Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
395,963 CVEs1,717 in CISA KEV17,157 with EPSS ≥ 10%25,049 with a public exploitUpdated 22 September 2026
17,157 results · page 308 of 344
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2006-2362 | Buffer overflow in getsym in tekhex.c in libbfd in Free Software Foundation GNU Binutils before 20060423, as used by GNU strings, allows context-dependent attackers to cause a denial of service (application crash) and possibly execute arbitrary code via… | EXPLOIT ✓HIGH 7.3EPSS 14.5% | 15 May 2006 |
| CVE-2006-0994 | Multiple Sophos Anti-Virus products, including Anti-Virus for Windows 5.x before 5.2.1 and 4.x before 4.05, when cabinet file inspection is enabled, allows remote attackers to execute arbitrary code via a CAB file with "invalid folder count values,"… | HIGH 7.5EPSS 21.6% | 10 May 2006 |
| CVE-2006-2297 | Heap-based buffer overflow in Microsoft Infotech Storage System Library (itss.dll) allows user-assisted attackers to execute arbitrary code via a crafted CHM / ITS file that triggers the overflow while decompiling. | EXPLOIT ✓MEDIUM 4.0EPSS 19.4% | 10 May 2006 |
| CVE-2006-1184 | Microsoft Distributed Transaction Coordinator (MSDTC) for Windows NT 4.0, 2000 SP4, XP SP1 and SP2, and Server 2003 allows remote attackers to cause a denial of service (crash) via a BuildContextW request with a large (1) UuidString or (2) GuidIn of a… | MEDIUM 5.0EPSS 29.8% | 10 May 2006 |
| CVE-2006-0034 | Heap-based buffer overflow in the CRpcIoManagerServer::BuildContext function in msdtcprx.dll for Microsoft Distributed Transaction Coordinator (MSDTC) for Windows NT 4.0 and Windows 2000 SP2 and SP3 allows remote attackers to execute arbitrary code via… | HIGH 7.5EPSS 31.4% | 10 May 2006 |
| CVE-2006-0027 | Unspecified vulnerability in Microsoft Exchange allows remote attackers to execute arbitrary code via e-mail messages with crafted (1) vCal or (2) iCal Calendar properties. | HIGH 7.5EPSS 78.7% | 10 May 2006 |
| CVE-2006-2270 | PHP remote file inclusion vulnerability in includes/config.php in Jetbox CMS 2.1 allows remote attackers to execute arbitrary code via a URL in the relative_script_path parameter. | EXPLOIT ✓HIGH 7.5EPSS 14.1% | 9 May 2006 |
| CVE-2006-1172 | Stack-based buffer overflow in the createPKCS10 function in Cryptomathic Cenroll ActiveX Control 1.1.0.0 allows remote attackers to execute arbitrary code via vectors related to the TDC Digital signature. | EXPLOIT ✓MEDIUM 5.0EPSS 14.2% | 9 May 2006 |
| CVE-2006-2237 | The web interface for AWStats 6.4 and 6.5, when statistics updates are enabled, allows remote attackers to execute arbitrary code via shell metacharacters in the migrate parameter. | EXPLOIT ×3 ✓MEDIUM 5.1EPSS 58.4% | 8 May 2006 |
| CVE-2006-2224 | RIPd in Quagga 0.98 and 0.99 before 20060503 does not properly enforce RIPv2 authentication requirements, which allows remote attackers to modify routing state via RIPv1 RESPONSE packets. | EXPLOIT ✓MEDIUM 5.0EPSS 10.4% | 5 May 2006 |
| CVE-2006-2223 | RIPd in Quagga 0.98 and 0.99 before 20060503 does not properly implement configurations that (1) disable RIPv1 or (2) require plaintext or MD5 authentication, which allows remote attackers to obtain sensitive information (routing state) via REQUEST… | EXPLOIT ✓MEDIUM 5.0EPSS 11.3% | 5 May 2006 |
| CVE-2006-2218 | Unspecified vulnerability in Internet Explorer 6.0 on Microsoft Windows XP SP2 allows remote attackers to execute arbitrary code via "exceptional conditions" that trigger memory corruption, as demonstrated using an exception handler and nested object… | HIGH 9.3EPSS 32.8% | 5 May 2006 |
| CVE-2006-2212 | Buffer overflow in KarjaSoft Sami FTP Server 2.0.2 and earlier allows remote attackers to execute arbitrary code via a long (1) USER or (2) PASS command. | EXPLOIT ✓MEDIUM 6.4EPSS 58.9% | 5 May 2006 |
| CVE-2006-1518 | Buffer overflow in the open_table function in sql_base.cc in MySQL 5.0.x up to 5.0.20 might allow remote attackers to execute arbitrary code via crafted COM_TABLE_DUMP packets with invalid length values. | EXPLOIT ✓MEDIUM 6.5EPSS 38.4% | 5 May 2006 |
| CVE-2006-1516 | The check_connection function in sql_parse.cc in MySQL 4.0.x up to 4.0.26, 4.1.x up to 4.1.18, and 5.0.x up to 5.0.20 allows remote attackers to read portions of memory via a username without a trailing null byte, which causes a buffer over-read. | EXPLOIT ✓MEDIUM 5.0EPSS 35.8% | 5 May 2006 |
| CVE-2006-2151 | PHP remote file inclusion vulnerability in toplist.php in phpBB TopList 1.3.8 and earlier, when register_globals is enabled, allows remote attackers to include arbitrary files via the phpbb_root_path parameter. | EXPLOIT ×2 ✓HIGH 7.5EPSS 11.0% | 3 May 2006 |
| CVE-2006-2111 | A component in Microsoft Outlook Express 6 allows remote attackers to bypass domain restrictions and obtain sensitive information via redirections with the mhtml: URI handler, as originally reported for Internet Explorer 6 and 7, aka "URL Redirect Cross… | EXPLOIT ✓MEDIUM 4.3EPSS 40.3% | 1 May 2006 |
| CVE-2006-2094 | Microsoft Internet Explorer before Windows XP Service Pack 2 and Windows Server 2003 Service Pack 1, when Prompt is configured in Security Settings, uses modal dialogs to verify that a user wishes to run an ActiveX control or perform other risky… | EXPLOIT ✓MEDIUM 5.1EPSS 23.1% | 29 April 2006 |
| CVE-2006-2086 | Buffer overflow in JuniperSetupDLL.dll, loaded from JuniperSetup.ocx by the Juniper SSL-VPN Client when accessing a Juniper NetScreen IVE device running IVE OS before 4.2r8.1, 5.0 before 5.0r6.1, 5.1 before 5.1r8, 5.2 before 5.2r4.1, or 5.3 before… | EXPLOIT ✓HIGH 7.5EPSS 67.3% | 29 April 2006 |
| CVE-2006-2081 | Oracle Database Server 10g Release 2 allows local users to execute arbitrary SQL queries via the GET_DOMAIN_INDEX_METADATA function in the DBMS_EXPORT_EXTENSION package. | EXPLOIT ×2 ✓MEDIUM 4.6EPSS 21.6% | 27 April 2006 |
| CVE-2006-2056 | Argument injection vulnerability in Internet Explorer 6 for Windows XP SP2 allows user-assisted remote attackers to modify command line arguments to an invoked mail client via " (double quote) characters in a mailto: scheme handler, as demonstrated by… | MEDIUM 5.0EPSS 12.9% | 26 April 2006 |
| CVE-2006-2055 | Argument injection vulnerability in Microsoft Outlook 2003 SP1 allows user-assisted remote attackers to modify command line arguments to an invoked mail client via " (double quote) characters in a mailto: scheme handler, as demonstrated by launching… | MEDIUM 5.0EPSS 15.4% | 26 April 2006 |
| CVE-2006-2025 | Integer overflow in the TIFFFetchData function in tif_dirread.c for libtiff before 3.8.1 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a crafted TIFF image. | EXPLOIT ✓MEDIUM 6.5EPSS 10.5% | 25 April 2006 |
| CVE-2006-2022 | Buffer overflow in the parse_url function in the RTSP module (rtsp/parse_url.c) in Fenice 1.10 and earlier allows remote attackers to execute arbitrary code via a long URL. | EXPLOIT ×2 ✓HIGH 7.5EPSS 14.7% | 25 April 2006 |
| CVE-2006-1993 | Mozilla Firefox 1.5.0.2, when designMode is enabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code via certain Javascript that is not properly handled by the contentWindow.focus method in an iframe, which… | EXPLOIT ✓MEDIUM 5.1EPSS 54.0% | 25 April 2006 |
| CVE-2006-1992 | mshtml.dll 6.00.2900.2873, as used in Microsoft Internet Explorer, allows remote attackers to cause a denial of service (crash) via nested OBJECT tags, which trigger invalid pointer dereferences including NULL dereferences. | EXPLOIT ✓LOW 2.6EPSS 40.4% | 25 April 2006 |
| CVE-2006-0230 | Symantec Scan Engine 5.0.0.24, and possibly other versions before 5.1.0.7, uses a client-side check to verify a password, which allows remote attackers to gain administrator privileges via a modified client that sends certain XML requests. | EXPLOIT ✓HIGH 10.0EPSS 16.1% | 25 April 2006 |
| CVE-2006-1990 | Integer overflow in the wordwrap function in string.c in PHP 4.4.2 and 5.1.2 might allow context-dependent attackers to execute arbitrary code via certain long arguments that cause a small buffer to be allocated, which triggers a heap-based buffer… | MEDIUM 5.0EPSS 10.4% | 24 April 2006 |
| CVE-2006-1985 | Heap-based buffer overflow in BOM BOMArchiveHelper 10.4 (6.3) Build 312, as used in Mac OS X 10.4.6 and earlier, allows user-assisted attackers to execute arbitrary code via a crafted archive (such as ZIP) that contains long path names, which triggers… | EXPLOIT ✓MEDIUM 5.1EPSS 13.9% | 21 April 2006 |
| CVE-2006-1982 | Heap-based buffer overflow in the LZWDecodeVector function in Mac OS X before 10.4.6, as used in applications that use ImageIO or AppKit, allows remote attackers to execute arbitrary code via crafted TIFF images. | EXPLOIT ✓HIGH 7.5EPSS 19.9% | 21 April 2006 |
| CVE-2006-1959 | PHP remote file inclusion vulnerability in direct.php in ActualScripts ActualAnalyzer Lite 2.72 and earlier, Gold 7.63 and earlier, and Server 8.23 and earlier allows remote attackers to execute arbitrary code via a URL in the rf parameter. | EXPLOIT ✓HIGH 7.5EPSS 13.1% | 21 April 2006 |
| CVE-2006-1931 | The HTTP/XMLRPC server in Ruby before 1.8.2 uses blocking sockets, which allows attackers to cause a denial of service (blocked connections) via a large amount of data. | EXPLOIT ✓MEDIUM 5.0EPSS 10.2% | 20 April 2006 |
| CVE-2006-1905 | Multiple format string vulnerabilities in xiTK (xitk/main.c) in xine 0.99.3 allow remote attackers to execute arbitrary code via format string specifiers in a long filename on an EXTINFO line in a playlist file. | EXPLOIT ✓HIGH 7.5EPSS 14.3% | 20 April 2006 |
| CVE-2006-1900 | Multiple buffer overflows in World Wide Web Consortium (W3C) Amaya 9.4, and possibly other versions including 8.x before 8.8.5, allow remote attackers to execute arbitrary code via a long value in (1) the COMPACT attribute of the COLGROUP element, (2)… | EXPLOIT ×2 ✓HIGH 7.6EPSS 16.5% | 20 April 2006 |
| CVE-2006-1868 | Buffer overflow in the Advanced Replication component in Oracle Database Server 10.1.0.4 allows database users to execute arbitrary code via the VERIFY_LOG procedure of the DBMS_SNAPSHOT_UTL package, aka Vuln# DB03. | HIGH 7.5EPSS 12.1% | 20 April 2006 |
| CVE-2006-1834 | Integer signedness error in Opera before 8.54 allows remote attackers to execute arbitrary code via long values in a stylesheet attribute, which pass a length check. | EXPLOIT ✓MEDIUM 5.1EPSS 12.1% | 19 April 2006 |
| CVE-2006-1730 | Integer overflow in Mozilla Firefox and Thunderbird 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0.1 allows remote attackers to execute arbitrary code via a large number in the CSS letter-spacing… | HIGH 9.3EPSS 10.3% | 14 April 2006 |
| CVE-2006-0992 | Stack-based buffer overflow in Novell GroupWise Messenger before 2.0 Public Beta 2 allows remote attackers to execute arbitrary code via a long Accept-Language value without a comma or semicolon. | EXPLOIT ✓HIGH 10.0EPSS 72.8% | 14 April 2006 |
| CVE-2006-0749 | nsHTMLContentSink.cpp in Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via… | HIGH 9.3EPSS 10.5% | 14 April 2006 |
| CVE-2006-1786 | Cross-site scripting (XSS) vulnerability in Adobe Document Server for Reader Extensions 6.0 allows remote attackers to inject arbitrary web script or HTML via (1) the actionID parameter in ads-readerext and (2) the op parameter in AlterCast. | EXPLOIT ×2 ✓LOW 2.6EPSS 11.9% | 13 April 2006 |
| CVE-2006-1551 | Eval injection vulnerability in pajax_call_dispatcher.php in PAJAX 0.5.1 and earlier allows remote attackers to execute arbitrary code via the (1) $method and (2) $args parameters. | EXPLOIT ✓HIGH 7.5EPSS 50.6% | 13 April 2006 |
| CVE-2006-1776 | PHP remote file inclusion vulnerability in doc/index.php in Jeremy Ashcraft Simplog 0.9.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the s parameter. | EXPLOIT ✓HIGH 7.5EPSS 12.7% | 13 April 2006 |
| CVE-2006-1770 | Multiple PHP remote file inclusion vulnerabilities in Azerbaijan Design & Development Group (AZDG) AzDGVote allow remote attackers to execute arbitrary PHP code via a URL in the int_path parameter in (1) vote.php, (2) view.php, (3) admin.php, and (4)… | EXPLOIT ✓HIGH 10.0EPSS 10.7% | 13 April 2006 |
| CVE-2006-0014 | Buffer overflow in Microsoft Outlook Express 5.5 and 6 allows remote attackers to execute arbitrary code via a crafted Windows Address Book (WAB) file containing "certain Unicode strings" and modified length values. | MEDIUM 5.1EPSS 23.9% | 12 April 2006 |
| CVE-2006-0012 | Unspecified vulnerability in Windows Explorer in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary code via attack vectors involving COM objects and "crafted files and directories," aka the… | MEDIUM 5.1EPSS 24.8% | 12 April 2006 |
| CVE-2006-0003 | Unspecified vulnerability in the RDS.Dataspace ActiveX control, which is contained in ActiveX Data Objects (ADO) and distributed in Microsoft Data Access Components (MDAC) 2.7 and 2.8, allows remote attackers to execute arbitrary code via unknown attack… | EXPLOIT ×3 ✓MEDIUM 5.1EPSS 82.5% | 12 April 2006 |
| CVE-2006-1719 | Internet Explorer 6 allows remote attackers to cause a denial of service (application crash) via any scrollbar Cascading Style Sheets (CSS) property. | MEDIUM 5.0EPSS 14.1% | 11 April 2006 |
| CVE-2006-1192 | Microsoft Internet Explorer 5.01 through 6 allows remote attackers to conduct phishing attacks by spoofing the address bar and other parts of the trust UI via unknown methods that allow "window content to persist" after the user has navigated to another… | EXPLOIT ✓LOW 2.6EPSS 31.5% | 11 April 2006 |
| CVE-2006-1191 | Microsoft Internet Explorer 5.01 through 6 does not always correctly identify the domain that is associated with a browser window, which allows remote attackers to obtain sensitive cross-domain information and spoof sites by running script after the… | EXPLOIT ✓MEDIUM 4.0EPSS 31.6% | 11 April 2006 |
| CVE-2006-1190 | Microsoft Internet Explorer 5.01 through 6 does not always return the correct IOleClientSite information when dynamically creating an embedded object, which could cause Internet Explorer to run the object in the wrong security context or zone, and allow… | EXPLOIT ✓HIGH 10.0EPSS 61.3% | 11 April 2006 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.