FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

phpldapadmin -- XSS vulnerability

Affected packages
phpldapadmin-php80 < 1.2.6.2
phpldapadmin-php81 < 1.2.6.2

Details

VuXML ID 01eeea33-1afa-11ee-8a9b-b42e991fc52e
Discovery 2020-12-11
Entry 2023-07-05

cve@mitre.org reports:

An XSS issue has been discovered in phpLDAPadmin before 1.2.6.2 that allows users to store malicious values that may be executed by other users at a later time via get_request in lib/function.php.

References

CVE Name CVE-2020-35132
URL https://nvd.nist.gov/vuln/detail/CVE-2020-35132