5
    Medium

    CVE-2006-0700

    Last Modified: 30 Jul 2013

    imageVue 16.1 allows remote attackers to obtain folder permission settings via a direct request to dir.php, which returns an XML document that lists folders and their permissions.

    Source:zjieb
    Published:15 Feb 2006
    4.3
    Medium

    CVE-2006-0699

    Last Modified: 31 Jul 2013

    Cross-site scripting (XSS) vulnerability in search.php in QWikiWiki 1.5, and possibly 1.5.1 and other versions, allows remote attackers to inject arbitrary web script or HTML via the query parameter.

    Source:Citynova
    Published:15 Feb 2006
    5
    Medium

    CVE-2006-0691

    Last Modified: 2 Aug 2013

    edituser.php in TTS Time Tracking Software 3.0 does not verify that the name and password are correct, which allows remote attackers to overwrite arbitrary data belonging to any account.

    Source:Aliaksandr Hartsuyeu
    Published:15 Feb 2006
    7.5
    High

    CVE-2006-0688

    Last Modified: 27 Oct 2016

    PHP remote file include vulnerability in application.php in nicecoder.com indexu 5.0.0 and 5.0.1 allows remote attackers to execute arbitrary PHP code via a URL in the base_path parameter.

    Source:CrAsh_oVeR_rIdE
    Published:15 Feb 2006
    5
    Medium

    CVE-2006-0687

    Last Modified: 21 Jun 2016

    process.php in DocMGR 0.54.2 does not initialize the $siteModInfo variable when a direct request is made, which allows remote attackers to include arbitrary local files or possibly remote files via a modified includeModule and siteModInfo variable.

    Source:rgod
    Published:15 Feb 2006
    10
    Critical

    CVE-2006-0685

    Last Modified: 30 Jul 2013

    The check_login function in login.php in Virtual Hosting Control System (VHCS) 2.4.7.1 and earlier does not exit when authentication fails, which allows remote attackers to gain unauthorized access.

    Source:Roman Medina-Heigl Hernandez
    Published:15 Feb 2006
    7.5
    High

    CVE-2006-0684

    Last Modified: 30 Jul 2013

    change_password.php in Virtual Hosting Control System (VHCS) 2.4.7.1 and earlier does not verify the old password when a user changes the password, which may allow remote attackers to gain unauthorized access.

    Source:Roman Medina-Heigl Hernandez
    Published:15 Feb 2006
    7.5
    High

    CVE-2006-0681

    Last Modified: 21 Jun 2016

    Format string vulnerability in powerd.c in Power Daemon (powerd) 2.0.2 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the WHATIDO variable.

    Source:Gotfault Security
    Published:15 Feb 2006
    4.3
    Medium

    CVE-2006-0676

    Last Modified: 31 Jul 2013

    Cross-site scripting (XSS) vulnerability in header.php in PHP-Nuke 6.0 to 7.8 allows remote attackers to inject arbitrary web script or HTML via the pagetitle parameter.

    Source:Janek Vind
    Published:13 Feb 2006
    4.3
    Medium

    CVE-2006-0675

    Last Modified: 30 Jul 2013

    Cross-site scripting (XSS) vulnerability in search.php in Siteframe 5.0.1 allows remote attackers to inject arbitrary web script or HTML via the q parameter.

    Source:Kiki
    Published:13 Feb 2006
    7.5
    High

    CVE-2006-0673

    Last Modified: 2 Aug 2013

    Multiple SQL injection vulnerabilities in cms/index.php in Magic Calendar Lite 1.02, with magic_quotes_gpc disabled, allow remote attackers to execute arbitrary SQL commands via the (1) $total_login and (2) $total_password parameter.

    Source:Aliaksandr Hartsuyeu
    Published:13 Feb 2006
    7.8
    High

    CVE-2006-0671

    Last Modified: 16 Apr 2026

    Buffer overflow in Sony Ericsson K600i, V600i, W800i, and T68i cell phone allows remote attackers to cause a denial of service (reboot or shutdown) through a wireless Bluetooth connection via a malformed Logical Link Control and Adaptation Protocol (L2CAP) packet whose length field is less than the actual length of the packet.

    Source:Pierre Betouin
    Published:13 Feb 2006
    7.5
    High

    CVE-2006-0669

    Last Modified: 28 Jul 2013

    Multiple SQL injection vulnerabilities in archive.asp in GA's Forum Light allow remote attackers to execute arbitrary SQL commands via the (1) Forum and (2) pages parameter. NOTE: SecurityTracker says that the vendor has disputed this issue, saying that GA Forum Light does not use an SQL database. SecurityTracker's research indicates that the original problem could be due to a vbscript parsing error based on invalid arguments

    Source:Dj_Eyes
    Published:13 Feb 2006
    7.5
    High

    CVE-2006-0668

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in index.php in PwsPHP 1.2.3 allows remote attackers to execute arbitrary SQL commands via the id parameter, possibly in message.php in the espace_membre module. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:papipsycho
    Published:13 Feb 2006
    4.3
    Medium

    CVE-2006-0663

    Last Modified: 29 Jul 2013

    Multiple cross-site scripting (XSS) vulnerabilities in Lotus Domino iNotes Client 6.5.4 and 7.0 allow remote attackers to inject arbitrary web script or HTML via (1) an email subject; (2) an encoded javascript URI, as demonstrated using "java
script:"; or (3) when the Domino Web Access ActiveX control is not installed, via an email attachment filename.

    Source:Jakob Balle
    Published:13 Feb 2006
    6.4
    Medium

    CVE-2006-0660

    Last Modified: 29 Jul 2013

    Multiple directory traversal vulnerabilities in FarsiNews 2.5 and earlier allows remote attackers to (1) read arbitrary files or trigger an error message path disclosure via ".." or invalid names in the archive parameter to index.php, or (2) include arbitrary files via the template parameter to show_archives.php.

    Source:Hamid Ebadi
    Published:13 Feb 2006
    6.8
    Medium

    CVE-2006-0659

    Last Modified: 28 Nov 2016

    Multiple PHP remote file include vulnerabilities in RunCMS 1.2 and earlier, with register_globals and allow_url_fopen enabled, allow remote attackers to execute arbitrary code via the bbPath[path] parameter in (1) class.forumposts.php and (2) forumpollrenderer.php.

    Source:rgod
    Published:13 Feb 2006
    5
    Medium

    CVE-2006-0658

    Last Modified: 16 Apr 2026

    Incomplete blacklist vulnerability in connector.php in FCKeditor 2.0 and 2.2, as used in products such as RunCMS, allows remote attackers to upload and execute arbitrary script files by giving the files specific extensions that are not listed in the Config[DeniedExtensions][File], such as .php.txt.

    Source:rgod
    Published:13 Feb 2006
    7.5
    High

    CVE-2006-0651

    Last Modified: 28 Jul 2013

    SQL injection vulnerability in index.php in vwdev allows remote attackers to execute arbitrary SQL commands via the UID parameter in the definition Page.

    Source:Omid Aghababaei
    Published:13 Feb 2006
    4.3
    Medium

    CVE-2006-0650

    Last Modified: 5 Jan 2018

    Cross-site scripting (XSS) vulnerability in cpaint2.inc.php in the CPAINT library before 2.0.3, as used in multiple scripts, allows remote attackers to inject arbitrary web script or HTML via the cpaint_response_type parameter, which is displayed in a resulting error message, as demonstrated using a hex-encoded IFRAME tag.

    Source:GulfTech Security
    Published:13 Feb 2006
    5
    Medium

    CVE-2006-0647

    Last Modified: 28 Jul 2013

    LDAP service in Sun Java System Directory Server 5.2, running on Linux and possibly other platforms, allows remote attackers to cause a denial of service (memory allocation error) via an LDAP packet with a crafted subtree search request, as demonstrated using the ProtoVer LDAP test suite.

    Source:Evgeny Legerov
    Published:13 Feb 2006
    7.5
    High

    CVE-2006-0644

    Last Modified: 16 Apr 2026

    Multiple directory traversal vulnerabilities in install.php in CPG-Nuke Dragonfly CMS (aka CPG Dragonfly CMS) 9.0.6.1 allow remote attackers to include and execute arbitrary local files via directory traversal sequences and a NUL (%00) character in (1) the newlang parameter and (2) the installlang parameter in a cookie, as demonstrated by using error.php to insert malicious code into a log file, or uploading a malicious .png file, which is then included using install.php.

    Source:rgod
    Published:10 Feb 2006
    7.5
    High

    CVE-2006-0637

    Last Modified: 25 May 2017

    Buffer overflow in cram.dll in QUALCOMM Eudora WorldMail 3.0 allows remote attackers to execute arbitrary code via an IMAP APPEND command with a long message literal argument, as demonstrated by Worldmail.pl. NOTE: this is a different vector and a different manipulation than CVE-2005-4267, so it might be a different vulnerability than CVE-2005-4267.

    Source:muts
    Published:10 Feb 2006
    7.5
    High

    CVE-2006-0628

    Last Modified: 16 Apr 2026

    myquiz.pl in Dale Ray MyQuiz 1.01 allows remote attackers to execute arbitrary commands via shell metacharacters in the URL, which are not properly handled as part of the PATH_INFO environment variable.

    Source:Hessam-x
    Published:10 Feb 2006
    7.5
    High

    CVE-2006-0626

    Last Modified: 21 Jun 2016

    SQL injection vulnerability in spip_acces_doc.php3 in SPIP 1.8.2g and earlier allows remote attackers to execute arbitrary SQL commands via the file parameter.

    Source:rgod
    Published:9 Feb 2006
    6.4
    Medium

    CVE-2006-0625

    Last Modified: 28 Jul 2013

    Directory traversal vulnerability in Spip_RSS.PHP in SPIP 1.8.2g and earlier allows remote attackers to read or include arbitrary files via ".." sequences in the GLOBALS[type_urls] parameter, which could then be used to execute arbitrary code via resultant direct static code injection in the file parameter to spip_acces_doc.php3.

    Source:rgod
    Published:9 Feb 2006
    7.5
    High

    CVE-2006-0624

    Last Modified: 28 Jul 2013

    SQL injection vulnerability in check.asp in Whomp Real Estate Manager XP 2005 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.

    Source:night_warrior771
    Published:9 Feb 2006
    7.2
    High

    CVE-2006-0623

    Last Modified: 1 Apr 2017

    QNX Neutrino RTOS 6.3.0 ships /etc/rc.d/rc.local with world-writable permissions, which allows local users to modify the file and execute arbitrary code at system startup.

    Source:kokanin
    Published:9 Feb 2006
    6.2
    Medium

    CVE-2006-0620

    Last Modified: 16 Apr 2026

    Race condition in phfont in QNX Neutrino RTOS 6.2.1 allows local users to execute arbitrary code via unspecified manipulations of the PHFONT and PHOTON2_PATH environment variables.

    Source:kokanin
    Published:9 Feb 2006
    7.5
    High

    CVE-2006-0586

    Last Modified: 26 Sept 2016

    Multiple SQL injection vulnerabilities in Oracle 10g Release 1 before CPU Jan 2006 allow remote attackers to execute arbitrary SQL commands via multiple parameters in (1) ATTACH_JOB, (2) HAS_PRIVS, and (3) OPEN_JOB functions in the SYS.KUPV$FT package; and (4) UPDATE_JOB, (5) ACTIVE_JOB, (6) ATTACH_POSSIBLE, (7) ATTACH_TO_JOB, (8) CREATE_NEW_JOB, (9) DELETE_JOB, (10) DELETE_MASTER_TABLE, (11) DETACH_JOB, (12) GET_JOB_INFO, (13) GET_JOB_QUEUES, (14) GET_SOLE_JOBNAME, (15) MASTER_TBL_LOCK, and (16) VALID_HANDLE functions in the SYS.KUPV$FT_INT package. NOTE: due to the lack of relevant details from the Oracle advisory, a separate CVE is being created since it cannot be conclusively proven that these issues has been addressed by Oracle. It is unclear which, if any, Oracle Vuln# identifiers apply to these issues.

    Source:Joxean Koret
    Published:8 Feb 2006
    7.5
    High

    CVE-2006-0583

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in mailarticle.php in Clever Copy 3.0 and earlier allows remote attackers to execute arbitrary SQL commands via the ID parameter.

    Source:rgod
    Published:8 Feb 2006
    7.5
    High

    CVE-2006-0565

    Last Modified: 29 Dec 2016

    PHP remote file include vulnerability in inc/backend_settings.php in Loudblog 0.4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the $GLOBALS[path] parameter.

    Source:rgod
    Published:6 Feb 2006
    7.5
    High

    CVE-2006-0564

    Last Modified: 14 Sept 2016

    Stack-based buffer overflow in Microsoft HTML Help Workshop 4.74.8702.0, and possibly earlier versions, and as included in the Microsoft HTML Help 1.4 SDK, allows context-dependent attackers to execute arbitrary code via a .hhp file with a long Contents file field.

    Source:darkeagle
    Published:6 Feb 2006
    7.5
    High

    CVE-2006-0549

    Last Modified: 26 Sept 2016

    SQL injection vulnerability in the SYS.DBMS_METADATA_UTIL package in Oracle Database 10g, and possibly earlier versions, might allow remote attackers to execute arbitrary SQL commands via unknown vectors. NOTE: due to the lack of relevant details from the Oracle advisory, a separate CVE is being created since it cannot be conclusively proven that this issue has been addressed by Oracle. It is possible that this is the same issue as Oracle Vuln# DB05 from the January 2006 CPU, in which case this would be subsumed by CVE-2006-0260. However, there are some inconsistencies that make this unclear, and there is also a possibility that this is related to DB06, which is subsumed by CVE-2006-0259.

    Source:bunker
    Published:4 Feb 2006
    7.5
    High

    CVE-2006-0545

    Last Modified: 28 Jul 2013

    SQL injection vulnerability in showflat.php in Groupee (formerly known as Infopop) UBB.threads 6.3 and earlier allows remote attackers to execute arbitrary SQL commands via the Number parameter.

    Source:k-otik
    Published:4 Feb 2006
    7.5
    High

    CVE-2006-0544

    Last Modified: 21 Jun 2016

    urlmon.dll in Microsoft Internet Explorer 7.0 beta 2 (aka 7.0.5296.0) allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a BGSOUND element with its SRC attribute set to "file://" followed by a large number of "-" (dash of hyphen) characters.

    Source:Tom Ferris
    Published:4 Feb 2006
    4.6
    Medium

    CVE-2006-0539

    Last Modified: 28 Jul 2013

    The convert-fcrontab program in fcron 3.0.0 might allow local users to gain privileges via a long command-line argument, which causes Linux glibc to report heap memory corruption, possibly because a strcpy in the strdup2 function can "overwrite some data."

    Source:Adam Zabrocki
    Published:4 Feb 2006
    7.5
    High

    CVE-2006-0537

    Last Modified: 16 Apr 2026

    Buffer overflow in the POP3 server in Kinesphere Corporation eXchange before 5.0.060125 allows remote attackers to execute arbitrary code via a long RCPT TO argument.

    Source:securma massine
    Published:4 Feb 2006
    4.3
    Medium

    CVE-2006-0534

    Last Modified: 28 Jul 2013

    Multiple cross-site scripting (XSS) vulnerabilities in default.asp in CyberShop Ultimate E-commerce allow remote attackers to inject arbitrary web script or HTML via the (1) ortak or (2) kat parameter.

    Source:B3g0k
    Published:4 Feb 2006
    4.3
    Medium

    CVE-2006-0532

    Last Modified: 28 Jul 2013

    Cross-site scripting (XSS) vulnerability in resultat.asp in SoftMaker Shop allows remote attackers to inject arbitrary web script or HTML via a strSok parameter containing a javascript: URI in an IMG SRC attribute.

    Published:4 Feb 2006
    5
    Medium

    CVE-2006-0528

    Last Modified: 28 Jul 2013

    The cairo library (libcairo), as used in GNOME Evolution and possibly other products, allows remote attackers to cause a denial of service (persistent client crash) via an attached text file that contains "Content-Disposition: inline" in the header, and a very long line in the body, which causes the client to repeatedly crash until the e-mail message is manually removed, possibly due to a buffer overflow, as demonstrated using an XML attachment.

    Source:Mike Davis
    Published:2 Feb 2006
    4.3
    Medium

    CVE-2006-0524

    Last Modified: 28 Jul 2013

    Cross-site scripting (XSS) vulnerability in ashnews.php in Derek Ashauer ashNews 0.83 allows remote attackers to inject arbitrary web script or HTML via the id parameter.

    Source:0o_zeus_o0
    Published:2 Feb 2006
    7.5
    High

    CVE-2006-0522

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in the Authentication Servlet in Symantec Sygate Management Server (SMS) version 4.1 build 1417 and earlier allows remote attackers to execute arbitrary SQL commands and bypass authentication via unknown attack vectors related to a URL.

    Source:Nicob
    Published:2 Feb 2006
    7.5
    High

    CVE-2006-0520

    Last Modified: 16 Apr 2026

    SQL injection vulnerability index.php in Dragoran Portal module 1.3 for Invision Power Board (IPB) allows remote attackers to execute arbitrary SQL commands via the site parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:SkOd
    Published:2 Feb 2006
    4.3
    Medium

    CVE-2006-0518

    Last Modified: 28 Jul 2013

    Cross-site scripting (XSS) vulnerability in index.php3 in SPIP 1.8.2-e and earlier and 1.9 Alpha 2 (5539) and earlier allows remote attackers to inject arbitrary web script or HTML via the lang parameter.

    Source:Siegfried
    Published:2 Feb 2006
    7.5
    High

    CVE-2006-0515

    Last Modified: 25 Aug 2013

    Cisco PIX/ASA 7.1.x before 7.1(2) and 7.0.x before 7.0(5), PIX 6.3.x before 6.3.5(112), and FWSM 2.3.x before 2.3(4) and 3.x before 3.1(7), when used with Websense/N2H2, allows remote attackers to bypass HTTP access restrictions by splitting the GET method of an HTTP request into multiple packets, which prevents the request from being sent to Websense for inspection, aka bugs CSCsc67612, CSCsc68472, and CSCsd81734.

    Source:George D. Gal
    Published:9 May 2006
    5
    Medium

    CVE-2006-0513

    Last Modified: 28 Jul 2013

    Directory traversal vulnerability in pkmslogout in Tivoli Web Server Plug-in 5.1.0.10 in Tivoli Access Manager (TAM) 5.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter.

    Source:Timothy D. Morgan
    Published:6 Feb 2006
    7.5
    High

    CVE-2006-0510

    Last Modified: 28 Jul 2013

    SQL injection vulnerability in userlogin.jsp in Daffodil CRM 1.5 allows remote attackers to execute arbitrary SQL commands via unspecified parameters in a login action.

    Published:1 Feb 2006
    4.3
    Medium

    CVE-2006-0509

    Last Modified: 28 Jul 2013

    Multiple cross-site scripting (XSS) vulnerabilities in clients.php in Cerberus Helpdesk, possibly 2.7, allow remote attackers to inject arbitrary web script or HTML via (1) the contact_search parameter and (2) unspecified url fields.

    Published:1 Feb 2006
    7.5
    High

    CVE-2006-0502

    Last Modified: 28 Jul 2013

    PHP remote file inclusion vulnerability in loginout.php in FarsiNews 2.1 Beta 2 and earlier, with register_globals enabled, allows remote attackers to include arbitrary files via a URL in the cutepath parameter.

    Source:Hamid Ebadi
    Published:1 Feb 2006