|
81
|
-
6.5
|
MEDIUM
|
Multiple stack-based buffer overflows in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated users to cause a den…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-0063
|
cpe:2.3:a:postgresql:postgresql:9.3:* cpe:2.3:a:postgresql:postgresql:9.3.2:* cpe:2.3:a:postgresql:postgresql:9.3…
|
|
8.4.19
|
|
|
2024-11-21 11:01
2014-03-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
82
|
-
4.9
|
MEDIUM
|
Race condition in the (1) CREATE INDEX and (2) unspecified ALTER TABLE commands in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow…
|
CWE-362
Race Condition
|
CVE-2014-0062
|
cpe:2.3:a:postgresql:postgresql:9.3:* cpe:2.3:a:postgresql:postgresql:9.3.2:* cpe:2.3:a:postgresql:postgresql:9.3…
|
|
8.4.19
|
|
|
2024-11-21 11:01
2014-03-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
83
|
-
6.5
|
MEDIUM
|
The validator functions for the procedural languages (PLs) in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allow remote authenticated…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-0061
|
cpe:2.3:a:postgresql:postgresql:9.3:* cpe:2.3:a:postgresql:postgresql:9.3.2:* cpe:2.3:a:postgresql:postgresql:9.3…
|
|
8.4.19
|
|
|
2024-11-21 11:01
2014-03-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
84
|
-
4.0
|
MEDIUM
|
PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 does not properly enforce the ADMIN OPTION restriction, which allows remote authenticate…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-0060
|
cpe:2.3:a:postgresql:postgresql:9.3:* cpe:2.3:a:postgresql:postgresql:9.3.2:* cpe:2.3:a:postgresql:postgresql:9.3…
|
|
8.4.19
|
|
|
2024-11-21 11:01
2014-03-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
85
|
-
10.0
|
HIGH
|
PostgreSQL, possibly 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, 8.4.x before 8.4.17, and 8.3.x before 8.3.23 incorrectly provides the superuser password to scripts related to "graph…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-1903
|
cpe:2.3:a:postgresql:postgresql:9.2:* cpe:2.3:a:postgresql:postgresql:9.2.3:* cpe:2.3:a:postgresql:postgresql:9.2…
|
|
|
|
|
2024-11-21 10:50
2013-04-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
86
|
-
10.0
|
HIGH
|
PostgreSQL, 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, 8.4.x before 8.4.17, and 8.3.x before 8.3.23 generates insecure temporary files with predictable filenames, which has unspecif…
|
NVD-CWE-Other
|
CVE-2013-1902
|
cpe:2.3:a:postgresql:postgresql:9.2:* cpe:2.3:a:postgresql:postgresql:9.2.3:* cpe:2.3:a:postgresql:postgresql:9.2…
|
|
|
|
|
2024-11-21 10:50
2013-04-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
87
|
-
4.0
|
MEDIUM
|
PostgreSQL 9.2.x before 9.2.4 and 9.1.x before 9.1.9 does not properly check REPLICATION privileges, which allows remote authenticated users to bypass intended backup restrictions by calling the (1) …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-1901
|
cpe:2.3:a:postgresql:postgresql:9.2:* cpe:2.3:a:postgresql:postgresql:9.2.3:* cpe:2.3:a:postgresql:postgresql:9.2…
|
|
|
|
|
2024-11-21 10:50
2013-04-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
88
|
-
8.5
|
HIGH
|
PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, and 8.4.x before 8.4.17, when using OpenSSL, generates insufficiently random numbers, which might allow remote authenticated us…
|
CWE-189
Numeric Errors
|
CVE-2013-1900
|
cpe:2.3:a:postgresql:postgresql:9.2:* cpe:2.3:a:postgresql:postgresql:9.2.3:* cpe:2.3:a:postgresql:postgresql:9.2…
|
|
|
|
|
2024-11-21 10:50
2013-04-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
89
|
-
6.5
|
MEDIUM
|
Argument injection vulnerability in PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, and 9.0.x before 9.0.13 allows remote attackers to cause a denial of service (file corruption), and allows remot…
|
CWE-94
Code Injection
|
CVE-2013-1899
|
cpe:2.3:a:postgresql:postgresql:9.2:* cpe:2.3:a:postgresql:postgresql:9.2.3:* cpe:2.3:a:postgresql:postgresql:9.2…
|
|
|
|
|
2024-11-21 10:50
2013-04-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
90
|
-
6.8
|
MEDIUM
|
PostgreSQL 9.2.x before 9.2.3, 9.1.x before 9.1.8, 9.0.x before 9.0.12, 8.4.x before 8.4.16, and 8.3.x before 8.3.23 does not properly declare the enum_recv function in backend/utils/adt/enum.c, whic…
|
CWE-20
Improper Input Validation
|
CVE-2013-0255
|
cpe:2.3:a:postgresql:postgresql:9.1:* cpe:2.3:a:postgresql:postgresql:9.1.7:* cpe:2.3:a:postgresql:postgresql:9.1…
|
|
|
|
|
2024-11-21 10:47
2013-02-13
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|