4.3
CVSSv2

CVE-2006-0806

Published: 21/02/2006 Updated: 18/10/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in ADOdb 4.71, as used in multiple packages such as phpESP, allow remote malicious users to inject arbitrary web script or HTML via (1) the next_page parameter in adodb-pager.inc.php and (2) other unspecified vectors related to PHP_SELF.

Vulnerable Product Search on Vulmon Subscribe to Product

john lim adodb 4.66

john lim adodb 4.71

john lim adodb 4.68

john lim adodb 4.70

Vendor Advisories

Debian Bug report logs - #358872 libphp-adodb: Multiple cross-site scripting (XSS) vulnerabilities Package: libphp-adodb; Maintainer for libphp-adodb is Cameron Dale <camrdale@gmailcom>; Source for libphp-adodb is src:libphp-adodb (PTS, buildd, popcon) Reported by: Cameron Dale <camrdale@gmailcom> Date: Fri, 24 Mar ...
Several vulnerabilities have been discovered in libphp-adodb, the 'adodb' database abstraction layer for PHP The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2006-0146 Andreas Sandblad discovered that improper user input sanitisation results in a potential remote SQL injection vulnerability enabling ...
Several vulnerabilities have been discovered in libphp-adodb, the 'adodb' database abstraction layer for PHP, which is embedded in cacti, a frontend to rrdtool for monitoring systems and services The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2006-0146 Andreas Sandblad discovered that improper user inp ...
Several vulnerabilities have been discovered in libphp-adodb, the 'adodb' database abstraction layer for PHP, which is embedded in moodle, a course management system for online learning The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2006-0146 Andreas Sandblad discovered that improper user input sanitis ...

Exploits

ADOdb Cross Site Scripting Vendor: John Lim Product: ADOdb Version: <= 471 Website: adodbsourceforgenet/ BID: 16720 CVE: CVE-2006-0806 OSVDB: 23362 23363 23364 SECUNIA: 18928 PACKETSTORM: 44065 Description: ADOdb is a database abstraction library for php used by a great deal of projects to provide support for a number of well k ...