Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
398,899 CVEs1,728 in CISA KEV17,272 with EPSS ≥ 10%25,049 with a public exploitUpdated 29 September 2026
25,049 results · page 379 of 501
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2006-4948 | Stack-based buffer overflow in tftpd.exe in ProSysInfo TFTP Server TFTPDWIN 0.4.2 and earlier allows remote attackers to execute arbitrary code or cause a denial of service via a long file name. | EXPLOIT ×3 ✓HIGH 7.5EPSS 55.0% | 23 September 2006 |
| CVE-2006-4946 | PHP remote file inclusion vulnerability in include/startup.inc.php in CMSDevelopment Business Card Web Builder (BCWB) 0.99, and possibly 2.5 Beta and earlier, allows remote attackers to execute arbitrary PHP code via a URL in the root_path parameter. | EXPLOIT ✓MEDIUM 5.1EPSS 2.63% | 23 September 2006 |
| CVE-2006-4945 | Multiple PHP remote file inclusion vulnerabilities in Cardway (aka Frederic Boudaud) DigitalWebShop 1.128 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the _PHPLIB[libdir] parameter to (1) rechnung.php or (2) prepend.php. | EXPLOIT ✓MEDIUM 5.1EPSS 2.63% | 23 September 2006 |
| CVE-2006-4944 | PHP remote file inclusion vulnerability in includes/pear/Net/DNS/RR.php in ProgSys 0.151 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpdns_basedir parameter. | EXPLOIT ✓HIGH 7.5EPSS 2.47% | 23 September 2006 |
| CVE-2006-4901 | Computer Associates (CA) eTrust Security Command Center 1.0 and r8 up to SP1 CR2, and eTrust Audit 1.5 and r8, allows remote attackers to spoof alerts and conduct replay attacks by invoking eTSAPISend.exe with the desired arguments. | EXPLOIT ✓MEDIUM 6.4EPSS 11.0% | 22 September 2006 |
| CVE-2006-4900 | Directory traversal vulnerability in Computer Associates (CA) eTrust Security Command Center 1.0 and r8 up to SP1 CR2, allows remote authenticated users to read and delete arbitrary files via ".." sequences in the eSCCAdHocHtmlFile parameter to… | EXPLOIT ✓MEDIUM 5.5EPSS 8.35% | 22 September 2006 |
| CVE-2006-4899 | The ePPIServlet script in Computer Associates (CA) eTrust Security Command Center 1.0 and r8 up to SP1 CR2, when running on Windows, allows remote attackers to obtain the web server path via a "'" (single quote) in the PIProfile function, which leaks… | EXPLOIT ✓MEDIUM 5.0EPSS 10.5% | 22 September 2006 |
| CVE-2006-3507 | Multiple stack-based buffer overflows in the AirPort wireless driver on Apple Mac OS X 10.3.9 and 10.4.7 allow physically proximate attackers to execute arbitrary code by injecting crafted frames into a wireless network. | EXPLOIT ✓HIGH 7.2EPSS 1.46% | 21 September 2006 |
| CVE-2006-4923 | Cross-site scripting (XSS) vulnerability in search.php in eSyndiCat Portal System allows remote attackers to inject arbitrary web script or HTML via the what parameter. | EXPLOIT ✓MEDIUM 4.3EPSS 4.38% | 21 September 2006 |
| CVE-2006-4922 | Unrestricted file upload vulnerability in starnet/editors/htmlarea/popups/images.php in Site@School (S@S) 2.4.02 and earlier allows remote attackers to upload and execute arbitrary files with executable extensions. | EXPLOIT ✓MEDIUM 5.0EPSS 6.98% | 21 September 2006 |
| CVE-2006-4921 | PHP remote file inclusion vulnerability in Site@School (S@S) 2.4.03 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the cmsdir parameter to starnet/modules/include/include.php. | EXPLOIT ✓HIGH 7.5EPSS 6.96% | 21 September 2006 |
| CVE-2006-4920 | Multiple PHP remote file inclusion vulnerabilities in Site@School (S@S) 2.4.02 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the cmsdir parameter to (1) starnet/modules/sn_allbum/slideshow.php, and (2)… | EXPLOIT ✓HIGH 7.5EPSS 11.3% | 21 September 2006 |
| CVE-2006-4918 | Multiple PHP remote file inclusion vulnerabilities in Simple Discussion Board 0.1.0 allow remote attackers to execute arbitrary PHP code via a URL in the (1) env_dir parameter to (a) blank.php, (b) admin.php, or (c) builddb.php, and the (2) script_root… | EXPLOIT ✓HIGH 7.5EPSS 7.85% | 21 September 2006 |
| CVE-2006-4917 | Cross-site scripting (XSS) vulnerability in search.php in PT News 1.7.8 allows remote attackers to inject arbitrary web script or HTML via the pgname parameter. | EXPLOIT ✓MEDIUM 4.3EPSS 4.36% | 21 September 2006 |
| CVE-2006-4916 | SQL injection vulnerability in uye_profil.asp in Tekman Portal (TR) 1.0 allows remote attackers to execute arbitrary SQL commands via the uye_id parameter. | EXPLOIT ✓HIGH 7.5EPSS 2.31% | 21 September 2006 |
| CVE-2006-4915 | Cross-site scripting (XSS) vulnerability in index.php in Innovate Portal 2.0 allows remote attackers to inject arbitrary web script or HTML via the content parameter. | EXPLOIT ✓MEDIUM 4.3EPSS 4.02% | 21 September 2006 |
| CVE-2006-4913 | Directory traversal vulnerability in chat/getStartOptions.php in AlstraSoft E-friends 4.85 allows remote attackers to include arbitrary local files and possibly execute arbitrary code via a .. | EXPLOIT ✓HIGH 7.5EPSS 9.73% | 21 September 2006 |
| CVE-2006-4912 | PHP remote file inclusion vulnerability in PHP DocWriter 0.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the script parameter. | EXPLOIT ✓HIGH 7.5EPSS 6.28% | 21 September 2006 |
| CVE-2006-4906 | SQL injection vulnerability in modules/calendar/week.php in More.groupware 0.74 allows remote attackers to execute arbitrary SQL commands via the new_calendarid parameter. | EXPLOIT ✓HIGH 7.5EPSS 2.32% | 21 September 2006 |
| CVE-2006-4904 | Dynamic variable evaluation vulnerability in cmpi.php in Qualiteam X-Cart 4.1.3 and earlier allows remote attackers to overwrite arbitrary program variables and execute arbitrary PHP code, as demonstrated by PHP remote file inclusion via the xcart_dir… | EXPLOITHIGH 7.5EPSS 6.96% | 21 September 2006 |
| CVE-2006-4438 | Heap-based buffer overflow in SpIDer for Dr.Web Scanner for Linux 4.33, and possibly earlier versions, allows remote attackers to execute arbitrary code via an LHA archive with an extended header that contains a long directory name. | EXPLOIT ✓MEDIUM 6.4EPSS 10.5% | 20 September 2006 |
| CVE-2006-4898 | PHP remote file inclusion vulnerability in include/phpxd/phpXD.php in guanxiCRM 0.9.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the appconf[rootpath] parameter. | EXPLOIT ✓HIGH 7.5EPSS 6.28% | 19 September 2006 |
| CVE-2006-4897 | CMtextS 1.0 and earlier stores users_logins/admin.txt under the web document root with insufficient access control, which allows remote attackers to obtain the administrator password. | EXPLOIT ✓MEDIUM 5.0EPSS 8.02% | 19 September 2006 |
| CVE-2006-4894 | Cross-site scripting (XSS) vulnerability in forms/lostpassword.php in iDevSpot NixieAffiliate 1.9 and earlier allows remote attackers to inject arbitrary web script or HTML via the error parameter. | EXPLOIT ✓MEDIUM 4.3EPSS 4.02% | 19 September 2006 |
| CVE-2006-4892 | SQL injection vulnerability in faqview.asp in Techno Dreams FAQ Manager Package 1.0 allows remote attackers to execute arbitrary SQL commands via the key parameter. | EXPLOIT ✓HIGH 7.5EPSS 2.60% | 19 September 2006 |
| CVE-2006-4891 | SQL injection vulnerability in ArticlesTableview.asp in Techno Dreams Articles & Papers Package 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the key parameter. | EXPLOIT ✓HIGH 7.5EPSS 2.60% | 19 September 2006 |
| CVE-2006-4890 | Multiple PHP remote file inclusion vulnerabilities in UNAK-CMS 1.5 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the dirroot parameter to (1) fckeditor/editor/filemanager/browser/default/connectors/php/connector.php or… | EXPLOIT ✓HIGH 7.5EPSS 8.38% | 19 September 2006 |
| CVE-2006-4889 | Multiple PHP remote file inclusion vulnerabilities in Telekorn SignKorn Guestbook (SL) 1.3 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the dir_path parameter in (1) index.php, (2)… | EXPLOIT ×21 ✓MEDIUM 5.1EPSS 16.4% | 19 September 2006 |
| CVE-2006-4885 | PHP remote file inclusion vulnerability in Shadowed Portal 5.599 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the root parameter in (1) footer.php and (2) header.php. | EXPLOIT ✓HIGH 7.5EPSS 6.96% | 19 September 2006 |
| CVE-2006-4884 | Multiple cross-site scripting (XSS) vulnerabilities in IDevSpot iSupport 1.8 allow remote attackers to inject arbitrary web script or HTML via (1) the suser parameter in support/rightbar.php, (2) the ticket_id parameter in support/open_tickets.php, and… | EXPLOIT ×3 ✓MEDIUM 4.3EPSS 2.97% | 19 September 2006 |
| CVE-2006-4882 | SQL injection vulnerability in Review.asp in Julian Roberts Charon Cart 3 allows remote attackers to execute arbitrary SQL commands via the ProductID parameter. | EXPLOIT ✓HIGH 7.5EPSS 2.59% | 19 September 2006 |
| CVE-2006-4881 | Multiple cross-site scripting (XSS) vulnerabilities in David Bennett PHP-Post (PHPp) 1.0 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the replyuser parameter in (a) pm.php; (2) the txt_jumpto parameter in (b)… | EXPLOIT ✓MEDIUM 4.3EPSS 4.82% | 19 September 2006 |
| CVE-2006-4877 | Variable overwrite vulnerability in David Bennett PHP-Post (PHPp) 1.0 and earlier allows remote attackers to overwrite arbitrary program variables via multiple vectors that use the extract function, as demonstrated by the table_prefix parameter in (1)… | EXPLOIT ✓MEDIUM 5.0EPSS 8.58% | 19 September 2006 |
| CVE-2006-4876 | Multiple SQL injection vulnerabilities in Jupiter CMS allow remote attackers to execute arbitrary SQL commands via (1) the user name during login, or the (2) key or (3) fpwusername parameters in modules/register. | EXPLOIT ✓HIGH 7.5EPSS 2.27% | 19 September 2006 |
| CVE-2006-4875 | Unrestricted file upload vulnerability in modules/galleryuploadfunction.php in Jupiter CMS allows remote attackers to upload picture files, and possibly files with arbitrary extensions, to gallery/albums/public. | EXPLOIT ✓MEDIUM 5.0EPSS 6.77% | 19 September 2006 |
| CVE-2006-4874 | Multiple cross-site scripting (XSS) vulnerabilities in Jupiter CMS allow remote attackers to inject arbitrary web script or HTML via the (1) language[Admin name] and (2) language[Admin back] parameters in (a) modules/blocks.php; the (3)… | EXPLOIT ×4 ✓MEDIUM 4.3EPSS 3.48% | 19 September 2006 |
| CVE-2006-4872 | SQL injection vulnerability in search.asp in Keyvan1 (aka Keyvan Janghorbani) ECardPro 2.0 allows remote attackers to execute arbitrary SQL commands via the keyword parameter. | EXPLOIT ✓HIGH 7.5EPSS 2.57% | 19 September 2006 |
| CVE-2006-4871 | SQL injection vulnerability in search_run.asp in Keyvan1 (aka Keyvan Janghorbani) EShoppingPro 1.0 allows remote attackers to execute arbitrary SQL commands via the order parameter. | EXPLOIT ✓HIGH 7.5EPSS 2.57% | 19 September 2006 |
| CVE-2006-3866 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. | EXPLOIT ×2 ✓UnscoredEPSS — | 19 September 2006 |
| CVE-2006-4870 | Multiple PHP remote file inclusion vulnerabilities in AEDating 4.1, and possibly earlier versions, allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter in (1) inc/design.inc.php or (2) inc/admin_design.inc.php. | EXPLOIT ✓HIGH 7.5EPSS 9.89% | 19 September 2006 |
| CVE-2006-4869 | PHP remote file inclusion vulnerability in phpunity-postcard.php in phpunity.postcard allows remote attackers to execute arbitrary PHP code via a URL in the gallery_path parameter. | EXPLOIT ✓HIGH 7.5EPSS 6.64% | 19 September 2006 |
| CVE-2006-4868 | Stack-based buffer overflow in the Vector Graphics Rendering engine (vgx.dll), as used in Microsoft Outlook and Internet Explorer 6.0 on Windows XP SP2, and possibly other versions, allows remote attackers to execute arbitrary code via a Vector Markup… | EXPLOIT ×3 ✓HIGH 9.3EPSS 61.4% | 19 September 2006 |
| CVE-2006-4867 | SQL injection vulnerability in mods.php in GNUTurk 2G and earlier allows remote attackers to execute arbitrary SQL commands via the t_id parameter when the go parameter is "Forum." | EXPLOIT ✓HIGH 7.5EPSS 2.32% | 19 September 2006 |
| CVE-2006-4866 | Buffer overflow in kextload in Apple OS X, as used by TDIXSupport in Roxio Toast Titanium and possibly other products, allows local users to execute arbitrary code via a long extension argument. | EXPLOIT ✓MEDIUM 4.6EPSS 0.98% | 19 September 2006 |
| CVE-2006-4865 | Walter Beschmout PhpQuiz allows remote attackers to obtain sensitive information via a direct request to cfgphpquiz/install.php and other unspecified vectors. | EXPLOIT ✓MEDIUM 5.0EPSS 4.98% | 19 September 2006 |
| CVE-2006-4859 | Unrestricted file upload vulnerability in contact.html.php in the Contact (com_contact) component in Limbo (aka Lite Mambo) CMS 1.0.4.2L and earlier allows remote attackers to upload PHP code to the images/contact folder via a filename with a double… | EXPLOIT ✓HIGH 7.5EPSS 7.38% | 19 September 2006 |
| CVE-2006-4858 | PHP remote file inclusion vulnerability in install.serverstat.php in the Serverstat (com_serverstat) 0.4.4 and earlier component for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. | EXPLOIT ✓MEDIUM 6.8EPSS 6.89% | 19 September 2006 |
| CVE-2006-4857 | SQL injection vulnerability in default.asp (aka the login page) in ClickTech ClickBlog 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) form_codeword (aka the Password field) parameters. | EXPLOIT ✓HIGH 7.5EPSS 2.48% | 19 September 2006 |
| CVE-2006-4855 | The \Device\SymEvent driver in Symantec Norton Personal Firewall 2006 9.1.0.33, and other versions of Norton Personal Firewall, Internet Security, AntiVirus, SystemWorks, Symantec Client Security SCS 1.x, 2.x, 3.0, and 3.1, Symantec AntiVirus Corporate… | EXPLOIT ✓MEDIUM 4.9EPSS 1.32% | 19 September 2006 |
| CVE-2006-4853 | SQL injection vulnerability in kategorix.asp in Haberx 1.02 through 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter in kategorihaberx.asp. | EXPLOIT ✓HIGH 7.5EPSS 3.69% | 19 September 2006 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.