İçeriğe atla
Noroxi

PostgreSQL kayıtları

postgresql üreticisine ait 220 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
3 · %1,4
Pre-auth RCE
11
Düzeltme kaydı olan
%86,4
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

220 kayıt
  • CVE-2017-7546
    57Planlayın

    PostgreSQL versions before 9.2.22, 9.3.18, 9.4.13, 9.5.8 and 9.6.4 are vulnerable to incorrect authentication flaw allowing remote attackers

    KritikCVSS 9,8İstismar yokEPSS %62

    postgresql · postgresql16 Ağu 2017

  • CVE-2019-9193
    55Planlayın

    In PostgreSQL 9.3 through 11.2, the "COPY TO/FROM PROGRAM" function allows superusers and users in the 'pg_execute_server_program' group to

    YüksekCVSS 7,2SilahlaştırılmışEPSS %92

    postgresql · postgresql1 Nis 2019

  • CVE-2020-25695
    49Planlayın

    A flaw was found in PostgreSQL versions before 13.1, before 12.5, before 11.10, before 10.15, before 9.6.20 and before 9.5.24.

    YüksekCVSS 8,8İstismar yokEPSS %46

    postgresql · postgresql15 Kas 2020

  • CVE-2007-3280
    44Planlayın

    The Database Link library (dblink) in PostgreSQL 8.1 implements functions via CREATE statements that map to arbitrary libraries based on the

    KritikCVSS 9,0SilahlaştırılmışEPSS %25

    postgresql · postgresql19 Haz 2007

  • CVE-2013-1899
    42Planlayın

    Argument injection vulnerability in PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, and 9.0.x before 9.0.13 allows remote attackers to ca

    OrtaCVSS 6,5SilahlaştırılmışEPSS %54

    postgresql · postgresql4 Nis 2013

  • CVE-2018-16850
    41Planlayın

    postgresql before versions 11.1, 10.6 is vulnerable to a to SQL injection in pg_upgrade and pg_dump via CREATE TRIGGER ...

    KritikCVSS 9,8İstismar yokEPSS %5

    postgresql · postgresql13 Kas 2018

  • CVE-2007-3279
    41Planlayın

    PostgreSQL 8.1 and probably later versions, when the PL/pgSQL (plpgsql) language has been created, grants certain plpgsql privileges to the

    KritikCVSS 10,0İstismar yokEPSS %3

    postgresql · postgresql19 Haz 2007

  • CVE-2013-1903
    41Planlayın

    PostgreSQL, possibly 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, 8.4.x before 8.4.17, and 8.3.x before 8.3.23 incorrectly p

    KritikCVSS 10,0İstismar yokEPSS %2

    postgresql · postgresql4 Nis 2013

  • CVE-2013-1902
    41Planlayın

    PostgreSQL, 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, 8.4.x before 8.4.17, and 8.3.x before 8.3.23 generates insecure tem

    KritikCVSS 10,0İstismar yokEPSS %2

    postgresql · postgresql4 Nis 2013

  • CVE-2002-1399
    41Planlayın

    Unknown vulnerability in cash_out and possibly other functions in PostgreSQL 7.2.1 and earlier, and possibly later versions before 7.2.3, wi

    KritikCVSS 10,0İstismar yokEPSS %2

    postgresql · postgresql17 Oca 2003

  • CVE-2022-1552
    40Planlayın

    A flaw was found in PostgreSQL.

    YüksekCVSS 8,8İstismar yokEPSS %16

    postgresql · postgresql31 Ağu 2022

  • CVE-2024-1597
    40Planlayın

    pgjdbc SQL Injection via line comment generation

    KritikCVSS 9,8İstismar yokEPSS %5

    postgresql · postgresql jdbc driver19 Şub 2024

  • CVE-2015-3166
    40Planlayın

    The snprintf implementation in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.

    KritikCVSS 9,8İstismar yokEPSS %5

    postgresql · postgresql20 Kas 2019

  • CVE-2015-0244
    40Planlayın

    PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3.x before 9.3.6, and 9.4.x before 9.4.1 does not properly handle erro

    KritikCVSS 9,8İstismar yokEPSS %4

    postgresql · postgresql27 Oca 2020

  • CVE-2022-21724
    40Planlayın

    Unchecked Class Instantiation when providing Plugin Classes

    KritikCVSS 9,8İstismar yokEPSS %3

    postgresql · postgresql jdbc driver2 Şub 2022

  • CVE-2022-26520
    40Planlayın

    In pgjdbc before 42.3.3, an attacker (who controls the jdbc URL or properties) can call java.util.logging.FileHandler to write to arbitrary

    KritikCVSS 9,8İstismar yokEPSS %3

    postgresql · postgresql jdbc driver10 Mar 2022

  • CVE-2019-10211
    40Planlayın

    Postgresql Windows installer before versions 11.5, 10.10, 9.6.15, 9.5.19, 9.4.24 is vulnerable via bundled OpenSSL executing code from unpro

    KritikCVSS 9,8İstismar yokEPSS %2

    postgresql · postgresql29 Eki 2019

  • CVE-2018-1058
    39İzleyin

    A flaw was found in the way Postgresql allowed a user to modify the behavior of a query for other users.

    YüksekCVSS 8,8Kavram kanıtıEPSS %13

    postgresql · postgresql2 Mar 2018

  • CVE-2017-7547
    37İzleyin

    PostgreSQL versions before 9.2.22, 9.3.18, 9.4.13, 9.5.8 and 9.6.4 are vulnerable to authorization flaw allowing remote authenticated attack

    YüksekCVSS 8,8İstismar yokEPSS %6

    postgresql · postgresql16 Ağu 2017

  • CVE-2015-0241
    37İzleyin

    The to_char function in PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3.x before 9.3.6, and 9.4.x before 9.4.1 allow

    YüksekCVSS 8,8İstismar yokEPSS %6

    postgresql · postgresql27 Oca 2020

  • CVE-2015-0242
    37İzleyin

    Stack-based buffer overflow in the *printf function implementations in PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9

    YüksekCVSS 8,8İstismar yokEPSS %5

    postgresql · postgresql27 Oca 2020

  • CVE-2015-0243
    37İzleyin

    Multiple buffer overflows in contrib/pgcrypto in PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3.x before 9.3.6, and

    YüksekCVSS 8,8İstismar yokEPSS %5

    postgresql · postgresql27 Oca 2020

  • CVE-2016-3065
    37İzleyin

    The (1) brin_page_type and (2) brin_metapage_info functions in the pageinspect extension in PostgreSQL before 9.5.x before 9.5.2 allows atta

    KritikCVSS 9,1İstismar yokEPSS %4

    postgresql · postgresql11 Nis 2016

  • CVE-2018-1115
    37İzleyin

    postgresql before versions 10.4, 9.6.9 is vulnerable in the adminpack extension, the pg_catalog.pg_logfile_rotate() function doesn't follow

    KritikCVSS 9,1İstismar yokEPSS %4

    postgresql · postgresql10 May 2018

  • CVE-2024-10979
    36İzleyin

    PostgreSQL PL/Perl environment variable changes execute arbitrary code

    YüksekCVSS 8,8İstismar yokEPSS %4

    postgresql · postgresql14 Kas 2024