pgpool records
3 published records for vendor pgpool.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 66.7%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-312 Cleartext Storage of Sensitive Information1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2018-16203No exploit | PgpoolAdmin 4.0 and earlier allows remote attackers to bypass the login authentication and obtain the administrative privilege of the Postgrpgpool · pgpooladmin | Critical9.8 | — | 1.7% | Jan 9, 2019 |
30Monitor | CVE-2024-45624No exploit | Exposure of sensitive information due to incompatible policies issue exists in Pgpool-II.pgpool global development group · pgpool-ii · CWE-200 | High7.5 | — | 0.5% | Sep 12, 2024 |
26Monitor | CVE-2023-22332No exploit | Information disclosure vulnerability exists in Pgpool-II 4.4.0 to 4.4.1 (4.4 series), 4.3.0 to 4.3.4 (4.3 series), 4.2.0 to 4.2.11 (4.2 seripgpool · pgpool-ii · CWE-312 | Medium6.5 | — | 0.7% | Jan 30, 2023 |
- CVE-2018-1620340Plan
PgpoolAdmin 4.0 and earlier allows remote attackers to bypass the login authentication and obtain the administrative privilege of the Postgr
CriticalCVSS 9.8No exploitEPSS 2%pgpool · pgpooladminJan 9, 2019
- CVE-2024-4562430Monitor
Exposure of sensitive information due to incompatible policies issue exists in Pgpool-II.
HighCVSS 7.5No exploitEPSS 1%pgpool global development group · pgpool-iiSep 12, 2024
- CVE-2023-2233226Monitor
Information disclosure vulnerability exists in Pgpool-II 4.4.0 to 4.4.1 (4.4 series), 4.3.0 to 4.3.4 (4.3 series), 4.2.0 to 4.2.11 (4.2 seri
MediumCVSS 6.5No exploitEPSS 1%pgpool · pgpool-iiJan 30, 2023