John Lim ADOdb Library for PHP before 4.23 allows remote attackers to obtain sensitive information via direct requests to certain scripts that result in an undefined value of ADODB_DIR, which reveals the installation path in an error message. This vulnerability is addressed in the following product release:
John Lim, ADOdb, 4.23
Publication date: Sat, 06 Sep 2008 01:44:00 +0000