2025年2月14日星期五

PostgreSQL Data Manipulation Vulnerability

PostgreSQL Data Manipulation Vulnerability

Release Date: 14 Feb 2025

RISK: Medium Risk

TYPE: Servers - Database Servers

A vulnerability was identified in PostgreSQL. A remote attacker could exploit this vulnerability to trigger sensitive information disclosure, data manipulation and security restriction bypass on the targeted system.

 


Impact

  • Data Manipulation
  • Security Restriction Bypass
  • Information Disclosure

System / Technologies affected

  • PostgreSQL versions before 17.3
  • PostgreSQL versions before 16.7
  • PostgreSQL versions before 15.11
  • PostgreSQL versions before 14.16
  • PostgreSQL versions before 13.19

Solutions

Before installation of the software, please visit the software manufacturer website for more details.

 

Apply fixes issued by the vendor:


Vulnerability Identifier


Source


Related Link

沒有留言:

發佈留言

思科產品多個漏洞

思科產品多個漏洞 於思科產品發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況,資料篡改及繞過保安限制。 影響 阻斷服務 繞過保安限制 篡改 受影響之系統或技術 Cisco IOS Cisco IOS XE 請參考供應商發佈的連結以了解受影響的版本: https:...