4.3
    Medium

    CVE-2006-0857

    Last Modified: 2 Aug 2013

    Cross-site scripting (XSS) vulnerability in Chatbox Plugin 1.0 in e107 0.7.2 allows remote attackers to inject arbitrary HTML or web script via a Chatbox, as demonstrated using a SCRIPT element.

    Source:marc & shb
    Published:23 Feb 2006
    7.5
    High

    CVE-2006-0852

    Last Modified: 16 Apr 2026

    Direct static code injection vulnerability in write.php in Admbook 1.2.2 and earlier allows remote attackers to execute arbitrary PHP code via the X-Forwarded-For HTTP header field, which is inserted into content-data.php.

    Source:rgod
    Published:23 Feb 2006
    7.5
    High

    CVE-2006-0851

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in the forum module of ilchClan 1.05g and earlier allows remote attackers to execute arbitrary SQL commands via the pid parameter, when creating a newpost.

    Source:x128
    Published:23 Feb 2006
    5.1
    Medium

    CVE-2006-0848

    Last Modified: 6 Mar 2011

    The "Open 'safe' files after downloading" option in Safari on Apple Mac OS X allows remote user-assisted attackers to execute arbitrary commands by tricking a user into downloading a __MACOSX folder that contains metadata (resource fork) that invokes the Terminal, which automatically interprets the script using bash, as demonstrated using a ZIP file that contains a script with a safe file extension.

    Source:Metasploit
    Published:22 Feb 2006
    4.3
    Medium

    CVE-2006-0841

    Last Modified: 8 Jun 2018

    Multiple cross-site scripting (XSS) vulnerabilities in Mantis 1.00rc4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) hide_status, (2) handler_id, (3) user_monitor, (4) reporter_id, (5) view_type, (6) show_severity, (7) show_category, (8) show_status, (9) show_resolution, (10) show_build, (11) show_profile, (12) show_priority, (13) highlight_changed, (14) relationship_type, and (15) relationship_bug parameters in (a) view_all_set.php; the (16) sort parameter in (b) manage_user_page.php; the (17) view_type parameter in (c) view_filters_page.php; and the (18) title parameter in (d) proj_doc_delete.php. NOTE: item 17 might be subsumed by CVE-2005-4522.

    Source:Thomas Waldegger
    Published:22 Feb 2006
    2.6
    Low

    CVE-2006-0836

    Last Modified: 2 Aug 2013

    Mozilla Thunderbird 1.5 allows user-assisted attackers to cause an unspecified denial of service by tricking the user into importing an LDIF file with a long field into the address book, as demonstrated by a long homePhone field.

    Source:DrFrancky
    Published:22 Feb 2006
    7.5
    High

    CVE-2006-0835

    Last Modified: 3 Aug 2013

    SQL injection vulnerability in dropbase.php in MitriDAT Web Calendar Pro allows remote attackers to modify internal SQL queries and cause a denial of service (inaccessible database) via the tabls parameter.

    Source:ReZEN
    Published:22 Feb 2006
    7.5
    High

    CVE-2006-0832

    Last Modified: 2 Aug 2013

    Multiple SQL injection vulnerabilities in admin.asp in WPC.easy allow remote attackers to execute arbitrary SQL commands via the (1) uid and (2) pwd parameter.

    Source:murfie
    Published:22 Feb 2006
    7.5
    High

    CVE-2006-0823

    Last Modified: 19 Jan 2018

    Multiple SQL injection vulnerabilities in Geeklog 1.4.0 before 1.4.0sr1 and 1.3.11 before 1.3.11sr4 allow remote attackers to inject arbitrary SQL commands via the (1) userid variable to users.php or (2) sessid variable to lib-sessions.php.

    Source:GulfTech Security
    Published:21 Feb 2006
    7.5
    High

    CVE-2006-0821

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in index.php in BXCP 0.299 allows remote attackers to execute arbitrary SQL commands via the tid parameter.

    Source:x128
    Published:21 Feb 2006
    4.3
    Medium

    CVE-2006-0806

    Last Modified: 19 Jan 2018

    Multiple cross-site scripting (XSS) vulnerabilities in ADOdb 4.71, as used in multiple packages such as phpESP, allow remote attackers to inject arbitrary web script or HTML via (1) the next_page parameter in adodb-pager.inc.php and (2) other unspecified vectors related to PHP_SELF.

    Source:GulfTech Security
    Published:21 Feb 2006
    7.5
    High

    CVE-2006-0805

    Last Modified: 2 Aug 2013

    The CAPTCHA functionality in php-Nuke 6.0 through 7.9 uses fixed challenge/response pairs that only vary once per day based on the User Agent (HTTP_USER_AGENT), which allows remote attackers to bypass CAPTCHA controls by fixing the User Agent, performing a valid challenge/response, then replaying that pair in the random_num and gfx_check parameters.

    Source:waraxe
    Published:21 Feb 2006
    5.1
    Medium

    CVE-2006-0801

    Last Modified: 2 Aug 2013

    SQL injection vulnerability in the NS-Languages module for PostNuke 0.761 and earlier, when magic_quotes_gpc is off, allows remote attackers to execute arbitrary SQL commands via the language parameter to admin.php.

    Source:Maksymilian Arciemowicz
    Published:20 Feb 2006
    2.6
    Low

    CVE-2006-0800

    Last Modified: 2 Aug 2013

    Interpretation conflict in PostNuke 0.761 and earlier allows remote attackers to conduct cross-site scripting (XSS) attacks via HTML tags with a trailing "<" character, which is interpreted as a ">" character by some web browsers but bypasses the blacklist protection in (1) the pnVarCleanFromInput function in pnAPI.php, (2) the pnSecureInput function in pnAntiCracker.php, and (3) the htmltext parameter in an edituser operation to user.php.

    Source:Maksymilian Arciemowicz
    Published:20 Feb 2006
    7.8
    High

    CVE-2006-0797

    Last Modified: 31 Jul 2013

    Nokia N70 cell phone allows remote attackers to cause a denial of service (reboot or shutdown) through a wireless Bluetooth connection via a malformed Logical Link Control and Adaptation Protocol (L2CAP) packet whose length field is less than the actual length of the packet, possibly triggering a buffer overflow, as demonstrated using the Bluetooth Stack Smasher (BSS).

    Source:Pierre Betouin
    Published:19 Feb 2006
    4.3
    Medium

    CVE-2006-0792

    Last Modified: 31 Jul 2013

    Cross-site scripting (XSS) vulnerability in preferences.personal.php in V-webmail 1.6.2 allows remote attackers to inject arbitrary web script or HTML via the newid parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:$um$id
    Published:19 Feb 2006
    7.5
    High

    CVE-2006-0791

    Last Modified: 31 Jul 2013

    PHP remote file inclusion vulnerability in index.php in DreamCost HostAdmin allows remote attackers to include arbitrary files via the $path variable, which is not initialized before use.

    Source:ReZEN
    Published:19 Feb 2006
    4
    Medium

    CVE-2006-0787

    Last Modified: 31 Jul 2013

    wimpy_trackplays.php in Plaino Wimpy MP3 Player, possibly 5.2 and earlier, allows remote attackers to insert arbitrary strings into trackme.txt via the (1) trackFile, (2) trackArtist, and (3) trackTitle parameters, which can result in providing false information about songs, occupying excessive disk space with very long parameter values, and storing executable code that might be invoked through a different vulnerability. NOTE: since this issue, as described by the original researcher, is entirely dependent on the presence of another vulnerability, it could be argued that Wimpy cannot be responsible for how its data file is processed by applications outside of its control. Since this issue might only be useful as a facilitator manipulation in another vulnerability, perhaps it should not be included in CVE.

    Source:ReZEN
    Published:19 Feb 2006
    5.1
    Medium

    CVE-2006-0786

    Last Modified: 16 Apr 2026

    Incomplete blacklist vulnerability in include.php in PHPKIT 1.6.1 Release 2 and earlier, with allow_url_fopen enabled, allows remote attackers to conduct PHP remote file include attacks via a path parameter that specifies a (1) UNC share or (2) ftps URL, which bypasses the check for "http://", "ftp://", and "https://" URLs.

    Source:rgod
    Published:19 Feb 2006
    5
    Medium

    CVE-2006-0784

    Last Modified: 31 Jul 2013

    D-Link DWL-G700AP with firmware 2.00 and 2.01 allows remote attackers to cause a denial of service (CAMEO HTTP service crash) via a request composed of "GET" followed by a space and two newlines, possibly triggering the crash due to missing arguments.

    Source:l0om
    Published:19 Feb 2006
    4.3
    Medium

    CVE-2006-0783

    Last Modified: 31 Jul 2013

    Cross-site scripting (XSS) vulnerability in page.php in in Siteframe Beaumont, possibly 5.0.2 or 5.0.1a, allows remote attackers to inject arbitrary web script or HTML via the comment_text parameter to the user comment page (/edit/Comment).

    Published:19 Feb 2006
    7.5
    High

    CVE-2006-0775

    Last Modified: 31 Jul 2013

    Multiple SQL injection vulnerabilities in show.php in BirthSys 3.1 allow remote attackers to execute arbitrary SQL commands via the $month variable. NOTE: a vector regarding the $date parameter and data.php (date.php) was originally reported, but this appears to be in error.

    Source:Aliaksandr Hartsuyeu
    Published:19 Feb 2006
    7.5
    High

    CVE-2006-0774

    Last Modified: 5 Jan 2018

    SQL injection vulnerability in deleteSession() in DB_eSession library 1.0.2 and earlier, as used in multiple products, allows remote attackers to execute arbitrary SQL commands via the $_sess_id_set variable, which is usually derived from PHPSESSID.

    Source:GulfTech Security
    Published:19 Feb 2006
    7.5
    High

    CVE-2006-0759

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in HiveMail 1.3 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the contactgroupid parameter in addressbook.update.php, (2) the messageid parameter in addressbook.add.php, (3) the folderid parameter in folders.update.php, and possibly certain parameters in (4) calendar.event.php, (5) index.php, (6) pop.download.php, (7) read.bounce.php, (8) rules.block.php, (9) language.php, and (10) certain other scripts; and allow remote authenticated users to execute arbitrary SQL commands via (11) the folderid parameter in index.php and (12) possibly other parameters in certain other scripts, because $_SERVER['PHP_SELF'] is improperly handled.

    Source:[Oo]
    Published:18 Feb 2006
    4.3
    Medium

    CVE-2006-0758

    Last Modified: 5 Jan 2018

    Multiple cross-site scripting (XSS) vulnerabilities in HiveMail 1.3 and earlier allow remote attackers to inject arbitrary web script or HTML via a URL encoded expression in the query string in (1) index.php and (2) possibly certain other scripts, which is not properly cleansed when accessed from the $_SERVER['PHP_SELF'] variable.

    Source:GulfTech Security
    Published:18 Feb 2006
    7.5
    High

    CVE-2006-0757

    Last Modified: 5 Jan 2018

    Multiple eval injection vulnerabilities in HiveMail 1.3 and earlier allow remote attackers to execute arbitrary PHP code via (1) the contactgroupid parameter in addressbook.update.php, (2) the messageid parameter in addressbook.add.php, (3) the folderid parameter in folders.update.php, and possibly certain parameters in (4) calendar.event.php, (5) index.php, (6) pop.download.php, (7) read.bounce.php, (8) rules.block.php, (9) language.php, and (10) certain other scripts, as demonstrated by an addressbook.update.php request with a contactgroupid value of phpinfo() preceded by facilitators.

    Source:GulfTech Security
    Published:18 Feb 2006
    5.6
    Medium

    CVE-2006-0755

    Last Modified: 31 Jul 2013

    Multiple PHP remote file include vulnerabilities in dotProject 2.0.1 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary commands via the baseDir parameter in (1) db_adodb.php, (2) db_connect.php, (3) session.php, (4) vw_usr_roles.php, (5) calendar.php, (6) date_format.php, and (7) tasks/gantt.php; and the dPconfig[root_dir] parameter in (8) projects/gantt.php, (9) gantt2.php, and (10) vw_files.php. NOTE: the vendor disputes this issue, stating that the product documentation clearly recommends that the system administrator disable register_globals, and that the check.php script warns against this setting. Also, the vendor says that the protection.php/siteurl vector is incorrect because protection.php does not exist in the product

    Source:r.verton
    Published:18 Feb 2006
    7.5
    High

    CVE-2006-0750

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in army.php in supersmashbrothers (SSB) Army System 2.1.0 for Invision Power Board (IPB) allows remote attackers to execute arbitrary SQL commands via the userstat parameter in an army action to index.php.

    Source:fRoGGz
    Published:18 Feb 2006
    5
    Medium

    CVE-2006-0747

    Last Modified: 17 Sept 2013

    Integer underflow in Freetype before 2.2 allows remote attackers to cause a denial of service (crash) via a font file with an odd number of blue values, which causes the underflow when decrementing by 2 in a context that assumes an even number of values.

    Source:Josh Bressers
    Published:15 May 2006
    7.2
    High

    CVE-2006-0745

    Last Modified: 16 Apr 2026

    X.Org server (xorg-server) 1.0.0 and later, X11R6.9.0, and X11R7.0 inadvertently treats the address of the geteuid function as if it is the return value of a call to geteuid, which allows local users to bypass intended restrictions and (1) execute arbitrary code via the -modulepath command line option or (2) overwrite arbitrary files via -logfile.

    Source:H D Moore
    Published:21 Mar 2006
    5
    Medium

    CVE-2006-0738

    Last Modified: 31 Jul 2013

    Multiple format string vulnerabilities in eStara SIP softphone allow remote attackers to cause a denial of service (hang) via SIP INVITE requests with format string specifiers in the SDP session description, as demonstrated using (1) the field name, (2) the o field (owner/creator and session identifier), or (3) the m field (media name and transport address).

    Source:ZwelL
    Published:17 Feb 2006
    5
    Medium

    CVE-2006-0737

    Last Modified: 31 Jul 2013

    eStara SIP softphone allows remote attackers to cause a denial of service (crash) via a SIP OPTIONS request with a negative Expires field.

    Source:ZwelL
    Published:17 Feb 2006
    4.3
    Medium

    CVE-2006-0735

    Last Modified: 31 Jul 2013

    Cross-site scripting (XSS) vulnerability in BBcode.pm in M. Blom HTML::BBCode 1.04 and earlier, as used in products such as My Blog before 1.65, allows remote attackers to inject arbitrary Javascript via a javascript URI in an (1) img or (2) url BBcode tag.

    Source:Aliaksandr Hartsuyeu
    Published:16 Feb 2006
    4
    Medium

    CVE-2006-0734

    Last Modified: 16 Apr 2026

    The SV_CheckForDuplicateNames function in Valve Software Half-Life CSTRIKE Dedicated Server 1.6 and earlier allows remote authenticated users to cause a denial of service (infinite loop and daemon hang) via a backslash character at the end of a connection string to UDP port 27015.

    Source:Firestorm
    Published:16 Feb 2006
    2.6
    Low

    CVE-2006-0733

    Last Modified: 4 May 2017

    Cross-site scripting (XSS) vulnerability in WordPress 2.0.0 allows remote attackers to inject arbitrary web script or HTML via scriptable attributes such as (1) onfocus and (2) onblur in the "author's website" field. NOTE: followup comments to the researcher's web log suggest that this issue is only exploitable by the same user who injects the XSS, so this might not be a vulnerability

    Source:imei
    Published:16 Feb 2006
    4
    Medium

    CVE-2006-0731

    Last Modified: 31 Jul 2013

    WmRoot/adapter-index.dsp in SAP Business Connector Core Fix 7 and earlier allows remote attackers to conduct spoofing (phishing) attacks via an absolute URL in the url parameter, which loads the URL inside a frame.

    Source:Leandro Meiners
    Published:16 Feb 2006
    7.5
    High

    CVE-2006-0728

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in search.php in webSPELL 4.01.00 and earlier allows remote attackers to inject arbitrary SQL commands via the title_op parameter.

    Source:x128
    Published:16 Feb 2006
    6.8
    Medium

    CVE-2006-0725

    Last Modified: 29 Jul 2016

    PHP remote file inclusion vulnerability in prepend.php in Plume CMS 1.0.2, when register_globals is enabled, allows remote attackers to include arbitrary files via a URL in the _PX_config[manager_path] parameter. NOTE: this is a different executable and affected version than CVE-2006-2645.

    Source:beford
    Published:16 Feb 2006
    7.5
    High

    CVE-2006-0721

    Last Modified: 28 Nov 2016

    SQL injection vulnerability in pmlite.php in RunCMS 1.2 and 1.3a allows remote attackers to execute arbitrary SQL commands via the to_userid parameter.

    Source:Hamid Ebadi
    Published:16 Feb 2006
    7.6
    High

    CVE-2006-0720

    Last Modified: 18 Jun 2013

    Stack-based buffer overflow in Nullsoft Winamp 5.12 and 5.13 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted .m3u file that causes an incorrect strncpy function call when the player pauses or stops the file.

    Source:superkojiman
    Published:23 Feb 2006
    7.5
    High

    CVE-2006-0719

    Last Modified: 31 Jul 2013

    SQL injection vulnerability in member_login.php in PHP Classifieds 6.18 through 6.20 allows remote attackers to execute arbitrary SQL commands via the (1) username parameter, which is used by the E-mail address field, and (2) password parameter.

    Source:Audun Larsen
    Published:15 Feb 2006
    5
    Medium

    CVE-2006-0717

    Last Modified: 30 Jul 2013

    IBM Tivoli Directory Server 6.0 allows remote attackers to cause a denial of service (crash) via a crafted LDAP request, as demonstrated by test 2532 in the ProtoVer Sample LDAP test suite.

    Source:Evgeny Legerov
    Published:15 Feb 2006
    4.3
    Medium

    CVE-2006-0715

    Last Modified: 31 Jul 2013

    Cross-site scripting (XSS) vulnerability in sNews 1.3 allows remote attackers to inject arbitrary web script or HTML via the comment field.

    Source:joffer
    Published:15 Feb 2006
    5
    Medium

    CVE-2006-0714

    Last Modified: 21 Jun 2016

    Directory traversal vulnerability in the installation file (sql/install-0.9.7.php) in Flyspray 0.9.7 allows remote attackers to include arbitrary files via a .. (dot dot) sequence in the adodbpath parameter.

    Source:rgod
    Published:15 Feb 2006
    5
    Medium

    CVE-2006-0713

    Last Modified: 24 Nov 2016

    Directory traversal vulnerability in LinPHA 1.0 allows remote attackers to include arbitrary files via .. (dot dot) sequences in the (1) lang parameter in docs/index.php and the language parameter in (2) install/install.php, (3) install/sec_stage_install.php, (4) install/third_stage_install.php, and (5) install/forth_stage_install.php. NOTE: direct static code injection is resultant from this issue, as demonstrated by inserting PHP code into the username, which is inserted into linpha.log, which is accessible from the directory traversal.

    Source:rgod
    Published:15 Feb 2006
    7.5
    High

    CVE-2006-0710

    Last Modified: 31 Jul 2013

    Double free vulnerability in isode.eddy in Isode M-Vault Server 11.3 allows remote attackers to execute arbitrary code via a crafted LDAP request, as demonstrated by ProtoVer Sample LDAP.

    Source:Evgeny Legerov
    Published:15 Feb 2006
    4.3
    Medium

    CVE-2006-0706

    Last Modified: 31 Jul 2013

    Cross-site scripting vulnerability in eintrag.php in Gästebuch (Gastebuch) before 1.3.3 allows remote attackers to inject arbitrary web script or HTML via the URL, which is used in the homepage parameter.

    Source:Micha Borrmann
    Published:15 Feb 2006
    4.3
    Medium

    CVE-2006-0703

    Last Modified: 30 Jul 2013

    Unspecified vulnerability in index.php in imageVue 16.1 has unknown impact, probably a cross-site scripting (XSS) vulnerability involving the query string that is not quoted when inserted into style and body tags, as demonstrated using a bgcol parameter.

    Source:zjieb
    Published:15 Feb 2006
    5
    Medium

    CVE-2006-0702

    Last Modified: 30 Jul 2013

    admin/upload.php in imageVue 16.1 allows remote attackers to upload arbitrary files to certain allowed folders via .. (dot dot) sequences in the path parameter. NOTE: due to the lack of details, the specific vulnerability type cannot be determined, although it might be due to directory traversal.

    Source:zjieb
    Published:15 Feb 2006
    5
    Medium

    CVE-2006-0701

    Last Modified: 30 Jul 2013

    readfolder.php in imageVue 16.1 allows remote attackers to list directories via modified path and ext parameters.

    Source:zjieb
    Published:15 Feb 2006