7.5
    High

    CVE-2006-3475

    Last Modified: 8 Sept 2013

    Multiple PHP remote file inclusion vulnerabilities in free QBoard 1.1 allow remote attackers to execute arbitrary PHP code via a URL in the qb_path parameter to (1) index.php, (2) about.php, (3) contact.php, (4) delete.php, (5) faq.php, (6) features.php or (7) history.php, a different set of vectors than CVE-2006-2998.

    Source:CrAsh_oVeR_rIdE
    Published:10 Jul 2006
    7.5
    High

    CVE-2006-3474

    Last Modified: 6 Sept 2013

    Multiple SQL injection vulnerabilities in Belchior Foundry vCard PRO allow remote attackers to execute arbitrary SQL commands via the (1) cat_id parameter to (a) gbrowse.php, (2) card_id parameter to (b) rating.php and (c) create.php, and the (3) event_id parameter to (d) search.php.

    Source:CrAzY CrAcKeR
    Published:10 Jul 2006
    5
    Medium

    CVE-2006-3472

    Last Modified: 9 Sept 2013

    Microsoft Internet Explorer 6.0 and 6.0 SP1 allows remote attackers to cause a denial of service via an HTML page with an A tag containing a long title attribute. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:jsz
    Published:10 Jul 2006
    5
    Medium

    CVE-2006-3471

    Last Modified: 24 Aug 2016

    Microsoft Internet Explorer 6 on Windows XP allows remote attackers to cause a denial of service (crash) via a table with a frameset as a child, which triggers a null dereference, as demonstrated using the appendChild method.

    Source:Aviv Raff
    Published:10 Jul 2006
    4
    Medium

    CVE-2006-3469

    Last Modified: 12 Sept 2013

    Format string vulnerability in time.cc in MySQL Server 4.1 before 4.1.21 and 5.0 before 1 April 2006 allows remote authenticated users to cause a denial of service (crash) via a format string instead of a date as the first parameter to the date_format function, which is later used in a formatted print call to display the error message.

    Source:Christian Hammers
    Published:27 Jun 2006
    7.8
    High

    CVE-2006-3468

    Last Modified: 24 Sept 2013

    Linux kernel 2.6.x, when using both NFS and EXT3, allows remote attackers to cause a denial of service (file system panic) via a crafted UDP packet with a V2 lookup procedure that specifies a bad file handle (inode number), which triggers an error and causes an exported directory to be remounted read-only.

    Source:James McKenzie
    Published:17 Jul 2006
    7.5
    High

    CVE-2006-3459

    Last Modified: 6 Mar 2011

    Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and other products, allow context-dependent attackers to execute arbitrary code or cause a denial of service via unspecified vectors, including a large tdir_count value in the TIFFFetchShortPair function in tif_dirread.c.

    Source:Metasploit
    Published:1 Aug 2006
    7.5
    High

    CVE-2006-3444

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in the kernel in Microsoft Windows 2000 SP4, probably a buffer overflow, allows local users to obtain privileges via unspecified vectors involving an "unchecked buffer."

    Source:SoBeIt
    Published:9 Aug 2006
    10
    Critical

    CVE-2006-3441

    Last Modified: 16 Apr 2026

    Buffer overflow in the DNS Client service in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary code via a crafted record response. NOTE: while MS06-041 implies that there is a single issue, there are multiple vectors, and likely multiple vulnerabilities, related to (1) a heap-based buffer overflow in a DNS server response to the client, (2) a DNS server response with malformed ATMA records, and (3) a length miscalculation in TXT, HINFO, X25, and ISDN records.

    Source:Winny Thomas
    Published:9 Aug 2006
    10
    Critical

    CVE-2006-3440

    Last Modified: 16 Apr 2026

    Buffer overflow in the Winsock API in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary code via unknown vectors, aka "Winsock Hostname Vulnerability."

    Source:Winny Thomas
    Published:9 Aug 2006
    10
    Critical

    CVE-2006-3439

    Last Modified: 7 Mar 2011

    Buffer overflow in the Server Service in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allows remote attackers, including anonymous users, to execute arbitrary code via a crafted RPC message, a different vulnerability than CVE-2006-1314.

    Source:Metasploit
    Published:9 Aug 2006
    7.5
    High

    CVE-2006-3431

    Last Modified: 17 Sept 2013

    Buffer overflow in certain Asian language versions of Microsoft Excel might allow user-assisted attackers to execute arbitrary code via a crafted STYLE record in a spreadsheet that triggers the overflow when the user attempts to repair the document or selects the "Style" option, as demonstrated by nanika.xls. NOTE: Microsoft has confirmed to CVE via e-mail that this is different than the other Excel vulnerabilities announced before 20060707, including CVE-2006-3059 and CVE-2006-3086.

    Source:Nanika
    Published:7 Jul 2006
    5
    Medium

    CVE-2006-3427

    Last Modified: 9 Sept 2013

    Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (crash) by declaring the sourceURL attribute on an uninitialized DirectAnimation.StructuredGraphicsControl ActiveX Object, which triggers a null dereference.

    Source:hdm
    Published:7 Jul 2006
    7.5
    High

    CVE-2006-3422

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in WonderEdit Pro CMS allows remote attackers to execute arbitrary PHP code via the config[template_path] parameter in user_bottom.php, as used by multiple templates including (1) rwb (template/rwb/user_bottom.php), (2) gwb (template/rwb/user_bottom.php, (3) blues, (4) bluwhi, and (5) grns.

    Source:OLiBekaS
    Published:7 Jul 2006
    5.1
    Medium

    CVE-2006-3421

    Last Modified: 27 Oct 2016

    PHP remote file inclusion vulnerability in SmartSiteCMS 1.0 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the root parameter in (1) comment.php, (2) admin/comedit.php, (3) admin/test.php, (4) admin/index.php, and (5) admin/include/inc_adminfoot.php, a different set of vectors than CVE-2006-3162.

    Source:CrAsh_oVeR_rIdE
    Published:7 Jul 2006
    5.8
    Medium

    CVE-2006-3405

    Last Modified: 9 Sept 2013

    Cross-site scripting (XSS) vulnerability in qtofm.php in QTOFileManager 1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) delete, (2) pathext, and (3) edit parameters.

    Source:EllipSiS Security
    Published:7 Jul 2006
    7.5
    High

    CVE-2006-3402

    Last Modified: 9 Sept 2013

    SQL injection vulnerability in VirtuaStore 2.0 allows remote attackers to execute arbitrary SQL commands via the password parameter when logging in.

    Source:supermalhacao
    Published:6 Jul 2006
    7.5
    High

    CVE-2006-3401

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in Quake 3 Engine as used by Quake 3: Arena 1.32b and 1.32c allows remote attackers to cause a denial of service and possibly execute code via long CS_ITEMS values.

    Source:RunningBon
    Published:6 Jul 2006
    7.5
    High

    CVE-2006-3400

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in the CG_ServerCommand function in Quake 3 Engine as used by Soldier of Fortune 2 (SOF2MP) GOLD 1.03 allows remote attackers to cause a denial of service and possibly execute code by sending a long command from the server.

    Source:RunningBon
    Published:6 Jul 2006
    6.8
    Medium

    CVE-2006-3396

    Last Modified: 31 Oct 2016

    PHP remote file inclusion vulnerability in galleria.html.php in Galleria Mambo Module 1.0 and earlier for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

    Source:sikunYuk
    Published:6 Jul 2006
    5.1
    Medium

    CVE-2006-3395

    Last Modified: 7 Sept 2013

    PHP remote file inclusion vulnerability in top.php in SiteBuilder-FX 3.5 allows remote attackers to execute arbitrary PHP code via a URL in the admindir parameter.

    Source:MazaGi
    Published:6 Jul 2006
    7.5
    High

    CVE-2006-3394

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in the files mod in index.php in BXCP 0.3.0.4 allows remote attackers to execute arbitrary SQL commands via the where parameter in a view action.

    Source:x23
    Published:6 Jul 2006
    5
    Medium

    CVE-2006-3392

    Last Modified: 16 Apr 2026

    Webmin before 1.290 and Usermin before 1.220 calls the simplify_path function before decoding HTML, which allows remote attackers to read arbitrary files, as demonstrated using "..%01" sequences, which bypass the removal of "../" sequences before bytes such as "%01" are removed from the filename. NOTE: This is a different issue than CVE-2006-3274.

    Source:joffer
    Published:6 Jul 2006
    5.1
    Medium

    CVE-2006-3387

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in sources/post.php in Fusion News 1.0, when register_globals is enabled, allows remote attackers to include arbitrary files via a .. (dot dot) sequence in the fil_config parameter, which can be used to execute PHP code that has been injected into a log file.

    Source:X0r_1
    Published:6 Jul 2006
    5.8
    Medium

    CVE-2006-3385

    Last Modified: 7 Sept 2013

    Cross-site scripting (XSS) vulnerability in divers.php in Vincent Leclercq News 5.2 allows remote attackers to inject arbitrary web script or HTML via the (1) id and (2) disabled parameters.

    Source:DarkFig
    Published:6 Jul 2006
    7.5
    High

    CVE-2006-3381

    Last Modified: 7 Sept 2013

    SturGeoN Upload allows remote attackers to execute arbitrary PHP code by uploading a file with a .php extension, then directly accessing the file. NOTE: It is uncertain whether this is a vulnerability or a feature of the product.

    Source:Jihad BENABRA
    Published:6 Jul 2006
    7.5
    High

    CVE-2006-3375

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in includes/header.inc.php in Randshop 1.1.1 allows remote attackers to execute arbitrary PHP code via the dateiPfad parameter.

    Source:OLiBekaS
    Published:6 Jul 2006
    7.5
    High

    CVE-2006-3374

    Last Modified: 9 Sept 2013

    PHP remote file inclusion vulnerability in index.php in Randshop 1.2 and earlier, including 0.9.3, allows remote attackers to execute arbitrary PHP code via a URL in the incl parameter.

    Source:black-code
    Published:6 Jul 2006
    5
    Medium

    CVE-2006-3372

    Last Modified: 9 Sept 2013

    Apple Safari 2.0.4/419.3 allows remote attackers to cause a denial of service (application crash) via a DHTML setAttributeNode function call with zero arguments, which triggers a null dereference.

    Source:Dennis Cox
    Published:6 Jul 2006
    2.6
    Low

    CVE-2006-3366

    Last Modified: 4 Sept 2013

    Multiple cross-site scripting (XSS) vulnerabilities in V3 Chat allow remote attackers to inject arbitrary web script or HTML via crafted HTML tags, as demonstrated by the IMG tag, in the (1) id parameter in (a) mail/index.php and (b) mail/reply.php; (2) login_id parameter in (c) members/is_online.php; (3) site_id parameter in (d) messenger/online.php, (e) messenger/search.php, and (f) messenger/profile.php; (4) contact_name parameter in messenger/search.php; (5) membername parameter in (g) messenger/profileview.php; (6) unspecified parameters used when "editing a profile"; and (7) cust_name parameter in (h) messenger/expire.php. NOTE: The vendor disputes the vectors involving files in the messenger directory, stating "... the referenced folder 'messenger' was never available to the general public...".

    Source:Luny
    Published:6 Jul 2006
    7.5
    High

    CVE-2006-3364

    Last Modified: 16 Aug 2016

    SQL injection vulnerability in index.php in the NP_SEO plugin in BLOG:CMS before 4.1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:rgod
    Published:6 Jul 2006
    5.1
    Medium

    CVE-2006-3363

    Last Modified: 9 Sept 2013

    PHP remote file inclusion vulnerability in index.php in the Glossaire module 1.7 for Xoops allows remote attackers to execute arbitrary PHP code via a URL in the pa parameter.

    Source:CrAzY CrAcKeR
    Published:6 Jul 2006
    5.1
    Medium

    CVE-2006-3362

    Last Modified: 24 Aug 2016

    Unrestricted file upload vulnerability in connectors/php/connector.php in FCKeditor mcpuk file manager, as used in (1) Geeklog 1.4.0 through 1.4.0sr3, (2) toendaCMS 1.0.0 Shizouka Stable and earlier, (3) WeBid 0.5.4, and possibly other products, when installed on Apache with mod_mime, allows remote attackers to upload and execute arbitrary PHP code via a filename with a .php extension and a trailing extension that is allowed, such as .zip.

    Source:rgod
    Published:6 Jul 2006
    5.1
    Medium

    CVE-2006-3361

    Last Modified: 24 Aug 2016

    PHP remote file inclusion vulnerability in Stud.IP 1.3.0-2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the (1) _PHPLIB[libdir] parameter in studip-phplib/oohforms.inc and (2) ABSOLUTE_PATH_STUDIP parameter in studip-htdocs/archiv_assi.php.

    Source:Hamid Ebadi
    Published:6 Jul 2006
    7.5
    High

    CVE-2006-3359

    Last Modified: 6 Sept 2013

    Multiple SQL injection vulnerabilities in index.php in NewsPHP 2006 PRO allow remote attackers to inject arbitrary web script or HTML via the (1) words, (2) id, (3) topmenuitem, and (4) cat_id parameters in (a) index.php; and the (5) category parameter in (b) inc/rss_feed.php.

    Source:securityconnection
    Published:6 Jul 2006
    6.8
    Medium

    CVE-2006-3358

    Last Modified: 6 Sept 2013

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in NewsPHP 2006 PRO allow remote attackers to inject arbitrary web script or HTML via the (1) words, (2) id, (3) cat_id, and (4) tim parameters, which are not sanitized before being returned in an error page. NOTE: it is possible that some of these vectors are resultant from an SQL injection issue.

    Source:securityconnection
    Published:6 Jul 2006
    7.5
    High

    CVE-2006-3355

    Last Modified: 9 Sept 2013

    Heap-based buffer overflow in httpdget.c in mpg123 before 0.59s-rll allows remote attackers to execute arbitrary code via a long URL, which is not properly terminated before being used with the strncpy function. NOTE: This appears to be the result of an incomplete patch for CVE-2004-0982.

    Source:Horst Schirmeier
    Published:6 Jul 2006
    5
    Medium

    CVE-2006-3354

    Last Modified: 7 Sept 2013

    Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (crash) by setting the Filter property of an ADODB.Recordset ActiveX object to certain values multiple times, which triggers a null dereference.

    Source:hdm
    Published:6 Jul 2006
    5
    Medium

    CVE-2006-3353

    Last Modified: 24 Aug 2016

    Opera 9 allows remote attackers to cause a denial of service (crash) via a crafted web page that triggers an out-of-bounds memory access, related to an iframe and JavaScript that accesses certain style sheets properties.

    Source:y3dips
    Published:6 Jul 2006
    7.5
    High

    CVE-2006-3347

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in index.php in deV!Lz Clanportal DZCP 1.3.4 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:x128
    Published:3 Jul 2006
    7.5
    High

    CVE-2006-3343

    Last Modified: 6 Sept 2013

    PHP remote file inclusion vulnerability in recipe/cookbook.php in CrisoftRicette 1.0pre15b allows remote attackers to execute arbitrary PHP code via a URL in the crisoftricette parameter.

    Source:CrAzY.CrAcKeR
    Published:3 Jul 2006
    7.5
    High

    CVE-2006-3341

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in annonces-p-f.php in MyAds module 2.04jp for Xoops allows remote attackers to execute arbitrary SQL commands via the lid parameter.

    Source:KeyCoder
    Published:3 Jul 2006
    5.1
    Medium

    CVE-2006-3340

    Last Modified: 16 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Pearl For Mambo module 1.6 for Mambo, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via the (1) phpbb_root_path parameter in (a) includes/functions_cms.php and the (2) GlobalSettings[templatesDirectory] parameter in multiple files in the "includes" directory including (b) adminSensored.php, (c) adminBoards.php, (d) adminAttachments.php, (e) adminAvatars.php, (f) adminBackupdatabase.php, (g) adminBanned.php, (h) adminForums.php, (i) adminPolls.php, (j) adminSmileys.php, (k) poll.php, and (l) move.php.

    Source:Kw3[R]Ln
    Published:3 Jul 2006
    2.6
    Low

    CVE-2006-3337

    Last Modified: 30 Dec 2016

    Cross-site scripting (XSS) vulnerability in frontend/x/files/select.html in cPanel 10.8.2-CURRENT 118 and earlier allows remote attackers to inject arbitrary web script or HTML via the file parameter.

    Source:preth00nker
    Published:3 Jul 2006
    7.5
    High

    CVE-2006-3329

    Last Modified: 6 Sept 2013

    SQL injection vulnerability in search.php in PHP/MySQL Classifieds (PHP Classifieds) allows remote attackers to execute arbitrary SQL commands via the rate parameter.

    Source:Luny
    Published:30 Jun 2006
    5
    Medium

    CVE-2006-3325

    Last Modified: 16 Apr 2026

    client/cl_parse.c in the id3 Quake 3 Engine 1.32c and the Icculus Quake 3 Engine (ioquake3) revision 810 and earlier allows remote malicious servers to overwrite arbitrary write-protected cvars variables on the client, such as cl_allowdownload for Automatic Downloading and fs_homepath for the quake3 path, via a string of cvar names and values sent from the server. NOTE: this can be combined with another vulnerability to overwrite arbitrary files.

    Source:RunningBon
    Published:30 Jun 2006
    5
    Medium

    CVE-2006-3324

    Last Modified: 16 Apr 2026

    The Automatic Downloading option in the id3 Quake 3 Engine and the Icculus Quake 3 Engine (ioquake3) before revision 804 allows remote attackers to overwrite arbitrary files in the quake3 directory (fs_homepath cvar) via a long string of filenames, as contained in the neededpaks buffer.

    Source:RunningBon
    Published:30 Jun 2006
    7.5
    High

    CVE-2006-3323

    Last Modified: 6 Sept 2013

    PHP remote file inclusion vulnerability in admin/admin.php in MF Piadas 1.0 allows remote attackers to execute arbitrary PHP code via the page parameter. NOTE: the same vector can be used for cross-site scripting, but CVE analysis suggests that this is resultant from file inclusion of HTML or script.

    Source:botan
    Published:30 Jun 2006
    5.1
    Medium

    CVE-2006-3317

    Last Modified: 29 Sept 2016

    PHP remote file inclusion vulnerability in phpRaid 3.0.6 allows remote attackers to execute arbitrary code via a URL in the phpraid_dir parameter to (1) announcements.php and (2) rss.php, a different set of vectors and affected versions than CVE-2006-3316 and CVE-2006-3116.

    Source:Cold Zero
    Published:29 Jun 2006
    7.5
    High

    CVE-2006-3315

    Last Modified: 2 Sept 2013

    PHP remote file inclusion vulnerability in page.php in an unspecified RahnemaCo.com product, possibly eShop, allows remote attackers to execute arbitrary PHP code via a URL in the osCsid parameter.

    Source:Breeeeh
    Published:29 Jun 2006