Перейти к содержимому
Noroxi

Записи PostgreSQL

220 опубликованных записей вендора postgresql.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
3 · 1,4 %
Pre-auth RCE
11
С записью об исправлении
86,4 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

220 записей
  • CVE-2017-7546
    57В плане

    PostgreSQL versions before 9.2.22, 9.3.18, 9.4.13, 9.5.8 and 9.6.4 are vulnerable to incorrect authentication flaw allowing remote attackers

    КритическаяCVSS 9,8Эксплойта нетEPSS 62 %

    postgresql · postgresql16 авг. 2017 г.

  • CVE-2019-9193
    55В плане

    In PostgreSQL 9.3 through 11.2, the "COPY TO/FROM PROGRAM" function allows superusers and users in the 'pg_execute_server_program' group to

    ВысокаяCVSS 7,2Готовый эксплойтEPSS 92 %

    postgresql · postgresql1 апр. 2019 г.

  • CVE-2020-25695
    49В плане

    A flaw was found in PostgreSQL versions before 13.1, before 12.5, before 11.10, before 10.15, before 9.6.20 and before 9.5.24.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 46 %

    postgresql · postgresql15 нояб. 2020 г.

  • CVE-2007-3280
    44В плане

    The Database Link library (dblink) in PostgreSQL 8.1 implements functions via CREATE statements that map to arbitrary libraries based on the

    КритическаяCVSS 9,0Готовый эксплойтEPSS 25 %

    postgresql · postgresql19 июн. 2007 г.

  • CVE-2013-1899
    42В плане

    Argument injection vulnerability in PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, and 9.0.x before 9.0.13 allows remote attackers to ca

    СредняяCVSS 6,5Готовый эксплойтEPSS 54 %

    postgresql · postgresql4 апр. 2013 г.

  • CVE-2018-16850
    41В плане

    postgresql before versions 11.1, 10.6 is vulnerable to a to SQL injection in pg_upgrade and pg_dump via CREATE TRIGGER ...

    КритическаяCVSS 9,8Эксплойта нетEPSS 5 %

    postgresql · postgresql13 нояб. 2018 г.

  • CVE-2007-3279
    41В плане

    PostgreSQL 8.1 and probably later versions, when the PL/pgSQL (plpgsql) language has been created, grants certain plpgsql privileges to the

    КритическаяCVSS 10,0Эксплойта нетEPSS 3 %

    postgresql · postgresql19 июн. 2007 г.

  • CVE-2013-1903
    41В плане

    PostgreSQL, possibly 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, 8.4.x before 8.4.17, and 8.3.x before 8.3.23 incorrectly p

    КритическаяCVSS 10,0Эксплойта нетEPSS 2 %

    postgresql · postgresql4 апр. 2013 г.

  • CVE-2013-1902
    41В плане

    PostgreSQL, 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, 8.4.x before 8.4.17, and 8.3.x before 8.3.23 generates insecure tem

    КритическаяCVSS 10,0Эксплойта нетEPSS 2 %

    postgresql · postgresql4 апр. 2013 г.

  • CVE-2002-1399
    41В плане

    Unknown vulnerability in cash_out and possibly other functions in PostgreSQL 7.2.1 and earlier, and possibly later versions before 7.2.3, wi

    КритическаяCVSS 10,0Эксплойта нетEPSS 2 %

    postgresql · postgresql17 янв. 2003 г.

  • CVE-2022-1552
    40В плане

    A flaw was found in PostgreSQL.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 16 %

    postgresql · postgresql31 авг. 2022 г.

  • CVE-2024-1597
    40В плане

    pgjdbc SQL Injection via line comment generation

    КритическаяCVSS 9,8Эксплойта нетEPSS 5 %

    postgresql · postgresql jdbc driver19 февр. 2024 г.

  • CVE-2015-3166
    40В плане

    The snprintf implementation in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.

    КритическаяCVSS 9,8Эксплойта нетEPSS 5 %

    postgresql · postgresql20 нояб. 2019 г.

  • CVE-2015-0244
    40В плане

    PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3.x before 9.3.6, and 9.4.x before 9.4.1 does not properly handle erro

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    postgresql · postgresql27 янв. 2020 г.

  • CVE-2022-21724
    40В плане

    Unchecked Class Instantiation when providing Plugin Classes

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    postgresql · postgresql jdbc driver2 февр. 2022 г.

  • CVE-2022-26520
    40В плане

    In pgjdbc before 42.3.3, an attacker (who controls the jdbc URL or properties) can call java.util.logging.FileHandler to write to arbitrary

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    postgresql · postgresql jdbc driver10 мар. 2022 г.

  • CVE-2019-10211
    40В плане

    Postgresql Windows installer before versions 11.5, 10.10, 9.6.15, 9.5.19, 9.4.24 is vulnerable via bundled OpenSSL executing code from unpro

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    postgresql · postgresql29 окт. 2019 г.

  • CVE-2018-1058
    39Наблюдать

    A flaw was found in the way Postgresql allowed a user to modify the behavior of a query for other users.

    ВысокаяCVSS 8,8Proof of conceptEPSS 13 %

    postgresql · postgresql2 мар. 2018 г.

  • CVE-2017-7547
    37Наблюдать

    PostgreSQL versions before 9.2.22, 9.3.18, 9.4.13, 9.5.8 and 9.6.4 are vulnerable to authorization flaw allowing remote authenticated attack

    ВысокаяCVSS 8,8Эксплойта нетEPSS 6 %

    postgresql · postgresql16 авг. 2017 г.

  • CVE-2015-0241
    37Наблюдать

    The to_char function in PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3.x before 9.3.6, and 9.4.x before 9.4.1 allow

    ВысокаяCVSS 8,8Эксплойта нетEPSS 6 %

    postgresql · postgresql27 янв. 2020 г.

  • CVE-2015-0242
    37Наблюдать

    Stack-based buffer overflow in the *printf function implementations in PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9

    ВысокаяCVSS 8,8Эксплойта нетEPSS 5 %

    postgresql · postgresql27 янв. 2020 г.

  • CVE-2015-0243
    37Наблюдать

    Multiple buffer overflows in contrib/pgcrypto in PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3.x before 9.3.6, and

    ВысокаяCVSS 8,8Эксплойта нетEPSS 5 %

    postgresql · postgresql27 янв. 2020 г.

  • CVE-2016-3065
    37Наблюдать

    The (1) brin_page_type and (2) brin_metapage_info functions in the pageinspect extension in PostgreSQL before 9.5.x before 9.5.2 allows atta

    КритическаяCVSS 9,1Эксплойта нетEPSS 4 %

    postgresql · postgresql11 апр. 2016 г.

  • CVE-2018-1115
    37Наблюдать

    postgresql before versions 10.4, 9.6.9 is vulnerable in the adminpack extension, the pg_catalog.pg_logfile_rotate() function doesn't follow

    КритическаяCVSS 9,1Эксплойта нетEPSS 4 %

    postgresql · postgresql10 мая 2018 г.

  • CVE-2024-10979
    36Наблюдать

    PostgreSQL PL/Perl environment variable changes execute arbitrary code

    ВысокаяCVSS 8,8Эксплойта нетEPSS 4 %

    postgresql · postgresql14 нояб. 2024 г.