5
    Medium

    CVE-2006-0125

    Last Modified: 23 Jul 2013

    Unspecified vulnerability in appserv/main.php in AppServ 2.4.5 allows remote attackers to include arbitrary files via the appserv_root parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. There is not enough detail from these third party sources to know whether this is directory traversal, remote file include, or another issue.

    Source:Xez
    Published:9 Jan 2006
    7.5
    High

    CVE-2006-0123

    Last Modified: 23 Dec 2016

    Multiple SQL injection vulnerabilities in ADN Forum 1.0b allow remote attackers to execute arbitrary SQL commands via the (1) fid parameter in index.php and (2) pagid parameter in verpag.php, and possibly other vectors.

    Source:StAkeR
    Published:9 Jan 2006
    7.5
    High

    CVE-2006-0115

    Last Modified: 23 Jul 2013

    Multiple SQL injection vulnerabilities in OnePlug Solutions OnePlug CMS allow remote attackers to execute arbitrary SQL commands via the (1) Press_Release_ID parameter in press/details.asp, (2) Service_ID parameter in services/details.asp, and (3) Product_ID parameter in products/details.asp.

    Source:Preddy
    Published:9 Jan 2006
    4.3
    Medium

    CVE-2006-0110

    Last Modified: 23 Jul 2013

    Cross-site scripting (XSS) vulnerability in escribir.php in Foro Domus 2.10 allows remote attackers to inject arbitrary web script via the email parameter.

    Source:Aliaksandr Hartsuyeu
    Published:7 Jan 2006
    5
    Medium

    CVE-2006-0103

    Last Modified: 23 Jul 2013

    TinyPHPForum 3.6 and earlier stores the (1) users/[USERNAME].hash and (2) users/[USERNAME].email files under the web root with insufficient access control, which allows remote attackers to list all registered users and possibly obtain other sensitive information.

    Source:Aliaksandr Hartsuyeu
    Published:6 Jan 2006
    7.5
    High

    CVE-2006-0099

    Last Modified: 16 Apr 2026

    PHP remote file include vulnerability in (1) include/templates/categories/default.php and (2) certain other include/templates/categories/ PHP scripts in Valdersoft Shopping Cart 3.0 allows remote attackers to execute arbitrary code via a URL in the catalogDocumentRoot parameter.

    Source:cijfer
    Published:6 Jan 2006
    7.5
    High

    CVE-2006-0097

    Last Modified: 13 Jun 2016

    Stack-based buffer overflow in the create_named_pipe function in libmysql.c in PHP 4.3.10 and 4.4.x before 4.4.3 for Windows allows attackers to execute arbitrary code via a long (1) arg_host or (2) arg_unix_socket argument, as demonstrated by a long named pipe variable in the host argument to the mysql_connect function.

    Source:mercenary
    Published:6 Jan 2006
    7.5
    High

    CVE-2006-0088

    Last Modified: 22 Jul 2013

    SQL injection vulnerability in intouch.lib.php in inTouch 0.5.1 Alpha allows remote attackers to execute arbitrary SQL commands via the user parameter.

    Source:Aliaksandr Hartsuyeu
    Published:5 Jan 2006
    7.5
    High

    CVE-2006-0087

    Last Modified: 28 Jun 2011

    SQL injection vulnerability in (1) pages.php and (2) detail.php in Lizard Cart CMS 1.04 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:cr4wl3r
    Published:5 Jan 2006
    7.5
    High

    CVE-2006-0079

    Last Modified: 22 Jul 2013

    SQL injection vulnerability in auth.php in ScozNet ScozBook BETA 1.1 allows remote attackers to execute arbitrary SQL commands via the username field (adminname variable).

    Source:Aliaksandr Hartsuyeu
    Published:4 Jan 2006
    7.5
    High

    CVE-2006-0076

    Last Modified: 22 Jul 2013

    PHP remote file include vulnerability in forum.php in oaBoard 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the inc parameter.

    Source:Aliaksandr Hartsuyeu
    Published:4 Jan 2006
    7.5
    High

    CVE-2006-0075

    Last Modified: 22 Jul 2013

    Direct static code injection vulnerability in phpBook 1.3.2 and earlier allows remote attackers to execute arbitrary PHP code via the e-mail field (mail variable) in a new message, which is written to a PHP file.

    Source:Aliaksandr Hartsuyeu
    Published:4 Jan 2006
    7.5
    High

    CVE-2006-0074

    Last Modified: 22 Jul 2013

    SQL injection vulnerability in profile.php in PHPenpals allows remote attackers to execute arbitrary SQL commands via the personalID parameter. NOTE: it was later reported that 1.1 and earlier are affected.

    Source:Aliaksandr Hartsuyeu
    Published:4 Jan 2006
    4.3
    Medium

    CVE-2006-0073

    Last Modified: 23 Jul 2013

    Cross-site scripting (XSS) vulnerability in DiscusWare Discus Freeware 3.10.5 and Professional 3.10.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in a URL, which is not properly sanitized from the resulting error message. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:$um$id
    Published:4 Jan 2006
    7.5
    High

    CVE-2006-0072

    Last Modified: 16 Apr 2026

    Buffer overflow in termsh on SCO OpenServer 5.0.7 allows remote attackers to execute arbitrary code via a long -o command line argument. NOTE: this is probably a different vulnerability than CVE-2005-0351 since it involves a distinct attack vector.

    Source:prdelka
    Published:4 Jan 2006
    7.5
    High

    CVE-2006-0066

    Last Modified: 22 Jul 2013

    SQL injection vulnerability in index.php in PHPjournaler 1.0 allows remote attackers to execute arbitrary SQL commands via the readold parameter.

    Source:Aliaksandr Hartsuyeu
    Published:3 Jan 2006
    7.5
    High

    CVE-2006-0064

    Last Modified: 16 Apr 2026

    PHP remote file include vulnerability in includes/orderSuccess.inc.php in CubeCart allows remote attackers to execute arbitrary PHP code via a URL in the glob[rootDir] parameter.

    Source:cijfer
    Published:3 Jan 2006
    7.6
    High

    CVE-2006-0058

    Last Modified: 30 Aug 2016

    Signal handler race condition in Sendmail 8.13.x before 8.13.6 allows remote attackers to execute arbitrary code by triggering timeouts in a way that causes the setjmp and longjmp function calls to be interrupted and modify unexpected memory locations.

    Source:redsand
    Published:22 Mar 2006
    2.6
    Low

    CVE-2006-0053

    Last Modified: 14 Aug 2013

    Imager (libimager-perl) before 0.50 allows user-assisted attackers to cause a denial of service (segmentation fault) by writing a 2- or 4-channel JPEG image (or a 2-channel TGA image) to a scalar, which triggers a NULL pointer dereference.

    Source:Kjetil Kjernsmo
    Published:10 Apr 2006
    5
    Medium

    CVE-2006-0047

    Last Modified: 16 Apr 2026

    packets.c in Freeciv 2.0 before 2.0.8 allows remote attackers to cause a denial of service (server crash) via crafted packets with negative compressed size values.

    Source:Luigi Auriemma
    Published:7 Mar 2006
    4.3
    Medium

    CVE-2006-0032

    Last Modified: 24 Sept 2013

    Cross-site scripting (XSS) vulnerability in the Indexing Service in Microsoft Windows 2000, XP, and Server 2003, when the Encoding option is set to Auto Select, allows remote attackers to inject arbitrary web script or HTML via a UTF-7 encoded URL, which is injected into an error message whose charset is set to UTF-7.

    Source:Eiji James Yoshida
    Published:12 Sept 2006
    5.1
    Medium

    CVE-2006-0030

    Last Modified: 5 Aug 2013

    Unspecified vulnerability in Microsoft Excel 2000, 2002, and 2003, in Microsoft Office 2000 SP3 and other packages, allows user-assisted attackers to execute arbitrary code via an Excel file with a malformed graphic, which leads to memory corruption.

    Published:14 Mar 2006
    6.5
    Medium

    CVE-2006-0026

    Last Modified: 7 Jun 2011

    Buffer overflow in Microsoft Internet Information Services (IIS) 5.0, 5.1, and 6.0 allows local and possibly remote attackers to execute arbitrary code via crafted Active Server Pages (ASP).

    Source:cocoruder
    Published:11 Jul 2006
    7.8
    High

    CVE-2006-0021

    Last Modified: 16 Apr 2026

    Microsoft Windows XP SP1 and SP2, and Server 2003 up to SP1, allows remote attackers to cause a denial of service (hang) via an IGMP packet with an invalid IP option, aka the "IGMP v3 DoS Vulnerability."

    Source:Alexey Sintsov
    Published:14 Feb 2006
    6.8
    Medium

    CVE-2006-0015

    Last Modified: 16 Aug 2013

    Cross-site scripting (XSS) vulnerability in _vti_bin/_vti_adm/fpadmdll.dll in Microsoft FrontPage Server Extensions 2002 and SharePoint Team Services allows remote attackers to inject arbitrary web script or HTML, then leverage the attack to execute arbitrary programs or create new accounts, via the (1) operation, (2) command, and (3) name parameters.

    Source:Esteban Martinez Fayo
    Published:11 Apr 2006
    9.3
    Critical

    CVE-2006-0006

    Last Modified: 21 Jun 2016

    Heap-based buffer overflow in the bitmap processing routine in Microsoft Windows Media Player 7.1 on Windows 2000 SP4, Media Player 9 on Windows 2000 SP4 and XP SP1, and Media Player 10 on XP SP1 and SP2 allows remote attackers to execute arbitrary code via a crafted bitmap (.BMP) file that specifies a size of 0 but contains additional data.

    Source:ATmaCA
    Published:14 Feb 2006
    9.3
    Critical

    CVE-2006-0005

    Last Modified: 29 Jun 2016

    Buffer overflow in the plug-in for Microsoft Windows Media Player (WMP) 9 and 10, when used in browsers other than Internet Explorer and set as the default application to handle media files, allows remote attackers to execute arbitrary code via HTML with an EMBED element containing a long src attribute.

    Source:Matthew Murphy
    Published:14 Feb 2006
    5.1
    Medium

    CVE-2006-0003

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in the RDS.Dataspace ActiveX control, which is contained in ActiveX Data Objects (ADO) and distributed in Microsoft Data Access Components (MDAC) 2.7 and 2.8, allows remote attackers to execute arbitrary code via unknown attack vectors.

    Source:H D Moore
    Published:12 Apr 2006
    9.8
    Critical

    CVE-2005-4891

    Last Modified: 5 Jan 2018

    Simple Machine Forum (SMF) versions 1.0.4 and earlier have an SQL injection vulnerability that allows remote attackers to inject arbitrary SQL statements.

    Source:GulfTech Security
    Published:15 Jan 2020
    5
    Medium

    CVE-2005-4880

    Last Modified: 11 Jun 2013

    Jax Guestbook 3.1 and 3.31 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain IP addresses of users via a direct request to (1) guestbook, (2) guestbook_ips2block, (3) ips2block, and (4) formmailer/logfile.csv.

    Source:Lostmon
    Published:31 Mar 2009
    4.3
    Medium

    CVE-2005-4879

    Last Modified: 12 Feb 2014

    Multiple cross-site scripting (XSS) vulnerabilities in jax_guestbook.php in Jax Guestbook 3.1 and 3.31 allow remote attackers to inject arbitrary web script or HTML via the (1) gmt_ofs and (2) language parameters. NOTE: the page parameter is already covered by CVE-2006-1913. NOTE: it was later reported that 3.50 is also affected.

    Source:ZoRLu
    Published:31 Mar 2009
    2.1
    Low

    CVE-2005-4869

    Last Modified: 10 Mar 2013

    The (1) to_char and (2) to_date function in IBM DB2 8.1 allows local users to cause a denial of service (application crash) via an empty string in the second parameter, which causes a null pointer dereference.

    Source:Chris Anley
    Published:31 Dec 2005
    7.1
    High

    CVE-2005-4868

    Last Modified: 10 Mar 2013

    Shared memory sections and events in IBM DB2 8.1 have default permissions of read and write for the Everyone group, which allows local users to gain unauthorized access, gain sensitive information, such as cleartext passwords, and cause a denial of service.

    Source:Chris Anley
    Published:31 Dec 2005
    7.5
    High

    CVE-2005-4832

    Last Modified: 14 May 2013

    SQL injection vulnerability in the Oracle Database Server 10g allows remote authenticated users to execute arbitrary SQL commands with elevated privileges via the SUBSCRIPTION_NAME parameter in the (1) SYS.DBMS_CDC_SUBSCRIBE and (2) SYS.DBMS_CDC_ISUBSCRIBE packages, a different vector than CVE-2005-1197.

    Source:bunker
    Published:31 Dec 2005
    7.5
    High

    CVE-2005-4821

    Last Modified: 17 Jun 2013

    Multiple SQL injection vulnerabilities in Land Down Under (LDU) v801 and earlier allow remote attackers to execute arbitrary SQL commands via parameters including (1) the m parameter in auth.php, (2) the f parameter in events.php, or (3) the e parameter in plug.php.

    Source:GroundZero Security Research
    Published:31 Dec 2005
    5
    Medium

    CVE-2005-4809

    Last Modified: 5 May 2013

    Mozilla Firefox 1.0.1 and possibly other versions, including Mozilla and Thunderbird, allows remote attackers to spoof the URL in the Status Bar via an A HREF tag that contains a TABLE tag that contains another A tag.

    Source:bitlance winter
    Published:31 Dec 2005
    7.5
    High

    CVE-2005-4807

    Last Modified: 20 Sept 2013

    Stack-based buffer overflow in the as_bad function in messages.c in the GNU as (gas) assembler in Free Software Foundation GNU Binutils before 20050721 allows attackers to execute arbitrary code via a .c file with crafted inline assembly code.

    Source:Tavis Ormandy
    Published:31 Dec 2005
    5.1
    Medium

    CVE-2005-4799

    Last Modified: 13 Oct 2017

    Multiple cross-site scripting (XSS) vulnerabilities in Yet Another PHP Image Gallery (YaPIG) 0.95b and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the Homepage field (aka the Website field) in an "image-related comment" and (2) the img_size field in view.php. NOTE: due to lack of details from the researcher, it is not clear whether the comment vector overlaps CVE-2005-1886.

    Published:31 Dec 2005
    7.5
    High

    CVE-2005-4792

    Last Modified: 25 May 2016

    SQL injection vulnerability in index.php in Appalachian State University phpWebSite 0.10.1 and earlier allows remote attackers to execute arbitrary SQL commands via the module parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:RusH
    Published:31 Dec 2005
    5
    Medium

    CVE-2005-4781

    Last Modified: 5 Jul 2013

    Multiple SQL injection vulnerabilities in SergiDs Top Music module 3.0 PR3 and earlier for PHP-Nuke allow remote attackers to execute arbitrary SQL commands via the (1) idartist, (2) idsong, and (3) idalbum parameters to modules.php.

    Source:r0t
    Published:31 Dec 2005
    3.7
    Low

    CVE-2005-4780

    Last Modified: 16 Jul 2013

    Cross-site scripting (XSS) vulnerability in Fidra Lighthouse CMS 1.1.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the search parameter in a query_string to the home page. NOTE: The vendor disputes this issue, saying "Lighthouse does not in any way make use of the PHP technology. [It] is an application server ... A technology like this cannot be susceptible to client-side cross-site-scripting-attacks on its own, but only applications created based on such a technology. This does not only apply to Lighthouse, but also to Perl, PHP or web applications based on Java Servlet technology." Since the original researcher is known to test demo pages and is sometimes inaccurate, it is likely that this issue will be REJECTED

    Source:r0t3d3Vil
    Published:31 Dec 2005
    4.3
    Medium

    CVE-2005-4774

    Last Modified: 23 Jun 2013

    Cross-site scripting (XSS) vulnerability in Xerver 4.17 allows remote attackers to inject arbitrary web script or HTML after a /%00/ sequence at the end of the URI.

    Source:Ziv Kamir
    Published:31 Dec 2005
    7.5
    High

    CVE-2005-4770

    Last Modified: 21 Jun 2013

    SQL injection vulnerability in an unspecified Accelerated Enterprise Solutions product, possibly Accelerated E Solutions, allows remote attackers to execute arbitrary SQL commands via the password parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Andysheh Soltani
    Published:31 Dec 2005
    7.5
    High

    CVE-2005-4769

    Last Modified: 26 Jun 2013

    SQL injection vulnerability in addrbook.php in Belchior Foundry vCard PRO 3.1 allows remote attackers to execute arbitrary SQL commands via the addr_id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:almaster
    Published:31 Dec 2005
    6.4
    Medium

    CVE-2005-4734

    Last Modified: 7 Mar 2011

    Stack-based buffer overflow in IISWebAgentIF.dll in RSA Authentication Agent for Web (aka SecurID Web Agent) 5.2 and 5.3 for IIS allows remote attackers to execute arbitrary code via a long url parameter in the Redirect method.

    Source:Metasploit
    Published:31 Dec 2005
    7.5
    High

    CVE-2005-4724

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in post.php in PhpTagCool 1.0.3 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For field in an HTTP header.

    Source:Megabyte
    Published:31 Dec 2005
    5
    Medium

    CVE-2005-4723

    Last Modified: 16 Apr 2026

    D-Link DI-524 Wireless Router, DI-624 Wireless Router, and DI-784 allow remote attackers to cause a denial of service (device reboot) via a series of crafted fragmented UDP packets, possibly involving a missing fragment.

    Source:Aaron Portnoy
    Published:31 Dec 2005
    5
    Medium

    CVE-2005-4720

    Last Modified: 5 Oct 2017

    Mozilla Firefox 1.0.7 and earlier on Linux allows remote attackers to cause a denial of service (client crash) via an IFRAME element with a large value of the WIDTH attribute, which triggers a problem related to representation of floating-point numbers, leading to an infinite loop of widget resizes and a corresponding large number of function calls on the stack.

    Source:Tom Ferris
    Published:31 Dec 2005
    5
    Medium

    CVE-2005-4718

    Last Modified: 7 Jun 2016

    Opera 8.02 and earlier allows remote attackers to cause a denial of service (client crash) via (1) a crafted HTML file with a "content: url(0);" style attribute, a "bodyA" tag, a long string, and a "u" tag with a long attribute, as demonstrated by opera.html; and (2) a BGSOUND element with a "margin:-99;" STYLE attribute.

    Source:posidron
    Published:31 Dec 2005
    5
    Medium

    CVE-2005-4717

    Last Modified: 1 Jul 2013

    Microsoft Internet Explorer 6.0 on Windows NT 4.0 SP6a, Windows 2000 SP4, Windows XP SP1, Windows XP SP2, and Windows Server 2003 SP1 allows remote attackers to cause a denial of service (client crash) via a certain combination of a malformed HTML file and a CSS file that triggers a null dereference, probably related to rendering of a DIV element that contains a malformed IMG tag, as demonstrated by IEcrash.htm and IEcrash.rar.

    Published:31 Dec 2005