CVE-2006-0806

John LIM Adodb - XSS

Title source: rule

Description

Multiple cross-site scripting (XSS) vulnerabilities in ADOdb 4.71, as used in multiple packages such as phpESP, allow remote attackers to inject arbitrary web script or HTML via (1) the next_page parameter in adodb-pager.inc.php and (2) other unspecified vectors related to PHP_SELF.

Exploits (1)

exploitdb WRITEUP
by GulfTech Security · textwebappsphp
https://www.exploit-db.com/exploits/43832

Scores

EPSS 0.1263
EPSS Percentile 93.9%

Classification

CWE
CWE-79
Status draft

Affected Products (4)

john_lim/adodb
john_lim/adodb
john_lim/adodb
john_lim/adodb

Timeline

Published Feb 21, 2006
Tracked Since Feb 18, 2026