Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-6817

Опубликовано: 23 мая 2017
Источник: debian
EPSS Низкий

Описание

PgBouncer 1.6.x before 1.6.1, when configured with auth_user, allows remote attackers to gain login access as auth_user via an unknown username.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
pgbouncerfixed1.6.1-1package
pgbouncernot-affectedjessiepackage
pgbouncernot-affectedwheezypackage
pgbouncernot-affectedsqueezepackage

Примечания

  • http://web.archive.org/web/20150905195759/http://pgbouncer.github.io/2015/09/pgbouncer-1-6-1/

  • https://github.com/pgbouncer/pgbouncer/issues/69

  • https://www.openwall.com/lists/oss-security/2015/09/04/3

EPSS

Процентиль: 80%
0.01367
Низкий

Связанные уязвимости

CVSS3: 8.1
ubuntu
больше 8 лет назад

PgBouncer 1.6.x before 1.6.1, when configured with auth_user, allows remote attackers to gain login access as auth_user via an unknown username.

CVSS3: 8.1
nvd
больше 8 лет назад

PgBouncer 1.6.x before 1.6.1, when configured with auth_user, allows remote attackers to gain login access as auth_user via an unknown username.

CVSS3: 8.1
github
больше 3 лет назад

PgBouncer 1.6.x before 1.6.1, when configured with auth_user, allows remote attackers to gain login access as auth_user via an unknown username.

EPSS

Процентиль: 80%
0.01367
Низкий