Логотип exploitDog
bind:"GHSA-2783-h34h-q54q" OR bind:"CVE-2020-14349"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-2783-h34h-q54q" OR bind:"CVE-2020-14349"

Количество 22

Количество 22

github логотип

GHSA-2783-h34h-q54q

около 3 лет назад

It was found that PostgreSQL versions before 12.4, before 11.9 and before 10.14 did not properly sanitize the search_path during logical replication. An authenticated attacker could use this flaw in an attack similar to CVE-2018-1058, in order to execute arbitrary SQL command in the context of the user used for replication.

CVSS3: 7.1
EPSS: Низкий
ubuntu логотип

CVE-2020-14349

почти 5 лет назад

It was found that PostgreSQL versions before 12.4, before 11.9 and before 10.14 did not properly sanitize the search_path during logical replication. An authenticated attacker could use this flaw in an attack similar to CVE-2018-1058, in order to execute arbitrary SQL command in the context of the user used for replication.

CVSS3: 7.1
EPSS: Низкий
redhat логотип

CVE-2020-14349

почти 5 лет назад

It was found that PostgreSQL versions before 12.4, before 11.9 and before 10.14 did not properly sanitize the search_path during logical replication. An authenticated attacker could use this flaw in an attack similar to CVE-2018-1058, in order to execute arbitrary SQL command in the context of the user used for replication.

CVSS3: 7.1
EPSS: Низкий
nvd логотип

CVE-2020-14349

почти 5 лет назад

It was found that PostgreSQL versions before 12.4, before 11.9 and before 10.14 did not properly sanitize the search_path during logical replication. An authenticated attacker could use this flaw in an attack similar to CVE-2018-1058, in order to execute arbitrary SQL command in the context of the user used for replication.

CVSS3: 7.1
EPSS: Низкий
msrc логотип

CVE-2020-14349

почти 5 лет назад

CVSS3: 7.1
EPSS: Низкий
debian логотип

CVE-2020-14349

почти 5 лет назад

It was found that PostgreSQL versions before 12.4, before 11.9 and bef ...

CVSS3: 7.1
EPSS: Низкий
fstec логотип

BDU:2023-00613

около 5 лет назад

Уязвимость системы управления базами данных PostgreSQL, связанная с неконтролируемым элементом пути поиска, позволяющая нарушителю повысить свои привилегии и выполнить произвольные команды

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1326-1

почти 5 лет назад

Security update for postgresql10

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1312-1

почти 5 лет назад

Security update for postgresql10

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1244-1

почти 5 лет назад

Security update for postgresql12

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1243-1

почти 5 лет назад

Security update for postgresql12

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1228-1

почти 5 лет назад

Security update for postgresql, postgresql96, postgresql10, postgresql12

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2355-1

почти 5 лет назад

Security update for postgresql10

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2271-1

почти 5 лет назад

Security update for postgresql12

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2265-1

почти 5 лет назад

Security update for postgresql12

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2264-1

почти 5 лет назад

Security update for postgresql10

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:3630-1

больше 4 лет назад

Security update for postgresql12

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:3464-1

больше 4 лет назад

Security update for postgresql10

EPSS: Низкий
rocky логотип

RLSA-2020:5620

больше 4 лет назад

Important: postgresql:12 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2020-5620-1

больше 4 лет назад

ELSA-2020-5620-1: postgresql:12 security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2783-h34h-q54q

It was found that PostgreSQL versions before 12.4, before 11.9 and before 10.14 did not properly sanitize the search_path during logical replication. An authenticated attacker could use this flaw in an attack similar to CVE-2018-1058, in order to execute arbitrary SQL command in the context of the user used for replication.

CVSS3: 7.1
0%
Низкий
около 3 лет назад
ubuntu логотип
CVE-2020-14349

It was found that PostgreSQL versions before 12.4, before 11.9 and before 10.14 did not properly sanitize the search_path during logical replication. An authenticated attacker could use this flaw in an attack similar to CVE-2018-1058, in order to execute arbitrary SQL command in the context of the user used for replication.

CVSS3: 7.1
0%
Низкий
почти 5 лет назад
redhat логотип
CVE-2020-14349

It was found that PostgreSQL versions before 12.4, before 11.9 and before 10.14 did not properly sanitize the search_path during logical replication. An authenticated attacker could use this flaw in an attack similar to CVE-2018-1058, in order to execute arbitrary SQL command in the context of the user used for replication.

CVSS3: 7.1
0%
Низкий
почти 5 лет назад
nvd логотип
CVE-2020-14349

It was found that PostgreSQL versions before 12.4, before 11.9 and before 10.14 did not properly sanitize the search_path during logical replication. An authenticated attacker could use this flaw in an attack similar to CVE-2018-1058, in order to execute arbitrary SQL command in the context of the user used for replication.

CVSS3: 7.1
0%
Низкий
почти 5 лет назад
msrc логотип
CVSS3: 7.1
0%
Низкий
почти 5 лет назад
debian логотип
CVE-2020-14349

It was found that PostgreSQL versions before 12.4, before 11.9 and bef ...

CVSS3: 7.1
0%
Низкий
почти 5 лет назад
fstec логотип
BDU:2023-00613

Уязвимость системы управления базами данных PostgreSQL, связанная с неконтролируемым элементом пути поиска, позволяющая нарушителю повысить свои привилегии и выполнить произвольные команды

CVSS3: 7.5
0%
Низкий
около 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1326-1

Security update for postgresql10

почти 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1312-1

Security update for postgresql10

почти 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1244-1

Security update for postgresql12

почти 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1243-1

Security update for postgresql12

почти 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1228-1

Security update for postgresql, postgresql96, postgresql10, postgresql12

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:2355-1

Security update for postgresql10

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:2271-1

Security update for postgresql12

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:2265-1

Security update for postgresql12

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:2264-1

Security update for postgresql10

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:3630-1

Security update for postgresql12

больше 4 лет назад
suse-cvrf логотип
SUSE-SU-2020:3464-1

Security update for postgresql10

больше 4 лет назад
rocky логотип
RLSA-2020:5620

Important: postgresql:12 security update

больше 4 лет назад
oracle-oval логотип
ELSA-2020-5620-1

ELSA-2020-5620-1: postgresql:12 security update (IMPORTANT)

больше 4 лет назад

Уязвимостей на страницу