Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

6,608 results · Page 85/133
5.0
CVE-2006-0827

Cross-site scripting vulnerability in ESS/ Network Controller and MicroServer Web Server in Xerox WorkCentre Pro and Xer

5.0
CVE-2006-0828

Unspecified vulnerability in ESS/ Network Controller and MicroServer Web Server in Xerox WorkCentre Pro and Xerox WorkCe

5.0
CVE-2006-0829

Cross-site scripting vulnerability in E-Blah Platinum 9.7 allows remote attackers to inject arbitrary web script or HTML

5.0
CVE-2006-0839

The frag3 preprocessor in Sourcefire Snort 2.4.3 does not properly reassemble certain fragmented packets with IP options

5.0
CVE-2006-0840

manage_user_page.php in Mantis 1.00rc4 and earlier does not properly handle a sort parameter containing a ' (quote) char

5.0
CVE-2006-0843

Leif M. Wright's Blog 3.5 stores the config file and other txt files under the web root with insufficient access control

5.0
CVE-2006-0847

Directory traversal vulnerability in the staticfilter component in CherryPy before 2.1.1 allows remote attackers to read

5.0
CVE-2006-0803

The signature verification functionality in the YaST Online Update (YOU) script handling relies on a gpg feature that is

5.0
CVE-2006-0859

Michael Salzer Guestbox 0.6, and other versions before 0.8, allows remote attackers to post an admin comment to a guestb

5.0
CVE-2006-0861

Michael Salzer Guestbox 0.6, and other versions before 0.8, allows remote attackers to obtain the source IP addresses of

5.0
CVE-2006-0862

Unspecified vulnerability in InfoVista PortalSE 2.0 Build 20087 on Solaris 8 without the IV00038969 hotfix allows remote

5.0
CVE-2006-0863

InfoVista PortalSE 2.0 Build 20087 on Solaris 8 allows remote attackers to obtain sensitive information by specifying a

5.0
CVE-2006-0865

PunBB 1.2.10 and earlier allows remote attackers to cause a denial of service (resource consumption) by registering many

5.0
CVE-2006-0866

PunBB 1.2.10 and earlier allows remote attackers to conduct brute force guessing attacks for an account's password, whic

5.0
CVE-2006-0867

Buffer overflow in certain versions of South River (aka SRT) WebDrive, possibly version 6.08 build 1131 and version 8, a

5.0
CVE-2006-0377

CRLF injection vulnerability in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary IMAP commands vi

5.0
CVE-2006-0872

Directory traversal vulnerability in init.inc.php in Coppermine Photo Gallery 1.4.3 and earlier allows remote attackers

5.0
CVE-2006-0873

Absolute path traversal vulnerability in docs/showdocs.php in Coppermine Photo Gallery 1.4.3 and earlier allows remote a

5.0
CVE-2006-0875

Cross-site scripting vulnerability in ratefile.php in RunCMS 1.3a5 allows remote attackers to inject arbitrary web scrip

5.0
CVE-2006-0876

POPFile before 0.22.4 allows remote attackers to cause a denial of service (application crash) via unspecified vectors i

5.0
CVE-2006-0877

Cross-site scripting vulnerability in Easy Forum 2.5 allows remote attackers to inject arbitrary web script or HTML via

5.0
CVE-2006-0878

Noah's Classifieds 1.3 allows remote attackers to obtain the installation path via a direct request to include files, as

5.0
CVE-2006-0882

Directory traversal vulnerability in include.php in Noah's Classifieds 1.3 allows remote attackers to include arbitrary

5.0
CVE-2006-0890

Directory traversal vulnerability in SpeedProject Squeez 5.1, as used in (1) ZipStar 5.1 and (2) SpeedCommander 11.01.44

5.0
CVE-2006-0891

Multiple directory traversal vulnerabilities in NOCC Webmail 1.0 allow remote attackers to include arbitrary files via .

5.0
CVE-2006-0893

NOCC Webmail 1.0 allows remote attackers to obtain sensitive information via a direct request to (1) the profiles direct

5.0
CVE-2006-0895

NOCC Webmail 1.0 allows remote attackers to obtain the installation path via a direct request to html/header.php.

5.0
CVE-2006-0909

Invision Power Board (IPB) 2.1.4 and earlier allows remote attackers to view sensitive information via a direct request

5.0
CVE-2006-0910

Invision Power Board (IPB) 2.1.4 and earlier allows remote attackers to list directory contents via a direct request to

5.0
CVE-2006-0911

NmService.exe in Ipswitch WhatsUp Professional 2006 allows remote attackers to cause a denial of service (CPU consumptio

5.0
CVE-2006-0912

Oreka before 0.5 allows remote attackers to cause a denial of service (application crash) via a "certain RTP sequence."

5.0
CVE-2006-0922

CubeCart 3.0 through 3.6 does not properly check authorization for an administration session because of a missing auth.i

5.0
CVE-2006-0925

Format string vulnerability in the IMAP4rev1 server in Alt-N MDaemon 8.1.1 and possibly 8.1.4 allows remote attackers to

5.0
CVE-2006-0928

The POP3 Server in ArGoSoft Mail Server Pro 1.8 allows remote attackers to obtain sensitive information via the _DUMP co

5.0
CVE-2006-0931

Directory traversal vulnerability in PEAR::Archive_Tar 1.2, and other versions before 1.3.2, allows remote attackers to

5.0
CVE-2006-0932

Directory traversal vulnerability in zip.lib.php 0.1.1 in PEAR::Archive_Zip allows remote attackers to create and overwr

5.0
CVE-2006-0937

U.N.U. Mailgust 1.9 allows remote attackers to obtain sensitive information via a direct request to index.php with metho

5.0
CVE-2006-0383

IPSec when used with VPN networks in Mac OS X 10.4 through 10.4.5 allows remote attackers to cause a denial of service (

5.0
CVE-2006-0960

uConfig agent in Compex NetPassage WPE54G router allows remote attackers to cause a denial of service (unresposiveness)

5.0
CVE-2006-0971

Directory traversal vulnerability in Lionel Reyero DirectContact 0.3b allows remote attackers to read arbitrary files vi

5.0
CVE-2006-0972

SQL injection vulnerability in news.php in Tony Baird Fantastic News 2.1.1 allows remote attackers to execute arbitrary

5.0
CVE-2006-0976

Directory traversal vulnerability in scan_lang_insert.php in Boris Herbiniere-Seve SPiD 1.3.1 allows remote attackers to

5.0
CVE-2006-0977

Craig Morrison Mail Transport System Professional (aka MTS Pro) acts as an open relay when configured to relay all mail

5.0
CVE-2006-0982

The on-access scanner for McAfee Virex 7.7 for Macintosh, in some circumstances, might not activate when malicious conte

5.0
CVE-2006-0986

WordPress 2.0.1 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) default-

5.0
CVE-2006-0987

The default configuration of ISC BIND before 9.4.1-P1, when configured as a caching name server, allows recursive querie

5.0
CVE-2006-0995

EMC Dantz Retrospect 7 backup client 7.0.107, and other versions before 7.0.109, and 6.5 before 6.5.138 allows remote at

5.0
CVE-2006-1001

SQL injection vulnerability in the board module in LanSuite LanParty Intranet System 2.0.6 and 2.1.0 beta allows remote

5.0
CVE-2006-1003

The backup configuration option in NETGEAR WGT624 Wireless Firewall Router stores sensitive information in cleartext, wh

5.0
CVE-2006-0814

response.c in Lighttpd 1.4.10 and possibly previous versions, when run on Windows, allows remote attackers to read arbit

Scan for 2006 Vulnerabilities

CyberStrike detects these CVEs across your infrastructure automatically.

Get Started