Логотип exploitDog
product: "postgresql"
Консоль
Логотип exploitDog

exploitDog

product: "postgresql"

Количество 970

Количество 970

ubuntu логотип

CVE-2016-2193

больше 9 лет назад

PostgreSQL before 9.5.x before 9.5.2 does not properly maintain row-security status in cached plans, which might allow attackers to bypass intended access restrictions by leveraging a session that performs queries as more than one role.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2016-2193

больше 9 лет назад

PostgreSQL before 9.5.x before 9.5.2 does not properly maintain row-security status in cached plans, which might allow attackers to bypass intended access restrictions by leveraging a session that performs queries as more than one role.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2016-2193

больше 9 лет назад

PostgreSQL before 9.5.x before 9.5.2 does not properly maintain row-security status in cached plans, which might allow attackers to bypass intended access restrictions by leveraging a session that performs queries as more than one role.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-2193

больше 9 лет назад

PostgreSQL before 9.5.x before 9.5.2 does not properly maintain row-se ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2016-0773

больше 9 лет назад

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 allows remote attackers to cause a denial of service (infinite loop or buffer overflow and crash) via a large Unicode character range in a regular expression.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2016-0773

больше 9 лет назад

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 allows remote attackers to cause a denial of service (infinite loop or buffer overflow and crash) via a large Unicode character range in a regular expression.

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2016-0773

больше 9 лет назад

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 allows remote attackers to cause a denial of service (infinite loop or buffer overflow and crash) via a large Unicode character range in a regular expression.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-0773

больше 9 лет назад

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9. ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2016-0768

около 8 лет назад

PostgreSQL PL/Java after 9.0 does not honor access controls on large objects.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2016-0768

около 8 лет назад

PostgreSQL PL/Java after 9.0 does not honor access controls on large objects.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-0768

около 8 лет назад

PostgreSQL PL/Java after 9.0 does not honor access controls on large o ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2016-0766

больше 9 лет назад

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 does not properly restrict access to unspecified custom configuration settings (GUCS) for PL/Java, which allows attackers to gain privileges via unspecified vectors.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2016-0766

больше 9 лет назад

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 does not properly restrict access to unspecified custom configuration settings (GUCS) for PL/Java, which allows attackers to gain privileges via unspecified vectors.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2016-0766

больше 9 лет назад

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9. ...

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2015-5289

почти 10 лет назад

Multiple stack-based buffer overflows in json parsing in PostgreSQL before 9.3.x before 9.3.10 and 9.4.x before 9.4.5 allow attackers to cause a denial of service (server crash) via unspecified vectors, which are not properly handled in (1) json or (2) jsonb values.

CVSS2: 6.4
EPSS: Низкий
redhat логотип

CVE-2015-5289

почти 10 лет назад

Multiple stack-based buffer overflows in json parsing in PostgreSQL before 9.3.x before 9.3.10 and 9.4.x before 9.4.5 allow attackers to cause a denial of service (server crash) via unspecified vectors, which are not properly handled in (1) json or (2) jsonb values.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2015-5289

почти 10 лет назад

Multiple stack-based buffer overflows in json parsing in PostgreSQL before 9.3.x before 9.3.10 and 9.4.x before 9.4.5 allow attackers to cause a denial of service (server crash) via unspecified vectors, which are not properly handled in (1) json or (2) jsonb values.

CVSS2: 6.4
EPSS: Низкий
debian логотип

CVE-2015-5289

почти 10 лет назад

Multiple stack-based buffer overflows in json parsing in PostgreSQL be ...

CVSS2: 6.4
EPSS: Низкий
ubuntu логотип

CVE-2015-5288

почти 10 лет назад

The crypt function in contrib/pgcrypto in PostgreSQL before 9.0.23, 9.1.x before 9.1.19, 9.2.x before 9.2.14, 9.3.x before 9.3.10, and 9.4.x before 9.4.5 allows attackers to cause a denial of service (server crash) or read arbitrary server memory via a "too-short" salt.

CVSS2: 6.4
EPSS: Низкий
redhat логотип

CVE-2015-5288

почти 10 лет назад

The crypt function in contrib/pgcrypto in PostgreSQL before 9.0.23, 9.1.x before 9.1.19, 9.2.x before 9.2.14, 9.3.x before 9.3.10, and 9.4.x before 9.4.5 allows attackers to cause a denial of service (server crash) or read arbitrary server memory via a "too-short" salt.

CVSS2: 4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2016-2193

PostgreSQL before 9.5.x before 9.5.2 does not properly maintain row-security status in cached plans, which might allow attackers to bypass intended access restrictions by leveraging a session that performs queries as more than one role.

CVSS3: 7.5
2%
Низкий
больше 9 лет назад
redhat логотип
CVE-2016-2193

PostgreSQL before 9.5.x before 9.5.2 does not properly maintain row-security status in cached plans, which might allow attackers to bypass intended access restrictions by leveraging a session that performs queries as more than one role.

CVSS2: 4.6
2%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-2193

PostgreSQL before 9.5.x before 9.5.2 does not properly maintain row-security status in cached plans, which might allow attackers to bypass intended access restrictions by leveraging a session that performs queries as more than one role.

CVSS3: 7.5
2%
Низкий
больше 9 лет назад
debian логотип
CVE-2016-2193

PostgreSQL before 9.5.x before 9.5.2 does not properly maintain row-se ...

CVSS3: 7.5
2%
Низкий
больше 9 лет назад
ubuntu логотип
CVE-2016-0773

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 allows remote attackers to cause a denial of service (infinite loop or buffer overflow and crash) via a large Unicode character range in a regular expression.

CVSS3: 7.5
3%
Низкий
больше 9 лет назад
redhat логотип
CVE-2016-0773

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 allows remote attackers to cause a denial of service (infinite loop or buffer overflow and crash) via a large Unicode character range in a regular expression.

CVSS2: 6.8
3%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-0773

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 allows remote attackers to cause a denial of service (infinite loop or buffer overflow and crash) via a large Unicode character range in a regular expression.

CVSS3: 7.5
3%
Низкий
больше 9 лет назад
debian логотип
CVE-2016-0773

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9. ...

CVSS3: 7.5
3%
Низкий
больше 9 лет назад
ubuntu логотип
CVE-2016-0768

PostgreSQL PL/Java after 9.0 does not honor access controls on large objects.

CVSS3: 7.5
0%
Низкий
около 8 лет назад
nvd логотип
CVE-2016-0768

PostgreSQL PL/Java after 9.0 does not honor access controls on large objects.

CVSS3: 7.5
0%
Низкий
около 8 лет назад
debian логотип
CVE-2016-0768

PostgreSQL PL/Java after 9.0 does not honor access controls on large o ...

CVSS3: 7.5
0%
Низкий
около 8 лет назад
ubuntu логотип
CVE-2016-0766

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 does not properly restrict access to unspecified custom configuration settings (GUCS) for PL/Java, which allows attackers to gain privileges via unspecified vectors.

CVSS3: 8.8
1%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-0766

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 does not properly restrict access to unspecified custom configuration settings (GUCS) for PL/Java, which allows attackers to gain privileges via unspecified vectors.

CVSS3: 8.8
1%
Низкий
больше 9 лет назад
debian логотип
CVE-2016-0766

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9. ...

CVSS3: 8.8
1%
Низкий
больше 9 лет назад
ubuntu логотип
CVE-2015-5289

Multiple stack-based buffer overflows in json parsing in PostgreSQL before 9.3.x before 9.3.10 and 9.4.x before 9.4.5 allow attackers to cause a denial of service (server crash) via unspecified vectors, which are not properly handled in (1) json or (2) jsonb values.

CVSS2: 6.4
7%
Низкий
почти 10 лет назад
redhat логотип
CVE-2015-5289

Multiple stack-based buffer overflows in json parsing in PostgreSQL before 9.3.x before 9.3.10 and 9.4.x before 9.4.5 allow attackers to cause a denial of service (server crash) via unspecified vectors, which are not properly handled in (1) json or (2) jsonb values.

CVSS2: 4.3
7%
Низкий
почти 10 лет назад
nvd логотип
CVE-2015-5289

Multiple stack-based buffer overflows in json parsing in PostgreSQL before 9.3.x before 9.3.10 and 9.4.x before 9.4.5 allow attackers to cause a denial of service (server crash) via unspecified vectors, which are not properly handled in (1) json or (2) jsonb values.

CVSS2: 6.4
7%
Низкий
почти 10 лет назад
debian логотип
CVE-2015-5289

Multiple stack-based buffer overflows in json parsing in PostgreSQL be ...

CVSS2: 6.4
7%
Низкий
почти 10 лет назад
ubuntu логотип
CVE-2015-5288

The crypt function in contrib/pgcrypto in PostgreSQL before 9.0.23, 9.1.x before 9.1.19, 9.2.x before 9.2.14, 9.3.x before 9.3.10, and 9.4.x before 9.4.5 allows attackers to cause a denial of service (server crash) or read arbitrary server memory via a "too-short" salt.

CVSS2: 6.4
3%
Низкий
почти 10 лет назад
redhat логотип
CVE-2015-5288

The crypt function in contrib/pgcrypto in PostgreSQL before 9.0.23, 9.1.x before 9.1.19, 9.2.x before 9.2.14, 9.3.x before 9.3.10, and 9.4.x before 9.4.5 allows attackers to cause a denial of service (server crash) or read arbitrary server memory via a "too-short" salt.

CVSS2: 4
3%
Низкий
почти 10 лет назад

Уязвимостей на страницу