Описание
ADOdb Cross-site scripting vulnerability in old test script
Cross-site scripting vulnerability in ADOdb versions prior to 5.20.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2016-4855
- https://github.com/ADOdb/ADOdb/issues/274
- https://github.com/ADOdb/ADOdb/commit/ecb93d8c1fd3bbde62aca9c3a13c32f077da2da8
- https://github.com/FriendsOfPHP/security-advisories/blob/master/adodb/adodb-php/CVE-2016-4855.yaml
- https://security.gentoo.org/glsa/201701-59
- http://jvn.jp/en/jp/JVN48237713/index.html
- http://www.securityfocus.com/bid/92753
Пакеты
Наименование
adodb/adodb-php
composer
Затронутые версииВерсия исправления
< 5.20.6
5.20.6
Связанные уязвимости
CVSS3: 6.1
ubuntu
больше 8 лет назад
Cross-site scripting vulnerability in ADOdb versions prior to 5.20.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVSS3: 6.1
nvd
больше 8 лет назад
Cross-site scripting vulnerability in ADOdb versions prior to 5.20.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVSS3: 6.1
debian
больше 8 лет назад
Cross-site scripting vulnerability in ADOdb versions prior to 5.20.6 a ...