|
81
|
7.5
5.0
|
HIGH
Network
|
PostgreSQL before 9.5.x before 9.5.2 does not properly maintain row-security status in cached plans, which might allow attackers to bypass intended access restrictions by leveraging a session that pe…
|
CWE-254
7PK - Security Features
|
CVE-2016-2193
|
cpe:2.3:a:postgresql:postgresql:9.5:* cpe:2.3:a:postgresql:postgresql:9.5.1:*
|
|
|
|
|
2024-11-21 11:48
2016-04-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
82
|
7.5
5.0
|
HIGH
Network
|
PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 allows remote attackers to cause a denial of service (infinite loop or buffer overflow a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0773
|
cpe:2.3:a:postgresql:postgresql:9.5:* cpe:2.3:a:postgresql:postgresql:9.4:* cpe:2.3:a:postgresql:postgresql:9.4.5…
|
|
9.1.19
|
|
|
2024-11-21 11:42
2016-02-18
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
83
|
8.8
9.0
|
HIGH
Network
|
PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 does not properly restrict access to unspecified custom configuration settings (GUCS) fo…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0766
|
cpe:2.3:a:postgresql:postgresql:9.5:* cpe:2.3:a:postgresql:postgresql:*:*
|
9.2 9.4 9.3 9.1.0
|
|
|
9.2.15 9.4.6 9.3.11 9.1.20
|
2024-11-21 11:42
2016-02-18
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
84
|
-
6.4
|
MEDIUM
|
Multiple stack-based buffer overflows in json parsing in PostgreSQL before 9.3.x before 9.3.10 and 9.4.x before 9.4.5 allow attackers to cause a denial of service (server crash) via unspecified vecto…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-5289
|
cpe:2.3:a:postgresql:postgresql:*:*
|
9.4.0 9.3.0
|
|
|
9.4.5 9.3.10
|
2024-11-21 11:32
2015-10-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
85
|
-
6.4
|
MEDIUM
|
The crypt function in contrib/pgcrypto in PostgreSQL before 9.0.23, 9.1.x before 9.1.19, 9.2.x before 9.2.14, 9.3.x before 9.3.10, and 9.4.x before 9.4.5 allows attackers to cause a denial of service…
|
CWE-200
Information Exposure
|
CVE-2015-5288
|
cpe:2.3:a:postgresql:postgresql:9.4.4:* cpe:2.3:a:postgresql:postgresql:9.4.3:* cpe:2.3:a:postgresql:postgresql:9…
|
|
9.0.22
|
|
|
2024-11-21 11:32
2015-10-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
86
|
-
4.3
|
MEDIUM
|
Double free vulnerability in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 allows remote attackers to cause a denial of service (crash…
|
NVD-CWE-Other
|
CVE-2015-3165
|
cpe:2.3:a:postgresql:postgresql:9.4.1:* cpe:2.3:a:postgresql:postgresql:9.4.0:* cpe:2.3:a:postgresql:postgresql:9…
|
|
9.0.19
|
|
|
2024-11-21 11:28
2015-05-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
87
|
-
6.5
|
MEDIUM
|
Multiple integer overflows in contrib/hstore/hstore_io.c in PostgreSQL 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to have un…
|
CWE-189
Numeric Errors
|
CVE-2014-2669
|
cpe:2.3:a:postgresql:postgresql:9.3:* cpe:2.3:a:postgresql:postgresql:9.3.2:* cpe:2.3:a:postgresql:postgresql:9.3…
|
|
|
|
|
2024-11-21 11:06
2014-03-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
88
|
-
4.6
|
MEDIUM
|
The "make check" command for the test suites in PostgreSQL 9.3.3 and earlier does not properly invoke initdb to specify the authentication requirements for a database cluster to be used for the tests…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-0067
|
cpe:2.3:a:postgresql:postgresql:9.3:* cpe:2.3:a:postgresql:postgresql:9.3.2:* cpe:2.3:a:postgresql:postgresql:9.3…
|
|
8.4.19
|
|
|
2024-11-21 11:01
2014-03-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
89
|
-
4.0
|
MEDIUM
|
The chkpass extension in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 does not properly check the return value of the crypt library f…
|
CWE-20
Improper Input Validation
|
CVE-2014-0066
|
cpe:2.3:a:postgresql:postgresql:9.3:* cpe:2.3:a:postgresql:postgresql:9.3.2:* cpe:2.3:a:postgresql:postgresql:9.3…
|
|
8.4.19
|
|
|
2024-11-21 11:01
2014-03-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
90
|
-
6.5
|
MEDIUM
|
Multiple buffer overflows in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to have unspecified impact…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-0065
|
cpe:2.3:a:postgresql:postgresql:9.3:* cpe:2.3:a:postgresql:postgresql:9.3.2:* cpe:2.3:a:postgresql:postgresql:9.3…
|
|
8.4.19
|
|
|
2024-11-21 11:01
2014-03-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|