Логотип exploitDog
bind:"BDU:2019-04641" OR bind:"CVE-2019-10130"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2019-04641" OR bind:"CVE-2019-10130"

Количество 17

Количество 17

fstec логотип

BDU:2019-04641

почти 6 лет назад

Уязвимость системы управления базами данных PostgreSQL, связанная с некорректным контролем доступа, позволяющая нарушителю получить доступ к конфиденциальным данным

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2019-10130

почти 6 лет назад

A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker.

CVSS3: 4.3
EPSS: Низкий
redhat логотип

CVE-2019-10130

около 6 лет назад

A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker.

CVSS3: 3.1
EPSS: Низкий
nvd логотип

CVE-2019-10130

почти 6 лет назад

A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2019-10130

почти 6 лет назад

A vulnerability was found in PostgreSQL versions 11.x up to excluding ...

CVSS3: 4.3
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1668-1

почти 6 лет назад

Security update for postgresql96

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1578-1

около 6 лет назад

Security update for postgresql10

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1687-1

почти 6 лет назад

Security update for postgresql96

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1511-1

около 6 лет назад

Security update for postgresql10

EPSS: Низкий
github логотип

GHSA-5rxr-v694-cxfj

около 3 лет назад

A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker.

CVSS3: 4.3
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1773-1

почти 6 лет назад

Security update for postgresql10

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2012-1

почти 6 лет назад

Security update for postgresql10

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1810-1

почти 6 лет назад

Security update for postgresql10

EPSS: Низкий
oracle-oval логотип

ELSA-2020-3669

почти 5 лет назад

ELSA-2020-3669: postgresql:10 security and bug fix update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1227-1

почти 5 лет назад

Security update for postgresql96, postgresql10 and postgresql12

EPSS: Низкий
oracle-oval логотип

ELSA-2020-5619-1

больше 4 лет назад

ELSA-2020-5619-1: postgresql:9.6 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2021-9290

около 4 лет назад

ELSA-2021-9290: rh-postgresql10-postgresql security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2019-04641

Уязвимость системы управления базами данных PostgreSQL, связанная с некорректным контролем доступа, позволяющая нарушителю получить доступ к конфиденциальным данным

CVSS3: 4.3
0%
Низкий
почти 6 лет назад
ubuntu логотип
CVE-2019-10130

A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker.

CVSS3: 4.3
0%
Низкий
почти 6 лет назад
redhat логотип
CVE-2019-10130

A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker.

CVSS3: 3.1
0%
Низкий
около 6 лет назад
nvd логотип
CVE-2019-10130

A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker.

CVSS3: 4.3
0%
Низкий
почти 6 лет назад
debian логотип
CVE-2019-10130

A vulnerability was found in PostgreSQL versions 11.x up to excluding ...

CVSS3: 4.3
0%
Низкий
почти 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1668-1

Security update for postgresql96

0%
Низкий
почти 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1578-1

Security update for postgresql10

0%
Низкий
около 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1687-1

Security update for postgresql96

0%
Низкий
почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1511-1

Security update for postgresql10

0%
Низкий
около 6 лет назад
github логотип
GHSA-5rxr-v694-cxfj

A vulnerability was found in PostgreSQL versions 11.x up to excluding 11.3, 10.x up to excluding 10.8, 9.6.x up to, excluding 9.6.13, 9.5.x up to, excluding 9.5.17. PostgreSQL maintains column statistics for tables. Certain statistics, such as histograms and lists of most common values, contain values taken from the column. PostgreSQL does not evaluate row security policies before consulting those statistics during query planning; an attacker can exploit this to read the most common values of certain columns. Affected columns are those for which the attacker has SELECT privilege and for which, in an ordinary query, row-level security prunes the set of rows visible to the attacker.

CVSS3: 4.3
0%
Низкий
около 3 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1773-1

Security update for postgresql10

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:2012-1

Security update for postgresql10

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1810-1

Security update for postgresql10

почти 6 лет назад
oracle-oval логотип
ELSA-2020-3669

ELSA-2020-3669: postgresql:10 security and bug fix update (MODERATE)

почти 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1227-1

Security update for postgresql96, postgresql10 and postgresql12

почти 5 лет назад
oracle-oval логотип
ELSA-2020-5619-1

ELSA-2020-5619-1: postgresql:9.6 security update (IMPORTANT)

больше 4 лет назад
oracle-oval логотип
ELSA-2021-9290

ELSA-2021-9290: rh-postgresql10-postgresql security update (IMPORTANT)

около 4 лет назад

Уязвимостей на страницу