CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2006-0156

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Foxrum 4.0.4f allows remote attackers to inject arbitrary Javascript via the javascript URI in bbcode url tags in (1) addpost1.php and (2) addtopic1.php.

    Published: 10 Jan 2006
    5
    Medium

    CVE-2006-0157

    Last Modified: 16 Apr 2026

    settings.php in Reamday Enterprises Magic News Plus 1.0.3 allows remote attackers to change the administrator password via a change action that specifies identical values for the passwd and admin_password parameters, then declares the new password string in the new_passwd and confirm_passwd parameters.

    Published: 10 Jan 2006
    7.5
    High

    CVE-2006-0147

    Last Modified: 16 Apr 2026

    Dynamic code evaluation vulnerability in tests/tmssql.php test script in ADOdb for PHP before 4.70, as used in multiple products including (1) Mantis, (2) PostNuke, (3) Moodle, (4) Cacti, (5) Xaraya, (6) PhpOpenChat, possibly (7) MAXdev MD-Pro, and (8) Simplog, allows remote attackers to execute arbitrary PHP functions via the do parameter, which is saved in a variable that is then executed as a function, as demonstrated using phpinfo.

    Published: 9 Jan 2006
    5
    Medium

    CVE-2006-0148

    Last Modified: 16 Apr 2026

    NetSarang Xlpd 2.1 allows remote attackers to cause a denial of service (crash) via a large number of connections from the same IP address.

    Published: 9 Jan 2006
    7.5
    High

    CVE-2006-0144

    Last Modified: 16 Apr 2026

    The proxy server feature in go-pear.php in PHP PEAR 0.2.2, as used in Apache2Triad, allows remote attackers to execute arbitrary PHP code by redirecting go-pear.php to a malicious proxy server that provides a modified version of Tar.php with a malicious extractModify function.

    Published: 9 Jan 2006
    4.6
    Medium

    CVE-2006-0145

    Last Modified: 16 Apr 2026

    The kernfs_xread function in kernfs in NetBSD 1.6 through 2.1, and OpenBSD 3.8, does not properly validate file offsets against negative 32-bit values that occur as a result of truncation, which allows local users to read arbitrary kernel memory and gain privileges via the lseek system call.

    Published: 9 Jan 2006
    7.5
    High

    CVE-2006-0146

    Last Modified: 16 Apr 2026

    The server.php test script in ADOdb for PHP before 4.70, as used in multiple products including (1) Mantis, (2) PostNuke, (3) Moodle, (4) Cacti, (5) Xaraya, (6) PHPOpenChat, (7) MAXdev MD-Pro, and (8) MediaBeez, when the MySQL root password is empty, allows remote attackers to execute arbitrary SQL commands via the sql parameter.

    Published: 9 Jan 2006
    6.1
    Medium

    CVE-2006-0149

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in SimpBook 1.0, with html_enable on (the default), allows remote attackers to inject arbitrary web script or HTML via the message field.

    Published: 9 Jan 2006
    4.6
    Medium

    CVE-2006-0083

    Last Modified: 16 Apr 2026

    Format string vulnerability in the logging code of SMS Server Tools (smstools) 1.14.8 and earlier allows local users to execute arbitrary code via unspecified attack vectors.

    Published: 9 Jan 2006
    7.5
    High

    CVE-2006-0143

    Last Modified: 16 Apr 2026

    Microsoft Windows Graphics Rendering Engine (GRE) allows remote attackers to corrupt memory and cause a denial of service (crash) via a WMF file containing (1) ExtCreateRegion or (2) ExtEscape function calls with arguments with inconsistent lengths.

    Published: 9 Jan 2006
    4.3
    Medium

    CVE-2006-0140

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in post.php in NavBoard V16 Stable(2.6.0) and V17beta2 allows remote attackers to inject arbitrary web script or HTML via the (1) b, (2) textlarge, and (3) url bbcode tags.

    Published: 9 Jan 2006
    5
    Medium

    CVE-2006-0141

    Last Modified: 16 Apr 2026

    Qualcomm Eudora Internet Mail Server (EIMS) before 3.2.8 allows remote attackers to cause a denial of service (crash) via (1) malformed NTLM authentication requests, or a malformed (2) Incoming Mail X or (3) Temporary Mail file.

    Published: 9 Jan 2006
    4.3
    Medium

    CVE-2006-0142

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in andromeda.php in Andromeda 1.9.3.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the s parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 9 Jan 2006
    7.5
    High

    CVE-2006-0150

    Last Modified: 16 Apr 2026

    Multiple format string vulnerabilities in the auth_ldap_log_reason function in Apache auth_ldap 1.6.0 and earlier allows remote attackers to execute arbitrary code via various vectors, including the username.

    Published: 9 Jan 2006
    5
    Medium

    CVE-2006-0139

    Last Modified: 16 Apr 2026

    The send-private-message functionality (send-private-message.asp) in PD9 Software MegaBBS 2.1 allows remote attackers to read private messages of other users via a modified replyid parameter.

    Published: 9 Jan 2006
    5
    Medium

    CVE-2006-0114

    Last Modified: 16 Apr 2026

    The vCard functions in Joomla! 1.0.5 use predictable sequential IDs for vcards and do not restrict access to them, which allows remote attackers to obtain valid e-mail addresses to conduct spam attacks by modifying the contact_id parameter to index2.php.

    Published: 9 Jan 2006
    7.5
    High

    CVE-2006-0115

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in OnePlug Solutions OnePlug CMS allow remote attackers to execute arbitrary SQL commands via the (1) Press_Release_ID parameter in press/details.asp, (2) Service_ID parameter in services/details.asp, and (3) Product_ID parameter in products/details.asp.

    Published: 9 Jan 2006
    5
    Medium

    CVE-2006-0116

    Last Modified: 16 Apr 2026

    Cross-site scripting vulnerability search.inetstore in iNETstore Ebusiness Software 2.0 allows remote attackers to inject arbitrary web script or HTML via the searchterm parameter.

    Published: 9 Jan 2006
    5
    Medium

    CVE-2006-0117

    Last Modified: 16 Apr 2026

    Buffer overflow in IBM Lotus Notes and Domino Server before 6.5.5 allows attackers to cause a denial of service (router crash or hang) via unspecified vectors involving "CD to MIME Conversion".

    Published: 9 Jan 2006
    7.8
    High

    CVE-2006-0121

    Last Modified: 16 Apr 2026

    Multiple memory leaks in IBM Lotus Notes and Domino Server before 6.5.5 allow attackers to cause a denial of service (memory consumption and crash) via unknown vectors related to (1) unspecified vectors during the SSL handshake (SPR# MKIN67MQVW), (2) the stash file during the SSL handshake (SPR# MKIN693QUT), and possibly other vectors. NOTE: due to insufficient information in the original vendor advisory, it is not clear whether there is an attacker role in other memory leaks that are specified in the advisory.

    Published: 9 Jan 2006
    7.5
    High

    CVE-2006-0123

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in ADN Forum 1.0b allow remote attackers to execute arbitrary SQL commands via the (1) fid parameter in index.php and (2) pagid parameter in verpag.php, and possibly other vectors.

    Published: 9 Jan 2006
    4.3
    Medium

    CVE-2006-0124

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in crear.php in ADN Forum 1.0b allows remote attackers to inject arbitrary web script or HTML via the titulo parameter, which is used by the "Topic name" field.

    Published: 9 Jan 2006
    5
    Medium

    CVE-2006-0131

    Last Modified: 16 Apr 2026

    boastMachine 3.1 allows remote attackers to obtain sensitive information via a direct request to (1) footer.php and (2) side_menu.php, which reveals the path in an error message.

    Published: 9 Jan 2006
    5
    Medium

    CVE-2006-0132

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in webftp.php in SysCP WebFTP 1.2.6 and possibly earlier allows remote attackers to include and execute arbitrary local PHP scripts, and possibly read other types of files, via a .. (dot dot) and a trailing null in the webftp_language parameter.

    Published: 9 Jan 2006
    5
    Medium

    CVE-2006-0138

    Last Modified: 16 Apr 2026

    aMSN (aka Alvaro's Messenger) allows remote attackers to cause a denial of service (client hang and termination of client's instant-messaging session) by repeatedly sending crafted data to the default file-transfer port (TCP 6891).

    Published: 9 Jan 2006
    5
    Medium

    CVE-2006-0125

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in appserv/main.php in AppServ 2.4.5 allows remote attackers to include arbitrary files via the appserv_root parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. There is not enough detail from these third party sources to know whether this is directory traversal, remote file include, or another issue.

    Published: 9 Jan 2006
    4
    Medium

    CVE-2006-0127

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in the IMAP service of Rockliffe MailSite before 6.1.22.1 allows remote authenticated users to rename the folders of other users via a .. (dot dot) in the RENAME command.

    Published: 9 Jan 2006
    5
    Medium

    CVE-2006-0129

    Last Modified: 16 Apr 2026

    Mail Management Agent (MAILMA) (aka Mail Management Server) in Rockliffe MailSite 7.0.3.1 and earlier generates different responses depending on whether or not a username is valid, which allows remote attackers to enumerate valid usernames via user requests to TCP port 106.

    Published: 9 Jan 2006
    7.5
    High

    CVE-2006-0130

    Last Modified: 16 Apr 2026

    Mail Management Agent (MAILMA) (aka Mail Management Server) in Rockliffe MailSite 7.0.3.1 and earlier allows remote attackers to attempt authentication with an unlimited number of user account names and passwords without denying connections, limiting the rate of connections, or locking out an account.

    Published: 9 Jan 2006
    10
    Critical

    CVE-2006-0119

    Last Modified: 16 Apr 2026

    Multiple unspecified vulnerabilities in IBM Lotus Notes and Domino Server before 6.5.5 have unknown impact and attack vectors, due to "potential security issues" as identified by SPR numbers (1) GPKS6C9J67 in Agents, (2) JGAN6B6TZ3 and (3) KSPR699NBP in the Router, (4) GPKS5YQGPT in Security, or (5) HSAO6BNL6Y in the Web Server. NOTE: vector 3 is related to an issue in NROUTER in IBM Lotus Notes and Domino Server before 6.5.4 FP1, 6.5.5, and 7.0, which allows remote attackers to cause a denial of service (CPU consumption) via a crafted vCal meeting request sent via SMTP (aka SPR# KSPR699NBP).

    Published: 9 Jan 2006
    5
    Medium

    CVE-2006-0120

    Last Modified: 16 Apr 2026

    Multiple unspecified vulnerabilities in IBM Lotus Notes and Domino Server before 6.5.5 allow attackers to cause a denial of service (application crash) via multiple vectors, involving (1) a malformed message sent to an "Out Of Office" agent (SPR LPEE6DMQWJ), (2) the compact command (RTIN5U2SAJ), (3) malformed bitmap images (MYAA6FH5HW), (4) the "Delete Attachment" action (YPHG6844LD), (5) parsing certificates from a remote Certificate Table (AELE6DZFJW), and (6) creating a SSL key ring with the Domino Administration client (NSUA4FQPTN).

    Published: 9 Jan 2006
    10
    Critical

    CVE-2006-0128

    Last Modified: 16 Apr 2026

    Buffer overflow in the IMAP service of Rockliffe MailSite before 6.1.22.1 allows remote attackers to have an unknown impact via unknown attack vectors.

    Published: 9 Jan 2006
    3.6
    Low

    CVE-2006-0133

    Last Modified: 16 Apr 2026

    Multiple directory traversal vulnerabilities in AIX 5.3 ML03 allow local users to determine the existence of files and read partial contents of certain files via a .. (dot dot) in the argument to (1) getCommand.new (aka getCommand) and (2) getShell, a different vulnerability than CVE-2005-4273.

    Published: 9 Jan 2006
    7.5
    High

    CVE-2006-0135

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in login.php in TheWebForum (twf) 1.2.1 allows remote attackers to execute arbitrary SQL commands and bypass login authentication via the username parameter (aka the u variable).

    Published: 9 Jan 2006
    7.5
    High

    CVE-2006-0137

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in linkcategory.php in Phanatic Softwares Chimera Web Portal System 0.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 9 Jan 2006
    5
    Medium

    CVE-2006-0118

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in IBM Lotus Notes and Domino Server before 6.5.5, when running on AIX, allows attackers to cause a denial of service (deep recursion leading to stack overflow and crash) via long formulas.

    Published: 9 Jan 2006
    4.3
    Medium

    CVE-2006-0122

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Public/Index.asp in Aquifer CMS allows remote attackers to inject arbitrary web script or HTML via the Keyword parameter.

    Published: 9 Jan 2006
    4.6
    Medium

    CVE-2006-0126

    Last Modified: 16 Apr 2026

    rxvt-unicode before 6.3, on certain platforms that use openpty and non-Unix pty devices such as Linux and most BSD platforms, does not maintain the intended permissions of tty devices, which allows local users to gain read and write access to the devices.

    Published: 9 Jan 2006
    4.3
    Medium

    CVE-2006-0134

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in register.php in TheWebForum (twf) 1.2.1 allows remote attackers to inject arbitrary web script or HTML via the www parameter.

    Published: 9 Jan 2006
    4.3
    Medium

    CVE-2006-0136

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in the guestbook module in modules.php in Phanatic Softwares Chimera Web Portal System 0.2 allow remote attackers to inject arbitrary web script or HTML via the (1) comment_poster, (2) comment_poster_email, (3) comment_poster_homepage, and (4) comment_text parameters.

    Published: 9 Jan 2006
    6.6
    Medium

    CVE-2006-6103

    Last Modified: 23 Apr 2026

    Integer overflow in the ProcDbeSwapBuffers function in the DBE extension for X.Org 6.8.2, 6.9.0, 7.0, and 7.1, and XFree86 X server, allows local users to execute arbitrary code via a crafted X protocol request that triggers memory corruption during processing of unspecified data structures.

    Published: 9 Jan 2006
    6.6
    Medium

    CVE-2006-6101

    Last Modified: 23 Apr 2026

    Integer overflow in the ProcRenderAddGlyphs function in the Render extension for X.Org 6.8.2, 6.9.0, 7.0, and 7.1, and XFree86 X server, allows local users to execute arbitrary code via a crafted X protocol request that triggers memory corruption during processing of glyph management data structures.

    Published: 9 Jan 2006
    4.1
    Medium

    CVE-2006-7108

    Last Modified: 23 Apr 2026

    login in util-linux-2.12a skips pam_acct_mgmt and chauth_tok when authentication is skipped, such as when a Kerberos krlogin session has been established, which might allow users to bypass intended access policies that would be enforced by pam_acct_mgmt and chauth_tok.

    Published: 9 Jan 2006
    10
    Critical

    CVE-2006-6102

    Last Modified: 23 Apr 2026

    Integer overflow in the ProcDbeGetVisualInfo function in the DBE extension for X.Org 6.8.2, 6.9.0, 7.0, and 7.1, and XFree86 X server, allows local users to execute arbitrary code via a crafted X protocol request that triggers memory corruption during processing of unspecified data structures.

    Published: 9 Jan 2006
    4.3
    Medium

    CVE-2006-0112

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in Enhanced Simple PHP Gallery 1.7 allows remote attackers to inject arbitrary web script or HTML via the dir parameter.

    Published: 7 Jan 2006
    5
    Medium

    CVE-2006-0113

    Last Modified: 16 Apr 2026

    Enhanced Simple PHP Gallery 1.7 allows remote attackers to obtain the full path of the application via a direct request to sp_helper_functions.php, which leaks the pathname in an error message.

    Published: 7 Jan 2006
    7.5
    High

    CVE-2006-0108

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in mcl_login.asp in Timecan CMS allows remote attackers to execute arbitrary SQL commands via the email parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. Due to the unavailability of the original source, it cannot be determined if this is the same issue as identified by CVE-2006-0107.

    Published: 7 Jan 2006
    5
    Medium

    CVE-2006-0109

    Last Modified: 16 Apr 2026

    Cross-site scripting vulnerability in category.php in Modular Merchant Shopping Cart allows remote attackers to inject arbitrary web script or HTML via the cat parameter.

    Published: 7 Jan 2006
    4.3
    Medium

    CVE-2006-0110

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in escribir.php in Foro Domus 2.10 allows remote attackers to inject arbitrary web script via the email parameter.

    Published: 7 Jan 2006
    5
    Medium

    CVE-2006-0111

    Last Modified: 16 Apr 2026

    Cross-site scripting vulnerability in index.php in Boxcar Media Shopping Cart allows remote attackers to inject arbitrary web script or HTML via the (1) parent or (2) pg parameter.

    Published: 7 Jan 2006