ubuntu · CVE-2006-0806

Quick triage

Priority: medium Published: 2006-02-21 02:02:00 UTC Updated: 2025-07-17 16:37:46 UTC

View at Official ubuntu advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2006-0806 medium priority: Ubuntu including 2 source packages (libphp-adodb, moodle), 10 status rows across 5 suites (dapper, edgy, feisty, gutsy, upstream): released 8, needs-triage 2.

Description:

Multiple cross-site scripting (XSS) vulnerabilities in ADOdb 4.71, as used in multiple packages such as phpESP, allow remote attackers to inject arbitrary web script or HTML via (1) the next_page parameter in adodb-pager.inc.php and (2) other unspecified vectors related to PHP_SELF.

cvelogic Threat Intelligence