CVE-2016-7405: Adodb Project Adodb

Critical severity, CVSS 9.8. EPSS: 3% chance of exploitation in the next 30 days.

The qstr method in the PDO driver in the ADOdb Library for PHP before 5.x before 5.20.7 might allow remote attackers to conduct SQL injection attacks via vectors related to incorrect quoting.

Affected products

  • Adodb Project Adodb: version 5.00 only; version 5.01 only; version 5.02 only; version 5.03 only; version 5.04 only; version 5.05 only; …
  • Fedoraproject Fedora: version 25 only

Published 2016-10-03. Last modified 2026-06-17.