    CVE-2006-0424

    Last Modified: 16 Apr 2026

    BEA WebLogic Server and WebLogic Express 8.1 through SP4, 7.0 through SP6, and 6.1 through SP7 allows remote authenticated guest users to read the server log and obtain sensitive configuration information.

    Published: 25 Jan 2006
    7.5
    High

    CVE-2006-0428

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in BEA WebLogic Portal 8.1 SP3 through SP5, when using Web Services Remote Portlets (WSRP), allows remote attackers to access restricted web resources via crafted URLs.

    Published: 25 Jan 2006
    2.1
    Low

    CVE-2006-0429

    Last Modified: 16 Apr 2026

    BEA WebLogic Server and WebLogic Express 9.0 causes new security providers to appear active even if they have not been activated by a server reboot, which could cause an administrator to perform inappropriate, security-relevant actions.

    Published: 25 Jan 2006
    5
    Medium

    CVE-2006-0430

    Last Modified: 16 Apr 2026

    Certain configurations of BEA WebLogic Server and WebLogic Express 9.0, 8.1 through SP5, and 7.0 through SP6, when connection filters are enabled, cause the server to run more slowly, which makes it easier for remote attackers to cause a denial of service (server slowdown).

    Published: 25 Jan 2006
    2.1
    Low

    CVE-2006-0431

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in BEA WebLogic Server and WebLogic Express 8.1 SP5 allows untrusted applications to obtain the server's SSL identity via unknown attack vectors.

    Published: 25 Jan 2006
    2.1
    Low

    CVE-2006-0432

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in BEA WebLogic Server and WebLogic Express 9.0, when an Administrator uses the WebLogic Administration Console to add custom security policies, causes incorrect policies to be created, which prevents the server from properly protecting JNDI resources.

    Published: 25 Jan 2006
    5
    Medium

    CVE-2006-0420

    Last Modified: 16 Apr 2026

    BEA WebLogic Server and WebLogic Express 8.1 through SP4 and 7.0 through SP6 does not properly handle when servlets use relative forwarding, which allows remote attackers to cause a denial of service (slowdown) via unknown attack vectors that cause "looping stack overflow errors."

    Published: 25 Jan 2006
    5
    Medium

    CVE-2006-0425

    Last Modified: 16 Apr 2026

    BEA WebLogic Portal 8.1 through SP4 allows remote attackers to obtain the source for a deployment descriptor file via unknown vectors.

    Published: 25 Jan 2006
    2.1
    Low

    CVE-2006-0427

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in BEA WebLogic Server and WebLogic Express 9.0 and 8.1 through SP5 allows malicious EJBs or servlet applications to decrypt system passwords, possibly by accessing functionality that should have been restricted.

    Published: 25 Jan 2006
    6.4
    Medium

    CVE-2006-0419

    Last Modified: 16 Apr 2026

    BEA WebLogic Server and WebLogic Express 9.0, 8.1 through SP5, and 7.0 through SP6 allows anonymous binds to the embedded LDAP server, which allows remote attackers to read user entries or cause a denial of service (unspecified) via a large number of connections.

    Published: 25 Jan 2006
    7.5
    High

    CVE-2006-0426

    Last Modified: 16 Apr 2026

    BEA WebLogic Server and WebLogic Express 8.1 through SP4, when configuration auditing is enabled and a password change occurs, stores the old and new passwords in cleartext in the DefaultAuditRecorder.log file, which could allow attackers to gain privileges.

    Published: 25 Jan 2006
    2.1
    Low

    CVE-2006-0379

    Last Modified: 16 Apr 2026

    FreeBSD kernel 5.4-STABLE and 6.0 does not completely initialize a buffer before making it available to userland, which could allow local users to read portions of kernel memory.

    Published: 25 Jan 2006
    5
    Medium

    CVE-2006-0381

    Last Modified: 16 Apr 2026

    A logic error in the IP fragment cache functionality in pf in FreeBSD 5.3, 5.4, and 6.0, and OpenBSD, when a 'scrub fragment crop' or 'scrub fragment drop-ovl' rule is being used, allows remote attackers to cause a denial of service (crash) via crafted packets that cause a packet fragment to be inserted twice.

    Published: 25 Jan 2006
    2.1
    Low

    CVE-2006-0380

    Last Modified: 16 Apr 2026

    A logic error in FreeBSD kernel 5.4-STABLE and 6.0 causes the kernel to calculate an incorrect buffer length, which causes more data to be copied to userland than intended, which could allow local users to read portions of kernel memory.

    Published: 25 Jan 2006
    10
    Critical

    CVE-2006-0411

    Last Modified: 16 Apr 2026

    claro_init_local.inc.php in Claroline 1.7.2 uses guessable session cookies (MD5 hash of connection time), which allows remote attackers to hijack sessions and possibly gain administrative privileges.

    Published: 25 Jan 2006
    7.5
    High

    CVE-2006-0412

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in CyberShop allows remote attackers to execute arbitrary SQL commands and bypass authentication via the username parameter in a login action.

    Published: 25 Jan 2006
    7.5
    High

    CVE-2006-0413

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in index.php in NewsPHP allow remote attackers to execute arbitrary SQL commands via the (1) discuss, (2) tim, (3) id, (4) last, and (5) limit parameter.

    Published: 25 Jan 2006
    5
    Medium

    CVE-2006-0414

    Last Modified: 16 Apr 2026

    Tor before 0.1.1.20 allows remote attackers to identify hidden services via a malicious Tor server that attempts a large number of accesses of the hidden service, which eventually causes a circuit to be built through the malicious server.

    Published: 25 Jan 2006
    4.3
    Medium

    CVE-2006-0415

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in SleeperChat 0.3f and earlier allows remote attackers to inject arbitrary web script or HTML via the pseudo parameter.

    Published: 25 Jan 2006
    5
    Medium

    CVE-2006-0416

    Last Modified: 16 Apr 2026

    SleeperChat 0.3f and earlier allows remote attackers to bypass authentication and create new entries via the txt parameter to (1) chat_no.php and (2) chat_if.php.

    Published: 25 Jan 2006
    7.5
    High

    CVE-2006-0418

    Last Modified: 16 Apr 2026

    Eval injection vulnerability in 123 Flash Chat Server 5.0 and 5.1 allows attackers to execute arbitrary code via a crafted username.

    Published: 25 Jan 2006
    7.5
    High

    CVE-2006-0417

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in login.php in miniBloggie 1.0 and earlier, when gpc_magic_quotes is disabled, allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username and (2) password parameters.

    Published: 25 Jan 2006
    7.5
    High

    CVE-2006-0403

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in e-moBLOG 1.3 allow remote attackers to execute arbitrary SQL commands via the (1) monthy parameter to index.php or (2) login parameter to admin/index.php. NOTE: some sources have reported item 1 as involving the "monthly" parameter, but this is incorrect.

    Published: 25 Jan 2006
    5
    Medium

    CVE-2006-0405

    Last Modified: 16 Apr 2026

    The TIFFFetchShortPair function in tif_dirread.c in libtiff 3.8.0 allows remote attackers to cause a denial of service (application crash) via a crafted TIFF image that triggers a NULL pointer dereference, possibly due to changes in type declarations and/or the TIFFVSetField function.

    Published: 25 Jan 2006
    5
    Medium

    CVE-2006-0406

    Last Modified: 16 Apr 2026

    search.php in MyBB 1.0.2 allows remote attackers to obtain sensitive information via a certain search request that reveals the table prefix in a SQL error message, possibly due to invalid parameters.

    Published: 25 Jan 2006
    4.3
    Medium

    CVE-2006-0407

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in post.php in AZ Bulletin Board (AZbb) 1.1.00 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) nickname parameter and (2) an iframe tag in the topic parameter. NOTE: the original disclosure specified the name parameter, but a correction was later provided. NOTE: followup posts have both disputed and confirmed the original claim.

    Published: 25 Jan 2006
    5
    Medium

    CVE-2006-0404

    Last Modified: 16 Apr 2026

    Note-A-Day Weblog 2.2 stores sensitive data under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to archive/.phpass-admin, which contains encrypted passwords.

    Published: 25 Jan 2006
    4.3
    Medium

    CVE-2006-0409

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in Pixelpost Photoblog 1.4.3 allows remote attackers to inject arbitrary web script or HTML via the "Add Comment" field in a comment popup.

    Published: 25 Jan 2006
    7.2
    High

    CVE-2006-0408

    Last Modified: 16 Apr 2026

    rsh utility in Sun Grid Engine (SGE) before 6.0u7_1 allows local users to gain privileges and execute arbitrary code via unspecified vectors, possibly involving command line arguments.

    Published: 25 Jan 2006
    5
    Medium

    CVE-2006-0410

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in ADOdb before 4.71, when using PostgreSQL, allows remote attackers to execute arbitrary SQL commands via unspecified attack vectors involving binary strings.

    Published: 25 Jan 2006
    7.5
    High

    CVE-2006-0402

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in Zoph before 0.5pre1 allows remote attackers to execute arbitrary SQL commands.

    Published: 25 Jan 2006
    4.6
    Medium

    CVE-2006-0224

    Last Modified: 16 Apr 2026

    Buffer overflow in Library of Assorted Spiffy Things (LibAST) 0.6.1 and earlier, as used in Eterm and possibly other software, allows local users to execute arbitrary code as the utmp user via a long -X command line argument (alternative configuration file name).

    Published: 25 Jan 2006
    5
    Medium

    CVE-2006-0321

    Last Modified: 16 Apr 2026

    fetchmail 6.3.0 and other versions before 6.3.2 allows remote attackers to cause a denial of service (crash) via crafted e-mail messages that cause a free of an invalid pointer when fetchmail bounces the message to the originator or local postmaster.

    Published: 24 Jan 2006
    4.9
    Medium

    CVE-2006-0037

    Last Modified: 16 Apr 2026

    ip_nat_pptp in the PPTP NAT helper (netfilter/ip_nat_helper_pptp.c) in Linux kernel 2.6.14, and other versions, allows local users to cause a denial of service (memory corruption or crash) via a crafted outbound packet that causes an incorrect offset to be calculated from pointer arithmetic when non-linear SKBs (socket buffers) are used.

    Published: 23 Jan 2006
    7.8
    High

    CVE-2006-0036

    Last Modified: 16 Apr 2026

    ip_nat_pptp in the PPTP NAT helper (netfilter/ip_nat_helper_pptp.c) in Linux kernel 2.6.14, and other versions, allows remote attackers to cause a denial of service (memory corruption or crash) via an inbound PPTP_IN_CALL_REQUEST packet that causes a null pointer to be used in an offset calculation.

    Published: 23 Jan 2006
    4.3
    Medium

    CVE-2006-0378

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Netrix X-Site Manager allows remote attackers to inject arbitrary web script or HTML via the product_id parameter, as originally demonstrated for a custom mp3players_details.php program. NOTE: the name of the affected program might be installation-dependent, but it has been identified as "product_details.php" by some sources.

    Published: 23 Jan 2006
    5
    Medium

    CVE-2006-0356

    Last Modified: 16 Apr 2026

    Ari Pikivirta Home Ftp Server 1.0.7 allows remote attackers to cause an unspecified denial of service via a long USER command combined with a long PASS command.

    Published: 22 Jan 2006
    5
    Medium

    CVE-2006-0357

    Last Modified: 16 Apr 2026

    Grant Averett Cerberus FTP Server 2.32, and possibly earlier versions, allows remote attackers to cause an unspecified denial of service via a long string that does not contain a valid FTP command.

    Published: 22 Jan 2006
    7.5
    High

    CVE-2006-0358

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in PowerPortal, possibly 1.1 beta through 1.3, allow remote attackers to execute arbitrary SQL commands via the search parameter in (1) index.php and (2) search.php. NOTE: This issue might overlap CVE-2004-0663.2.

    Published: 22 Jan 2006
    7.5
    High

    CVE-2006-0359

    Last Modified: 16 Apr 2026

    Buffer overflow in CounterPath eyeBeam SIP Softphone allows remote attackers to (1) cause a denial of service (device crash) via SIP INVITE commands with a long header field name sent during startup and (2) cause a denial of service (device hang or crash) via SIP INVITE commands with a long header field name sent during a call.

    Published: 22 Jan 2006
    6.4
    Medium

    CVE-2006-0360

    Last Modified: 16 Apr 2026

    MPM SIP HP-180W Wireless IP Phone WE.00.17 allows remote attackers to obtain sensitive information and possibly cause a denial of service via a direct connection to UDP port 9090, which is undocumented and does not require authentication.

    Published: 22 Jan 2006
    4.3
    Medium

    CVE-2006-0366

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Phpclanwebsite (aka PCW) allows remote attackers to inject arbitrary web script or HTML via a javascript URI in a BBCode img tag.

    Published: 22 Jan 2006
    6.5
    Medium

    CVE-2006-0367

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in Cisco CallManager 3.2 and earlier, 3.3 before 3.3(5)SR1, 4.0 before 4.0(2a)SR2c, and 4.1 before 4.1(3)SR2 allows remote authenticated users with read-only administrative privileges to obtain full administrative privileges via a "crafted URL on the CCMAdmin web page."

    Published: 22 Jan 2006
    5
    Medium

    CVE-2006-0371

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in index.php in Noah Medling RCBlog 1.03 allows remote attackers to read arbitrary .txt files, possibly including one that stores the administrator's account name and password, via a .. (dot dot) in the post parameter.

    Published: 22 Jan 2006
    7.5
    High

    CVE-2006-0372

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in config.php in Insane Visions BlogPHP, possibly 1.0, allow remote attackers to execute arbitrary SQL commands via the (1) blogphp_username or (2) blogphp_password parameter in a cookie.

    Published: 22 Jan 2006
    4.3
    Medium

    CVE-2006-0373

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in register.aspx in Douran FollowWeb allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 22 Jan 2006
    5
    Medium

    CVE-2006-0375

    Last Modified: 16 Apr 2026

    Advantage Century Telecommunication (ACT) P202S IP Phone 1.01.21 running firmware 1.1.21 on VxWorks uses a hardcoded Network Time Protocol (NTP) server in Taiwan, which could allow remote attackers to provide false time information, block access to time information, or conduct other attacks.

    Published: 22 Jan 2006
    5.5
    Medium

    CVE-2006-0354

    Last Modified: 16 Apr 2026

    Cisco IOS before 12.3-7-JA2 on Aironet Wireless Access Points (WAP) allows remote authenticated users to cause a denial of service (termination of packet passing or termination of client connections) by sending the management interface a large number of spoofed ARP packets, which creates a large ARP table that exhausts memory, aka Bug ID CSCsc16644.

    Published: 22 Jan 2006
    2.1
    Low

    CVE-2006-0363

    Last Modified: 16 Apr 2026

    The "Remember my Password" feature in MSN Messenger 7.5 stores passwords in an encrypted format under the HKEY_CURRENT_USER\Software\Microsoft\IdentityCRL\Creds registry key, which might allow local users to obtain the original passwords via a program that calls CryptUnprotectData, as demonstrated by the "MSN Password Recovery.exe" program. NOTE: it could be argued that local-only password recovery is inherently insecure because the decryption methods and keys must be stored somewhere on the local system, and are thus inherently accessible with varying degrees of effort. Perhaps this issue should not be included in CVE.

    Published: 22 Jan 2006
    4.3
    Medium

    CVE-2006-0365

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in XMB (aka extreme message board) allows remote attackers to inject arbitrary web script or HTML via JavaScript in the SRC attribute of an IMG element.

    Published: 22 Jan 2006