2.6
    Low

    CVE-2006-2653

    Last Modified: 29 Aug 2013

    Cross-site scripting (XSS) vulnerability in login_error.shtml for D-Link DSA-3100 allows remote attackers to inject arbitrary HTML or web script via an encoded uname parameter.

    Source:Jaime Blasco
    Published:30 May 2006
    7.5
    High

    CVE-2006-2650

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in cosmicshop/search.php in CosmicShoppingCart allows remote attackers to execute arbitrary SQL commands via the max parameter.

    Source:Vympel
    Published:30 May 2006
    2.6
    Low

    CVE-2006-2648

    Last Modified: 29 Aug 2013

    Cross-site scripting (XSS) vulnerability in perform_search.asp for ASPBB 0.52 and earlier allows remote attackers to inject arbitrary HTML or web script via the search parameter.

    Source:Mustafa Can Bjorn
    Published:30 May 2006
    7.5
    High

    CVE-2006-2646

    Last Modified: 28 Aug 2013

    Buffer overflow in Alt-N MDaemon, possibly 9.0.1 and earlier, allows remote attackers to execute arbitrary code via a long A0001 argument that begins with a '"' (double quote).

    Source:kcope
    Published:30 May 2006
    7.5
    High

    CVE-2006-2645

    Last Modified: 29 Jul 2016

    PHP remote file inclusion vulnerability in manager/frontinc/prepend.php for Plume 1.0.3 allows remote attackers to execute arbitrary code via a URL in the _PX_config[manager_path] parameter. NOTE: this is a different executable and affected version than CVE-2006-0725.

    Source:beford
    Published:30 May 2006
    6.4
    Medium

    CVE-2006-2638

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in member.asp in qjForum allows remote attackers to execute arbitrary SQL commands via the uName parameter.

    Source:ajann
    Published:30 May 2006
    7.5
    High

    CVE-2006-2636

    Last Modified: 9 Apr 2014

    newsadmin.asp in Katy Whitton NewsCMSLite allows remote attackers to bypass authentication and gain administrative access by setting the loggedIn cookie to "xY1zZoPQ".

    Source:FarhadKey
    Published:30 May 2006
    4.3
    Medium

    CVE-2006-2635

    Last Modified: 29 Aug 2013

    Multiple cross-site scripting (XSS) vulnerabilities in Tikiwiki (aka Tiki CMS/Groupware) 1.9.x allow remote attackers to inject arbitrary web script or HTML via malformed nested HTML tags such as "<scr<script>ipt>" in (1) offset and (2) days parameters in (a) tiki-lastchanges.php, the (3) find and (4) offset parameters in (b) tiki-orphan_pages.php, the (5) offset and (6) initial parameters in (c) tiki-listpages.php, and (7) an unspecified field in (d) tiki-remind_password.php; and allow remote authenticated users with admin privileges to inject arbitrary web script or HTML via (8) an unspecified field in a metatags action in (e) tiki-admin.php, the (9) offset parameter in (f) tiki-admin_rssmodules.php, the (10) offset and (11) max parameters in (g) tiki-syslog.php, the (12) numrows parameter in (h) tiki-adminusers.php, (13) an unspecified field in (i) tiki-adminusers.php, (14) an unspecified field in (j) tiki-admin_hotwords.php, unspecified fields in (15) "Assign new module" and (16) "Create new user module" in (k) tiki-admin_modules.php, (17) an unspecified field in "Add notification" in (l) tiki-admin_notifications.php, (18) the offset parameter in (m) tiki-admin_notifications.php, the (19) Name and (20) Dsn fields in (o) tiki-admin_dsn.php, the (21) offset parameter in (p) tiki-admin_content_templates.php, (22) an unspecified field in "Create new template" in (q) tiki-admin_content_templates.php, and the (23) offset parameter in (r) tiki-admin_chat.php.

    Source:Blwood
    Published:30 May 2006
    10
    Critical

    CVE-2006-2630

    Last Modified: 6 Mar 2011

    Stack-based buffer overflow in Symantec Antivirus 10.1 and Client Security 3.1 allows remote attackers to execute arbitrary code via unknown attack vectors.

    Source:Metasploit
    Published:27 May 2006
    4
    Medium

    CVE-2006-2629

    Last Modified: 2 Sept 2013

    Race condition in Linux kernel 2.6.15 to 2.6.17, when running on SMP platforms, allows local users to cause a denial of service (crash) by creating and exiting a large number of tasks, then accessing the /proc entry of a task that is exiting, which causes memory corruption that leads to a failure in the prune_dcache function or a BUG_ON error in include/linux/list.h.

    Source:Tony Griffiths
    Published:27 May 2006
    5.1
    Medium

    CVE-2006-2608

    Last Modified: 28 Aug 2013

    artmedic newsletter 4.1 and possibly other versions, when register_globals is enabled, allows remote attackers to modify arbitrary files and execute arbitrary PHP code via the logfile parameter in a direct request to log.php, which causes the $logfile variable to be redefined to an attacker-controlled value, as demonstrated by injecting PHP code into info.php.

    Source:C.Schmitz
    Published:26 May 2006
    5
    Medium

    CVE-2006-2587

    Last Modified: 16 Apr 2026

    Buffer overflow in the WebTool HTTP server component in (1) PunkBuster before 1.229, as used by multiple products including (2) America's Army 1.228 and earlier, (3) Battlefield 1942 1.158 and earlier, (4) Battlefield 2 1.184 and earlier, (5) Battlefield Vietnam 1.150 and earlier, (6) Call of Duty 1.173 and earlier, (7) Call of Duty 2 1.108 and earlier, (8) DOOM 3 1.159 and earlier, (9) Enemy Territory 1.167 and earlier, (10) Far Cry 1.150 and earlier, (11) F.E.A.R. 1.093 and earlier, (12) Joint Operations 1.187 and earlier, (13) Quake III Arena 1.150 and earlier, (14) Quake 4 1.181 and earlier, (15) Rainbow Six 3: Raven Shield 1.169 and earlier, (16) Rainbow Six 4: Lockdown 1.093 and earlier, (17) Return to Castle Wolfenstein 1.175 and earlier, and (18) Soldier of Fortune II 1.183 and earlier allows remote attackers to cause a denial of service (application crash) via a long webkey parameter.

    Source:Luigi Auriemma
    Published:25 May 2006
    5.1
    Medium

    CVE-2006-2583

    Last Modified: 29 Jul 2016

    PHP remote file inclusion vulnerability in nucleus/libs/PLUGINADMIN.php in Nucleus 3.22 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[DIR_LIBS] parameter.

    Source:rgod
    Published:25 May 2006
    5.1
    Medium

    CVE-2006-2577

    Last Modified: 16 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Docebo 3.0.3 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in (1) where_cms, (2) where_lms, (3) where_upgrade, (4) BBC_LIB_PATH, and (5) BBC_LANGUAGE_PATH parameters in various unspecified scripts. NOTE: the provenance of some of this information is unknown; the details are obtained solely from third party information.

    Source:Kacper
    Published:24 May 2006
    5.1
    Medium

    CVE-2006-2576

    Last Modified: 16 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Docebo 3.0.3 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in (1) GLOBALS[where_framework] to (a) lib.simplesel.php, (b) lib.filelist.php, (c) tree.documents.php, (d) lib.repo.php, and (e) lib.php, and (2) GLOBALS[where_scs] to (f) lib.teleskill.php. NOTE: this issue might be resultant from a global overwrite vulnerability.

    Source:Kacper
    Published:24 May 2006
    5
    Medium

    CVE-2006-2575

    Last Modified: 14 Aug 2017

    The setFrame function in Lib/2D/Surface.hpp for NetPanzer 0.8 and earlier allows remote attackers to cause a denial of service (crash) via a client flag (frameNum) that is greater than 41, which triggers an assert error.

    Source:Luigi Auriemma
    Published:24 May 2006
    7.5
    High

    CVE-2006-2570

    Last Modified: 29 Nov 2016

    PHP remote file inclusion vulnerability in CaLogic Calendars 1.2.2 allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS["CLPath"] parameter to (1) reconfig.php and (2) srxclr.php. NOTE: this might be due to a globals overwrite issue.

    Source:Kacper
    Published:24 May 2006
    7.5
    High

    CVE-2006-2569

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in links.php in 4R Linklist 1.0 RC2 and earlier, a module for Woltlab Burning Board, allows remote attackers to execute arbitrary SQL commands via the cat parameter.

    Source:666
    Published:24 May 2006
    5.1
    Medium

    CVE-2006-2568

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in addpost_newpoll.php in UBB.threads 6.4 through 6.5.2 and 6.5.1.1 (trial) allows remote attackers to execute arbitrary PHP code via a URL in the thispath parameter.

    Source:V4mu
    Published:24 May 2006
    6.4
    Medium

    CVE-2006-2557

    Last Modified: 24 Nov 2016

    PHP remote file inclusion vulnerability in extras/poll/poll.php in Florian Amrhein NewsPortal before 0.37, and TR Newsportal (TRanx rebuilded), allows remote attackers to execute arbitrary PHP code via a URL in the file_newsportal parameter.

    Source:Kacper
    Published:24 May 2006
    5
    Medium

    CVE-2006-2555

    Last Modified: 14 Aug 2017

    The parse_command function in Genecys 0.2 and earlier allows remote attackers to cause a denial of service (crash) via a command with a missing ":" (colon) separator, which triggers a null dereference.

    Source:Luigi Auriemma
    Published:24 May 2006
    6.4
    Medium

    CVE-2006-2554

    Last Modified: 14 Aug 2017

    Buffer overflow in the tell_player_surr_changes function in Genecys 0.2 and earlier might allow remote attackers to execute arbitrary code via long arguments.

    Source:Luigi Auriemma
    Published:24 May 2006
    5
    Medium

    CVE-2006-2552

    Last Modified: 28 Aug 2013

    Jemscripts DownloadControl 1.0 allows remote attackers to obtain sensitive information via an invalid dcid parameter to dc.php, which leaks the pathname in an error message. NOTE: this was originally claimed to be SQL injection, but it is probably resultant from another issue in functions.php.

    Source:Luny
    Published:24 May 2006
    7.5
    High

    CVE-2006-2548

    Last Modified: 28 Aug 2013

    Prodder before 0.5, and perlpodder before 0.5, allows remote attackers to execute arbitrary code via shell metacharacters in the URL of a podcast (url attribute of an enclosure tag, or $enc_url variable), which is executed when running wget.

    Source:RedTeam Pentesting
    Published:23 May 2006
    7.5
    High

    CVE-2006-2541

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in settings.asp in Zixforum 1.12 allows remote attackers to execute arbitrary SQL commands via the layid parameter to (1) login.asp and (2) main.asp.

    Source:FarhadKey
    Published:23 May 2006
    7.5
    High

    CVE-2006-2531

    Last Modified: 27 Aug 2013

    Ipswitch WhatsUp Professional 2006 only verifies the user's identity via HTTP headers, which allows remote attackers to spoof being a trusted console and bypass authentication by setting HTTP User-Agent header to "Ipswitch/1.0" and the User-Application header to "NmConsole".

    Source:Kenneth F. Belva
    Published:22 May 2006
    6.4
    Medium

    CVE-2006-2528

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in classified_right.php in phpBazar 2.1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the language_dir parameter.

    Source:[Oo]
    Published:22 May 2006
    7.5
    High

    CVE-2006-2527

    Last Modified: 16 Apr 2026

    Admin/admin.php in phpBazar 2.1.0 and earlier allows remote attackers to bypass the authentication process and gain unauthorized access to the administrative section by setting the action parameter to edit_member and the value parameter to 1.

    Source:[Oo]
    Published:22 May 2006
    7.5
    High

    CVE-2006-2523

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in config.php in phpListPro 2.0.1 and earlier, with magic_quotes_gpc disabled, allows remote attackers to execute arbitrary PHP code via a URL in the Language cookie.

    Source:[Oo]
    Published:22 May 2006
    7.5
    High

    CVE-2006-2521

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in cron.php in phpMyDirectory 10.4.4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the ROOT_PATH parameter.

    Source:OLiBekaS
    Published:22 May 2006
    5.1
    Medium

    CVE-2006-2516

    Last Modified: 16 Nov 2017

    mainfile.php in XOOPS 2.0.13.2 and earlier, when register_globals is enabled, allows remote attackers to overwrite variables such as $xoopsOption['nocommon'] and conduct directory traversal attacks or include PHP files via (1) xoopsConfig[language] to misc.php or (2) xoopsConfig[theme_set] to index.php, as demonstrated by injecting PHP sequences into a log file.

    Source:rgod
    Published:22 May 2006
    7.5
    High

    CVE-2006-2507

    Last Modified: 16 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Teake Nutma Foing 0.2.0 through 0.7.0, as used with phpBB, allow remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter in (1) index.php, (2) song.php, (3) faq.php, (4) list.php, (5) gen_m3u.php, and (6) playlist.php.

    Source:Kurdish Security
    Published:22 May 2006
    3.6
    Low

    CVE-2006-2505

    Last Modified: 16 Apr 2026

    Oracle Database Server 10g Release 2 allows local users to execute arbitrary SQL queries via a reference to a malicious package in the TYPE_NAME argument in the (1) GET_DOMAIN_INDEX_TABLES or (2) GET_V2_DOMAIN_INDEX_TABLES function in the DBMS_EXPORT_EXTENSION package.

    Source:N1V1Hd
    Published:22 May 2006
    7.5
    High

    CVE-2006-2503

    Last Modified: 25 Nov 2016

    SQL injection vulnerability in misc.php in DeluxeBB 1.06 allows remote attackers to execute arbitrary SQL commands via the name parameter.

    Source:KingOfSka
    Published:22 May 2006
    5.1
    Medium

    CVE-2006-2502

    Last Modified: 6 Mar 2011

    Stack-based buffer overflow in pop3d in Cyrus IMAPD (cyrus-imapd) 2.3.2, when the popsubfolders option is enabled, allows remote attackers to execute arbitrary code via a long USER command.

    Source:Metasploit
    Published:22 May 2006
    7.5
    High

    CVE-2006-2499

    Last Modified: 28 Aug 2013

    SQL injection vulnerability in default.asp in CodeAvalanche News (CANews) 1.2 allows remote attackers to execute arbitrary SQL commands via the password field.

    Source:omnipresent
    Published:20 May 2006
    5.8
    Medium

    CVE-2006-2497

    Last Modified: 28 Aug 2013

    Multiple cross-site scripting (XSS) vulnerabilities in AspBB 0.5.2 allow remote attackers to inject arbitrary web script or HTML via the (1) action parameter to default.asp or (2) get parameter to profile.asp.

    Source:TeufeL
    Published:20 May 2006
    5.1
    Medium

    CVE-2006-2494

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in IntelliTamper 2.07 allows remote attackers to execute arbitrary code via a crafted .map file.

    Source:Devil-00
    Published:20 May 2006
    6.8
    Medium

    CVE-2006-2491

    Last Modified: 27 Aug 2013

    Cross-site scripting (XSS) vulnerability in (1) index.php and (2) bmc/admin.php in BoastMachine (bMachine) 3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the query string, which is not properly filtered when it is accessed using the $_SERVER["PHP_SELF"] variable.

    Source:Yunus Emre Yilmaz
    Published:19 May 2006
    4.3
    Medium

    CVE-2006-2490

    Last Modified: 27 Aug 2013

    Multiple cross-site scripting (XSS) vulnerabilities in Mobotix IP Network Cameras M1 1.9.4.7 and M10 2.0.5.2, and other versions before 2.2.3.18 for M10/D10 and 3.0.3.31 for M22, allow remote attackers to inject arbitrary web script or HTML via URL-encoded values in (1) the query string to help/help, (2) the get_image_info_abspath parameter to control/eventplayer, and (3) the source_ip parameter to events.tar.

    Source:Jaime Blasco
    Published:19 May 2006
    7.5
    High

    CVE-2006-2487

    Last Modified: 16 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in ScozNews 1.2.1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the CONFIG[main_path] parameter in (1) functions.php, (2) template.php, (3) news.php, (4) help.php, (5) mail.php, (6) Admin/admin_cats.php, (8) Admin/admin_edit.php, (9) Admin/admin_import.php, and (10) Admin/admin_templates.php. NOTE: this might be resultant from a variable overwrite issue.

    Source:Kacper
    Published:19 May 2006
    7.5
    High

    CVE-2006-2485

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in includes/class_template.php in Quezza 1.0 and earlier, and possibly 1.1.0 allows remote attackers to execute arbitrary PHP code via a URL in the quezza_root_path parameter.

    Source:nukedx
    Published:19 May 2006
    6.4
    Medium

    CVE-2006-2483

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in cart_content.php in Squirrelcart 2.2.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the cart_isp_root parameter.

    Source:OLiBekaS
    Published:19 May 2006
    5
    Medium

    CVE-2006-2481

    Last Modified: 15 Sept 2013

    VMware ESX Server 2.0.x before 2.0.2 and 2.x before 2.5.2 patch 4 stores authentication credentials in base 64 encoded format in the vmware.mui.kid and vmware.mui.sid cookies, which allows attackers to gain privileges by obtaining the cookies using attacks such as cross-site scripting (CVE-2005-3619).

    Source:Stephen de Vries
    Published:31 Jul 2006
    5.1
    Medium

    CVE-2006-2480

    Last Modified: 28 Aug 2013

    Format string vulnerability in Dia 0.94 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code by triggering errors or warnings, as demonstrated via format string specifiers in a .bmp filename. NOTE: the original exploit was demonstrated through a command line argument, but there are other mechanisms for input that are automatically processed by Dia, such as a crafted .dia file.

    Source:KaDaL-X
    Published:10 May 2004
    7.5
    High

    CVE-2006-2474

    Last Modified: 28 Aug 2013

    SQL injection vulnerability in lshop.cgi in Cosmoshop 8.11.106 and earlier allows remote attackers to execute arbitrary SQL commands via the artnum parameter.

    Source:l0om
    Published:19 May 2006
    4.3
    Medium

    CVE-2006-2473

    Last Modified: 27 Aug 2013

    Cross-site scripting (XSS) vulnerability in ow.asp in OpenWiki 0.78 allows remote attackers to inject arbitrary web script or HTML via the p parameter. NOTE: this issue has been disputed by the vendor and a third party who is affiliated with the product. The vendor states "You cannot insert code in a wikipage or via URL parameters as they are all escaped before usage, so nothing can be compromised at other sites.

    Source:LiNuX_rOOt
    Published:19 May 2006
    5.1
    Medium

    CVE-2006-2465

    Last Modified: 4 Feb 2014

    Buffer overflow in MP3Info 0.8.4 allows attackers to execute arbitrary code via a long command line argument. NOTE: if mp3info is not installed setuid or setgid in any reasonable context, then this issue might not be a vulnerability.

    Source:jsacco
    Published:19 May 2006
    6.4
    Medium

    CVE-2006-2460

    Last Modified: 22 Nov 2017

    Sugar Suite Open Source (SugarCRM) 4.2 and earlier, when register_globals is enabled, does not protect critical variables such as $_GLOBALS and $_SESSION from modification, which allows remote attackers to conduct attacks such as directory traversal or PHP remote file inclusion, as demonstrated by modifying the GLOBALS[sugarEntry] parameter.

    Source:rgod
    Published:19 May 2006
    6.4
    Medium

    CVE-2006-2459

    Last Modified: 22 Nov 2016

    SQL injection vulnerability in messages.php in PHP-Fusion 6.00.307 and earlier allows remote authenticated users to execute arbitrary SQL commands via the srch_where parameter.

    Source:rgod
    Published:19 May 2006