Описание
Cross-site scripting vulnerability in ADOdb versions prior to 5.20.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| libphp-adodb | fixed | 5.20.6-1 | package | |
| libphp-adodb | fixed | 5.15-1+deb8u1 | jessie | package |
Примечания
https://github.com/ADOdb/ADOdb/issues/274
https://jvn.jp/en/jp/JVN48237713/
https://github.com/ADOdb/ADOdb/commit/ecb93d8c1
Vulnerable file is shipped as an example only
Связанные уязвимости
CVSS3: 6.1
ubuntu
больше 8 лет назад
Cross-site scripting vulnerability in ADOdb versions prior to 5.20.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVSS3: 6.1
nvd
больше 8 лет назад
Cross-site scripting vulnerability in ADOdb versions prior to 5.20.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVSS3: 6.1
github
больше 3 лет назад
ADOdb Cross-site scripting vulnerability in old test script