Eval injection vulnerability in adodb-perf-module.inc.php in ADOdb Lite 1.42 and earlier, as used in products including CMS Made Simple, SAPID CMF, Journalness, PacerCMS, and Open-Realty, allows remote attackers to execute arbitrary code via PHP sequences in the last_module parameter.
| Software | From | Fixed in |
|---|---|---|
| adodb_lite / adodb_lite | - | 1.42.x |
| sapid / sapid_cmf | - | - |
| pacercms / pacercms | - | - |
| open-realty / open-realty | - | - |
| cmsmadesimple / cms_made_simple | - | - |
| journalness / journalness | - | - |