7.5
    High

    CVE-2006-7107

    Last Modified: 22 Oct 2016

    PHP remote file inclusion vulnerability in upgrade.php in Coalescent Systems freePBX 2.1.3 allows remote attackers to execute arbitrary PHP code via a URL in the amp_conf[AMPWEBROOT] parameter.

    Source:Mehmet Ince
    Published:3 Mar 2007
    7.5
    High

    CVE-2006-7106

    Last Modified: 5 Dec 2016

    PHP remote file inclusion vulnerability in config.inc.php3 in Power Phlogger 2.0.9 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the rel_path parameter.

    Source:x_w0x
    Published:3 Mar 2007
    7.5
    High

    CVE-2006-7104

    Last Modified: 9 Oct 2013

    PHP remote file inclusion vulnerability in htmltemplate.php in the Chad Auld MOStlyContent Editor (MOStlyCE) as created on May 2006, a component for Mambo 4.5.4, allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

    Source:The_BeKiR
    Published:3 Mar 2007
    7.5
    High

    CVE-2006-7102

    Last Modified: 12 Sept 2016

    Multiple PHP remote file inclusion vulnerabilities in phpBurningPortal quiz-modul 1.0.1, and possibly earlier, allow remote attackers to execute arbitrary PHP code via a URL in the lang_path parameter to (1) quest_delete.php, (2) quest_edit.php, or (3) quest_news.php.

    Source:r0ut3r
    Published:3 Mar 2007
    7.5
    High

    CVE-2006-7101

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in admin.php in PHPWind 5.0.1 and earlier allows remote attackers to execute arbitrary SQL commands via the AdminUser cookie.

    Source:rgod
    Published:3 Mar 2007
    6.8
    Medium

    CVE-2006-7100

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in includes/functions_mod_user.php in phpBB Insert User 0.1.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.

    Source:Nima Salehi
    Published:3 Mar 2007
    5
    Medium

    CVE-2006-7099

    Last Modified: 18 Nov 2013

    Directory traversal vulnerability in index.php in SolarPay allows remote attackers to read certain files via a .. (dot dot) in the read parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Hasadya Raed
    Published:3 Mar 2007
    6.6
    Medium

    CVE-2006-7098

    Last Modified: 27 Sept 2016

    The Debian GNU/Linux 033_-F_NO_SETSID patch for the Apache HTTP Server 1.3.34-4 does not properly disassociate httpd from a controlling tty when httpd is started interactively, which allows local users to gain privileges to that tty via a CGI program that calls the TIOCSTI ioctl.

    Source:Kristian Hermansen
    Published:3 Mar 2007
    7.5
    High

    CVE-2006-7091

    Last Modified: 8 Oct 2013

    PHP remote file inclusion vulnerability in config.php in phpht Topsites FREE 1.022b allows remote attackers to execute arbitrary PHP code via a URL in the fullpath parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Le CoPrA
    Published:28 Feb 2007
    4.3
    Medium

    CVE-2006-7086

    Last Modified: 18 Oct 2013

    The (1) dlback.php and (2) dlback.cgi scripts in Hot Links allow remote attackers to obtain sensitive information and download the database via a direct request with a modified dl parameter.

    Source:hack2prison
    Published:28 Feb 2007
    7.5
    High

    CVE-2006-7081

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in PhpNews 1.0 allow remote attackers to execute arbitrary PHP code via the Include parameter to (1) Include/lib.inc.php3 and (2) Include/variables.php3.

    Source:the master
    Published:27 Feb 2007
    4.3
    Medium

    CVE-2006-7080

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in the avatar upload feature in exV2 2.0.4.3 and earlier allows remote attackers to delete arbitrary files via ".." sequences in the old_avatar parameter.

    Source:rgod
    Published:27 Feb 2007
    9.8
    Critical

    CVE-2006-7079

    Last Modified: 23 Apr 2026

    Variable extraction vulnerability in include/common.php in exV2 2.0.4.3 and earlier allows remote attackers to overwrite arbitrary program variables and conduct directory traversal attacks to execute arbitrary code by modifying the $xoopsOption['pagetype'] variable.

    Source:rgod
    Published:27 Feb 2007
    4.3
    Medium

    CVE-2006-7072

    Last Modified: 15 Sept 2013

    Cross-site scripting (XSS) vulnerability in GeoClassifieds Enterprise 2.0.5.2 and earlier allows remote attackers to inject arbitrary web script and HTML via the (1) b[username] and (2) c parameters to (a) index.php, the b[username] parameter to (b) admin/index.php, and (3) c[phone] parameter to register.php.

    Source:EllipSiS Security
    Published:27 Feb 2007
    7.5
    High

    CVE-2006-7071

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in classes/class_session.php in Invision Power Board (IPB) 2.1 up to 2.1.6 allows remote attackers to execute arbitrary SQL commands via the CLIENT_IP parameter.

    Source:RusH
    Published:27 Feb 2007
    7.5
    High

    CVE-2006-7070

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in manager/media/ibrowser/scripts/rfiles.php in Etomite CMS 0.6.1 and earlier allows remote attackers to upload and execute arbitrary files via an nfile[] parameter with a filename that contains a .php extension followed by a valid image extension such as .gif or .jpg, then calling the rename function.

    Source:rgod
    Published:27 Feb 2007
    7.5
    High

    CVE-2006-7069

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in smarty_config.php in Socketwiz Bookmarks 2.0 and earlier allows remote attackers to execute arbitrary PHP code via the root_dir parameter.

    Source:Kacper
    Published:27 Feb 2007
    7.5
    High

    CVE-2006-7068

    Last Modified: 9 Sept 2016

    PHP remote file inclusion vulnerability in CliServ Web Community 0.65 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the cl_headers parameter to (1) menu.php3 and (2) login.php3.

    Source:Kacper
    Published:27 Feb 2007
    7.1
    High

    CVE-2006-7066

    Last Modified: 15 Sept 2013

    Microsoft Internet Explorer 6 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) by creating an object inside an iframe, deleting the frame by setting its location.href to about:blank, then accessing a property of the object within the deleted frame, which triggers a NULL pointer dereference. NOTE: it was later reported that 7.0.6000.16473 and earlier are also affected.

    Source:hdm
    Published:27 Feb 2007
    5
    Medium

    CVE-2006-7065

    Last Modified: 24 Sept 2013

    Microsoft Internet Explorer allows remote attackers to cause a denial of service (crash) via an IFRAME with a certain XML file and XSL stylesheet that triggers a crash in mshtml.dll when a refresh is called, probably a null pointer dereference.

    Source:Thomas Pollet
    Published:27 Feb 2007
    7.5
    High

    CVE-2006-7063

    Last Modified: 29 Jul 2016

    Directory traversal vulnerability in profile.php in TinyPHPforum 3.6 and earlier allows remote attackers to include and execute arbitrary files via ".." sequences in the uname parameter.

    Source:Hessam-x
    Published:24 Feb 2007
    6.8
    Medium

    CVE-2006-7055

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in index.php in TotalCalendar 2.30 and earlier allows remote attackers to execute arbitrary code via a URL in the inc_dir parameter, a different vector than CVE-2006-1922.

    Source:Aesthetico
    Published:24 Feb 2007
    10
    Critical

    CVE-2006-7052

    Last Modified: 3 Sept 2013

    Multiple PHP remote file inclusion vulnerabilities in DotWidget For Articles (dotwidgeta) 0.2 allow remote attackers to execute arbitrary code via a URL in the (1) file_path parameter to (a) index.php, (b) showcatpicks.php, and (c) showarticle.php; and the (2) admin_header_file and (3) admin_footer_file parameters to (d) admin/authors.php, (e) admin/index.php, (f) admin/categories.php, (g) admin/editconfig.php, and (h) admin/articles.php.

    Source:SwEET-DeViL
    Published:24 Feb 2007
    4.9
    Medium

    CVE-2006-7051

    Last Modified: 4 Sept 2016

    The sys_timer_create function in posix-timers.c for Linux kernel 2.6.x allows local users to cause a denial of service (memory consumption) and possibly bypass memory limits or cause other processes to be killed by creating a large number of posix timers, which are allocated in kernel memory but are not treated as part of the process' memory.

    Source:fingerout
    Published:24 Feb 2007
    7.5
    High

    CVE-2006-7048

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Claroline 1.7.5 allow remote attackers to execute arbitrary PHP code via a URL in the (1) clarolineRepositorySys parameter to (a) atutor.inc.php (b) db-generic.inc.php (c) docebo.inc.php (d) dokeos.1.6.inc.php (e) dokeos.inc.php (f) ganesha.inc.php (g) mambo.inc.php (h) moodle.inc.php (i) phpnuke.inc.php (j) postnuke.inc.php and (k) spip.inc.php in claroline/auth/extauth/drivers/; (2) includePath parameter in mambo.inc.php, postnuke.inc.php, and (l) inc/lib/event/init_event_manager.inc.php; and (3) rootSys parameter in (m) inc/lib/export_exe_tracking.class.php, a different set of vectors than CVE-2006-2284.

    Source:beford
    Published:24 Feb 2007
    6.8
    Medium

    CVE-2006-7042

    Last Modified: 28 Aug 2013

    Cross-site scripting (XSS) vulnerability in directory/index.php in Chipmunk directory allows remote attackers to inject arbitrary web script or HTML via the start parameter.

    Source:black-code
    Published:24 Feb 2007
    10
    Critical

    CVE-2006-7032

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in phpbb/getmsg.php in FlashBB 1.1.5 and earlier allows remote attackers to execute arbitrary code via a URL in the phpbb_root_path parameter.

    Source:h4ntu
    Published:23 Feb 2007
    6.5
    Medium

    CVE-2006-7031

    Last Modified: 20 Jul 2016

    Microsoft Internet Explorer 6.0.2900 SP2 and earlier allows remote attackers to cause a denial of service (crash) via a table element with a CSS attribute that sets the position, which triggers an "unhandled exception" in mshtml.dll.

    Source:seven
    Published:23 Feb 2007
    6.8
    Medium

    CVE-2006-7026

    Last Modified: 20 Jul 2016

    PHP remote file inclusion vulnerability in sources/join.php in Aardvark Topsites PHP 4.2.2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the CONFIG[path] parameter, a different vector than CVE-2006-2149.

    Source:[Oo]
    Published:23 Feb 2007
    7.5
    High

    CVE-2006-7024

    Last Modified: 16 Aug 2016

    Multiple PHP remote file inclusion vulnerabilities in Harpia CMS 1.0.5 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the (1) func_prog parameter to (a) preload.php and (b) index.php; (2) header_prog parameter to (c) missing.php and (d) email.php, (e) files.php, (f) headlines.php, (g) search.php, (h) topics.php, and (i) users.php in _mods/; (3) theme_root parameter to (j) footer.php, (k) header.php, (l) pfooter.php, and (m) pheader.php in _inc; (4) mod_root parameter to _inc/header.php; and the (5) mod_dir and (6) php_ext parameters to (n) _inc/web_statsConfig.php.

    Source:Kw3[R]Ln
    Published:15 Feb 2007
    7.5
    High

    CVE-2006-7021

    Last Modified: 24 Aug 2016

    PHP remote file inclusion vulnerability in manager/tools/link/dbinstall.php in Plume CMS 1.1.3 allows remote attackers to execute arbitrary PHP code via a URL in the _PX_config[manager_path] parameter.

    Source:Hamid Ebadi
    Published:15 Feb 2007
    7.5
    High

    CVE-2006-7017

    Last Modified: 27 Oct 2016

    Multiple PHP remote file inclusion vulnerabilities in Indexu 5.0.1 allow remote attackers to execute arbitrary PHP code via a URL in the admin_template_path parameter to admin/ scripts (1) app_change_email.php, (2) app_change_pwd.php, (3) app_mod_rewrite.php, (4) app_page_caching.php, (5) app_setup.php, (6) cat_add.php, (7) cat_delete.php, (8) cat_edit.php, (9) cat_path_update.php, (10) cat_search.php, (11) cat_struc.php, (12) cat_view.php, (13) cat_view_hidden.php, (14) cat_view_hierarchy.php, (15) cat_view_registered_only.php, (16) checkurl_web.php, (17) db_alter.php, (18) db_alter_change.php, (19) db_backup.php, (20) db_export.php, (21) db_import.php, (22) editor_add.php, (23) editor_delete.php, (24) editor_validate.php, (25) head.php, (26) index.php, (27) inv_config.php, (28) inv_config_payment.php, (29) inv_create.php, (30) inv_delete.php, (31) inv_edit.php, (32) inv_markpaid.php, (33) inv_markunpaid.php, (34) inv_overdue.php, (35) inv_paid.php, (36) inv_send.php, (37) inv_unpaid.php, (38) lang_modify.php, (39) link_add.php, (40) link_bad.php, (41) link_bad_delete.php, (42) link_checkurl.php, (43) link_delete.php, (44) link_duplicate.php, (45) link_edit.php, (46) link_premium_listing.php, (47) link_premium_sponsored.php, (48) link_search.php, (49) link_sponsored_listing.php, (50) link_validate.php, (51) link_validate_edit.php, (52) link_view.php, (53) log_search.php, (54) mail_modify.php, (55) menu.php, (56) message_create.php, (57) message_delete.php, (58) message_edit.php, (59) message_send.php, (60) message_subscriber.php, (61) message_view.php, (62) review_validate.php, (63) review_validate_edit.php, (64) summary.php, (65) template_active.php, (66) template_add_custom.php, (67) template_delete.php, (68) template_delete_file.php, (69) template_duplicate.php, (70) template_export.php, (71) template_import.php, (72) template_manager.php, (73) template_modify.php, (74) template_modify_file.php, (75) template_rename.php, (76) user_add.php, (77) user_delete.php, (78) user_edit.php, (79) user_search.php, and (80) whos.php.

    Source:CrAsh_oVeR_rIdE
    Published:15 Feb 2007
    10
    Critical

    CVE-2006-7012

    Last Modified: 23 Apr 2026

    scart.cgi in SCart 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the page parameter of a show_text action.

    Source:K-159
    Published:15 Feb 2007
    7.8
    High

    CVE-2006-7007

    Last Modified: 23 Apr 2026

    Buffer overflow in Tiny FTPd 1.4 and earlier allows remote attackers to cause a denial of service (daemon crash) via a long USER command, a different vector than CVE-2000-0133.

    Source:[Oo]
    Published:12 Feb 2007
    7.5
    High

    CVE-2006-7005

    Last Modified: 25 Aug 2013

    SQL injection vulnerability in item.php in PSY Auction allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Luny
    Published:12 Feb 2007
    6.8
    Medium

    CVE-2006-7004

    Last Modified: 25 Aug 2013

    Cross-site scripting (XSS) vulnerability in email_request.php in PSY Auction allows remote attackers to inject arbitrary web script or HTML via the user_id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Luny
    Published:12 Feb 2007
    6
    Medium

    CVE-2006-6995

    Last Modified: 4 Sept 2013

    mycontacts.php in V3 Chat allows remote authenticated users to gain privileges as other users via a modified membername parameter.

    Source:Luny
    Published:12 Feb 2007
    7.5
    High

    CVE-2006-6976

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in centipaid_class.php in CentiPaid 1.4.2 and earlier allows remote attackers to execute arbitrary code via a URL in the absolute_path parameter.

    Source:Kw3[R]Ln
    Published:8 Feb 2007
    7.5
    High

    CVE-2006-6966

    Last Modified: 30 Jan 2017

    phpGraphy before 0.9.13a does not properly unset variables when the input data includes a numeric parameter with a value matching an alphanumeric parameter's hash value, which allows remote attackers to execute arbitrary PHP code by uploading a config.php file via the pictures[] parameter to index.php. NOTE: it could be argued that this vulnerability is due to a bug in the unset PHP command (CVE-2006-3017) and the proper fix should be in PHP; if so, then this should not be treated as a vulnerability in phpGraphy.

    Source:rgod
    Published:4 Feb 2007
    6.8
    Medium

    CVE-2006-6962

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in rsgallery2.html.php in the RS Gallery2 component (com_rsgallery2) 1.11.2 for Joomla! allows attackers to execute arbitrary PHP code via the mosConfig_absolute_path parameter. NOTE: this issue may overlap CVE-2006-5047.

    Source:marriottvn
    Published:29 Jan 2007
    7.5
    High

    CVE-2006-6958

    Last Modified: 5 Sept 2013

    Multiple PHP remote file inclusion vulnerabilities in phpBlueDragon 2.9.1 allow remote attackers to execute arbitrary PHP code via a URL in the vsDragonRootPath parameter to (1) team_admin.php, (2) rss_admin.php, (3) manual_admin.php, and (4) forum_admin.php in includes/root_modules/, a different set of vectors than CVE-2006-3076.

    Source:Shm
    Published:29 Jan 2007
    7.2
    High

    CVE-2006-6952

    Last Modified: 20 Oct 2013

    Computer Associates Host Intrusion Prevention System (HIPS) drivers (1) Core kmxstart.sys 6.5.4.31 and (2) Firewall kmxfw.sys 6.5.4.10 allow local users to gain privileges by using certain privileged IOCTLs to modify callback function pointers.

    Source:Ruben Santamarta
    Published:24 Jan 2007
    6.8
    Medium

    CVE-2006-6951

    Last Modified: 19 Oct 2013

    Cross-site scripting (XSS) vulnerability in blog.php in OdysseusBlog allows remote attackers to inject arbitrary web script or HTML via the page parameter.

    Source:the_Edit0r
    Published:23 Jan 2007
    5
    Medium

    CVE-2006-6943

    Last Modified: 19 Oct 2013

    PhpMyAdmin before 2.9.1.1 allows remote attackers to obtain the full server path via direct requests to (a) scripts/check_lang.php and (b) themes/darkblue_orange/layout.inc.php; and via the (1) lang[], (2) target[], (3) db[], (4) goto[], (5) table[], and (6) tbl_group[] array arguments to (c) index.php, and the (7) back[] argument to (d) sql.php; and an invalid (8) sort_by parameter to (e) server_databases.php and (9) db parameter to (f) db_printview.php.

    Source:laurent gaffie
    Published:19 Jan 2007
    6.8
    Medium

    CVE-2006-6942

    Last Modified: 19 Oct 2013

    Multiple cross-site scripting (XSS) vulnerabilities in PhpMyAdmin before 2.9.1.1 allow remote attackers to inject arbitrary HTML or web script via (1) a comment for a table name, as exploited through (a) db_operations.php, (2) the db parameter to (b) db_create.php, (3) the newname parameter to db_operations.php, the (4) query_history_latest, (5) query_history_latest_db, and (6) querydisplay_tab parameters to (c) querywindow.php, and (7) the pos parameter to (d) sql.php.

    Source:laurent gaffie
    Published:19 Jan 2007
    5
    Medium

    CVE-2006-6941

    Last Modified: 23 Apr 2026

    index.php in FreeWebshop 2.2.2 and earlier allows remote attackers to obtain sensitive information via an invalid action parameter in an info operation, which discloses the path in an error message.

    Source:Spiked
    Published:19 Jan 2007
    5
    Medium

    CVE-2006-6938

    Last Modified: 3 Jan 2017

    Directory traversal vulnerability in includes/common.php in NitroTech 0.0.3a, as distributed before 2006, allows remote attackers to include arbitrary files via ".." sequences in the root parameter.

    Source:Kacper
    Published:17 Jan 2007
    7.5
    High

    CVE-2006-6937

    Last Modified: 19 Oct 2013

    SQL injection vulnerability in displaypic.asp in Xtreme ASP Photo Gallery allows remote attackers to inject arbitrary SQL commands via the sortorder parameter.

    Source:Aria-Security Team
    Published:17 Jan 2007
    6.8
    Medium

    CVE-2006-6936

    Last Modified: 19 Oct 2013

    Cross-site scripting (XSS) vulnerability in Xtreme ASP Photo Gallery allows remote attackers to inject arbitrary HTML or web script via (1) the catname parameter to displaypic.asp or (2) the search field. NOTE: vector 1 likely overlaps CVE-2006-3032.

    Source:Aria-Security Team
    Published:17 Jan 2007
    7.5
    High

    CVE-2006-6932

    Last Modified: 19 Oct 2013

    Multiple SQL injection vulnerabilities in Image Gallery with Access Database allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to (a) dispimage.asp, or the (2) order or (3) page parameter to (b) default.asp.

    Source:Aria-Security Team
    Published:16 Jan 2007