AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2006-1900

HIGH · CVSS 7.6 EPSS 16.55%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2006-04-20 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2006-1900
Severity
HIGH
CVSS
7.6
EPSS
16.55%

Original NVD Description

Multiple buffer overflows in World Wide Web Consortium (W3C) Amaya 9.4, and possibly other versions including 8.x before 8.8.5, allow remote attackers to execute arbitrary code via a long value in (1) the COMPACT attribute of the COLGROUP element, (2) the ROWS attribute of the TEXTAREA element, and (3) the COLOR attribute of the LEGEND element; and via other unspecified attack vectors consisting of "dozens of possible snippets."