Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2009-2940

Опубликовано: 22 окт. 2009
Источник: debian
EPSS Низкий

Описание

The pygresql module 3.8.1 and 4.0 for Python does not properly support the PQescapeStringConn function, which might allow remote attackers to leverage escaping issues involving multibyte character encodings.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
pygresqlfixed1:4.0-1package

EPSS

Процентиль: 72%
0.00734
Низкий

Связанные уязвимости

ubuntu
больше 15 лет назад

The pygresql module 3.8.1 and 4.0 for Python does not properly support the PQescapeStringConn function, which might allow remote attackers to leverage escaping issues involving multibyte character encodings.

CVSS3: 5.4
redhat
больше 15 лет назад

The pygresql module 3.8.1 and 4.0 for Python does not properly support the PQescapeStringConn function, which might allow remote attackers to leverage escaping issues involving multibyte character encodings.

nvd
больше 15 лет назад

The pygresql module 3.8.1 and 4.0 for Python does not properly support the PQescapeStringConn function, which might allow remote attackers to leverage escaping issues involving multibyte character encodings.

github
около 3 лет назад

PyGreSQL Might Be Vulnerable to Encoding-Based SQL Injection

EPSS

Процентиль: 72%
0.00734
Низкий