Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

6,608 results · Page 91/133
5.0
CVE-2006-2434

Unspecified vulnerability in WebSphere 5.1.1 (or any earlier cumulative fix) Common Configuration Mode + CommonArchive a

5.0
CVE-2006-2437

The viewfile servlet in the documentation package (resin-doc) for Caucho Resin 3.0.17 and 3.0.18 allows remote attackers

5.0
CVE-2006-2438

Directory traversal vulnerability in the viewfile servlet in the documentation package (resin-doc) for Caucho Resin 3.0.

5.0
CVE-2006-2441

Pioneers meta-server before 0.9.55, when the server-console is not installed, allows remote attackers to cause a denial

5.0
CVE-2006-2461

BEA WebLogic Server before 8.1 Service Pack 4 does not properly set the Quality of Service in certain circumstances, whi

5.0
CVE-2006-2462

BEA WebLogic Server 8.1 before Service Pack 4 and 7.0 before Service Pack 6, may send sensitive data over non-secure cha

5.0
CVE-2006-2463

view_album.php in SelectaPix 1.31 and earlier allows remote attackers to obtain the installation path via a certain requ

5.0
CVE-2006-2471

Multiple vulnerabilities in BEA WebLogic Server 8.1 through SP4, 7.0 through SP6, and 6.1 through SP7 leak sensitive inf

5.0
CVE-2006-2476

Bitrix Site Manager 4.1.x stores updater.log under the web document root with insufficient access control, which allows

5.0
CVE-2006-2478

Bitrix Site Manager 4.1.x allows remote attackers to redirect users to other websites via a modified back_url during a H

5.0
CVE-2006-2479

The Update functionality in Bitrix Site Manager 4.1.x does not verify the authenticity of downloaded updates, which allo

5.0
CVE-2006-2520

Directory traversal vulnerability in BitZipper 4.1.2 SR-1 and earlier allows remote attackers to create files in arbitra

5.0
CVE-2006-2529

editor/filemanager/upload/php/upload.php in FCKeditor before 2.3 Beta, when the upload feature is enabled, does not veri

5.0
CVE-2006-2530

avatar_upload.asp in Avatar MOD 1.3 for Snitz Forums 3.4, and possibly other versions, allows remote attackers to bypass

5.0
CVE-2006-2534

Destiney Links Script 2.1.2 does not protect library and other support files, which allows remote attackers to obtain th

5.0
CVE-2006-2535

index.php in Destiney Links Script 2.1.2 allows remote attackers to obtain the installation path via an invalid show par

5.0
CVE-2006-0747

Integer underflow in Freetype before 2.2 allows remote attackers to cause a denial of service (crash) via a font file wi

5.0
CVE-2006-2540

Privacy leak in install.php for Diesel PHP Job Site sends sensitive information such as user credentials to an e-mail ad

5.0
CVE-2006-2546

A recommended admin password reset mechanism for BEA WebLogic Server 8.1, when followed before October 10, 2005, causes

5.0
CVE-2006-2552

Jemscripts DownloadControl 1.0 allows remote attackers to obtain sensitive information via an invalid dcid parameter to

5.0
CVE-2006-2555

The parse_command function in Genecys 0.2 and earlier allows remote attackers to cause a denial of service (crash) via a

5.0
CVE-2006-2566

Alstrasoft Article Manager Pro 1.6 allows remote attackers to obtain sensitive information via (1) a quote character or

5.0
CVE-2006-2575

The setFrame function in Lib/2D/Surface.hpp for NetPanzer 0.8 and earlier allows remote attackers to cause a denial of s

5.0
CVE-2006-2587

Buffer overflow in the WebTool HTTP server component in (1) PunkBuster before 1.229, as used by multiple products includ

5.0
CVE-2006-2588

Russcom PHPImages allows remote attackers to upload files of arbitrary types by uploading a file with a .gif extension.

5.0
CVE-2006-2591

Unspecified vulnerability in e107 before 0.7.5 has unknown impact and remote attack vectors related to an "emailing expl

5.0
CVE-2006-2617

(1) AlstraSoft Web Host Directory 1.2, aka (2) HyperStop WebHost Directory 1.2, allows remote attackers to obtain the in

5.0
CVE-2006-2661

ftutil.c in Freetype before 2.2 allows remote attackers to cause a denial of service (crash) via a crafted font file tha

5.0
CVE-2006-2671

SQL injection vulnerability in ChatPat 1.0 allows remote attackers to execute arbitrary SQL commands via the nickname fi

5.0
CVE-2006-2676

Dispatch.cgi/_user/uservCard/ in SiteScape Forum 7.2 and possibly earlier generates different responses in a way that al

5.0
CVE-2006-2677

SiteScape Forum 7.2 and possibly earlier stores the avf.rc configuraiton file under the web document root with insuffici

5.0
CVE-2006-2691

Unspecified "information leakage" vulnerabilities in aMuleWeb for AMule before 2.1.2 allow remote attackers to access ar

5.0
CVE-2006-2692

Multiple unspecified vulnerabilities in aMuleWeb for AMule before 2.1.2 allow remote attackers to read arbitrary image,

5.0
CVE-2006-2702

vars.php in WordPress 2.0.2, possibly when running on Mac OS X, allows remote attackers to spoof their IP address via a

5.0
CVE-2006-2704

Secure Elements Class 5 AVR server and client (aka C5 EVM) before 2.8.1 send messages in cleartext, which allows remote

5.0
CVE-2006-2705

Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 allows remote attackers to cause an unspecified denial of s

5.0
CVE-2006-2706

Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 allows remote attackers to cause a denial of service via fo

5.0
CVE-2006-2707

Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 does not validate the peer certificate when obtaining an up

5.0
CVE-2006-2708

Secure Elements Class 5 AVR client (aka C5 EVM) before 2.8.1 allows remote attackers to read portions of process memory

5.0
CVE-2006-2709

Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 do not validate the source address of a message, which allows remo

5.0
CVE-2006-2710

Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 uses the same invariant RSA key for all installations, which allow

5.0
CVE-2006-2711

Secure Elements Class 5 AVR (aka C5 EVM) 2.8.1 and earlier, and possibly later 2.8.x releases, uses the same initializat

5.0
CVE-2006-2712

Secure Elements Class 5 AVR (aka C5 EVM) client and server before 2.8.1 do not verify the integrity of a message digest,

5.0
CVE-2006-2713

Secure Elements Class 5 AVR client (aka C5 EVM) before 2.8.1 generates predictable CEIDs, which allows remote attackers

5.0
CVE-2006-2714

Secure Elements Class 5 AVR client (aka C5 EVM) before 2.8.1 does not validate the CEID of an incoming message, which al

5.0
CVE-2006-2723

Unspecified versions of Mozilla Firefox allow remote attackers to cause a denial of service (crash) via a web page that

5.0
CVE-2006-2703

The RedCarpet command-line client (rug) does not verify SSL certificates from a server, which allows remote attackers to

5.0
CVE-2006-2733

membership.asp in Mini-Nuke 2.3 and earlier uses plaintext security codes, which allows remote attackers to register mul

5.0
CVE-2006-2734

enter.asp in Mini-Nuke 2.3 and earlier makes it easier for remote attackers to conduct password guessing attacks by sett

5.0
CVE-2006-2754

Stack-based buffer overflow in st.c in slurpd for OpenLDAP before 2.3.22 might allow attackers to execute arbitrary code

Scan for 2006 Vulnerabilities

CyberStrike detects these CVEs across your infrastructure automatically.

Get Started