Total vulnerabilities in the database
Multiple cross-site scripting (XSS) vulnerabilities in ADOdb 4.71, as used in multiple packages such as phpESP, allow remote attackers to inject arbitrary web script or HTML via (1) the next_page parameter in adodb-pager.inc.php and (2) other unspecified vectors related to PHP_SELF.
Software | From | Fixed in |
---|---|---|
john_lim / adodb | 4.71 | 4.71.x |
john_lim / adodb | 4.66 | 4.66.x |
john_lim / adodb | 4.70 | 4.70.x |
john_lim / adodb | 4.68 | 4.68.x |