Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
postgresql postgresql 7.4 vulnerabilities and exploits
(subscribe to this query)
6
CVSSv2
CVE-2007-2138
Untrusted search path vulnerability in PostgreSQL prior to 7.3.19, 7.4.x prior to 7.4.17, 8.0.x prior to 8.0.13, 8.1.x prior to 8.1.9, and 8.2.x prior to 8.2.4 allows remote authenticated users, when permitted to call a SECURITY DEFINER function, to gain the privileges of the fun...
Postgresql Postgresql
Debian Debian Linux 3.1
Debian Debian Linux 4.0
Canonical Ubuntu Linux 6.06
Canonical Ubuntu Linux 7.04
Canonical Ubuntu Linux 6.10
5.8
CVSSv2
CVE-2009-4034
PostgreSQL 7.4.x prior to 7.4.27, 8.0.x prior to 8.0.23, 8.1.x prior to 8.1.19, 8.2.x prior to 8.2.15, 8.3.x prior to 8.3.9, and 8.4.x prior to 8.4.2 does not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an X.509 cert...
Postgresql Postgresql 7.4.16
Postgresql Postgresql 8.1.10
Postgresql Postgresql 8.1.6
Postgresql Postgresql 8.2.9
Postgresql Postgresql 8.0.7
Postgresql Postgresql 8.0.2
Postgresql Postgresql 8.1.15
Postgresql Postgresql 8.1.7
Postgresql Postgresql 8.3.6
Postgresql Postgresql 8.4.1
Postgresql Postgresql 8.2.10
Postgresql Postgresql 8.0.22
Postgresql Postgresql 7.4.24
Postgresql Postgresql 8.2.4
Postgresql Postgresql 7.4.22
Postgresql Postgresql 7.4.21
Postgresql Postgresql 8.0.17
Postgresql Postgresql 8.0.10
Postgresql Postgresql 7.4.19
Postgresql Postgresql 8.2.11
Postgresql Postgresql 8.1.13
Postgresql Postgresql 8.0.12
5.5
CVSSv2
CVE-2010-1975
PostgreSQL 7.4 prior to 7.4.29, 8.0 prior to 8.0.25, 8.1 prior to 8.1.21, 8.2 prior to 8.2.17, 8.3 prior to 8.3.11, and 8.4 prior to 8.4.4 does not properly check privileges during certain RESET ALL operations, which allows remote authenticated users to remove arbitrary parameter...
Postgresql Postgresql 7.4.16
Postgresql Postgresql 7.4.24
Postgresql Postgresql 7.4.22
Postgresql Postgresql 7.4.21
Postgresql Postgresql 7.4.19
Postgresql Postgresql 7.4.15
Postgresql Postgresql 7.4.1
Postgresql Postgresql 7.4.14
Postgresql Postgresql 7.4.26
Postgresql Postgresql 7.4.6
Postgresql Postgresql 7.4.23
Postgresql Postgresql 7.4.11
Postgresql Postgresql 7.4.7
Postgresql Postgresql 7.4.17
Postgresql Postgresql 7.4.3
Postgresql Postgresql 7.4.25
Postgresql Postgresql 7.4.9
Postgresql Postgresql 7.4.5
Postgresql Postgresql 7.4.18
Postgresql Postgresql 7.4.8
Postgresql Postgresql 7.4
Postgresql Postgresql 7.4.4
4.3
CVSSv2
CVE-2012-2143
The crypt_des (aka DES-based crypt) function in FreeBSD prior to 9.0-RELEASE-p2, as used in PHP, PostgreSQL, and other products, does not process the complete cleartext password if this password contains a 0x80 character, which makes it easier for context-dependent malicious user...
Postgresql Postgresql
Freebsd Freebsd 5.2.1
Freebsd Freebsd 7.4
Freebsd Freebsd 6.1
Freebsd Freebsd 3.1
Freebsd Freebsd 6.4
Freebsd Freebsd 6.3
Freebsd Freebsd 2.2.5
Freebsd Freebsd 5.5
Freebsd Freebsd 8.2
Freebsd Freebsd 5.4
Freebsd Freebsd 5.3
Freebsd Freebsd 2.2.2
Freebsd Freebsd 2.1.7
Freebsd Freebsd 4.11
Freebsd Freebsd 2.0.5
Freebsd Freebsd 8.0
Freebsd Freebsd 1.1.5.1
Freebsd Freebsd 4.5
Freebsd Freebsd 4.7
Freebsd Freebsd 7.0
Freebsd Freebsd
4.3
CVSSv2
CVE-2005-0227
PostgreSQL (pgsql) 7.4.x, 7.2.x, and other versions allows local users to load arbitrary shared libraries and execute code via the LOAD extension.
Postgresql Postgresql
4
CVSSv2
CVE-2009-3229
The core server component in PostgreSQL 8.4 prior to 8.4.1, 8.3 prior to 8.3.8, and 8.2 prior to 8.2.14 allows remote authenticated users to cause a denial of service (backend shutdown) by "re-LOAD-ing" libraries from a certain plugins directory.
Postgresql Postgresql 8.2.9
Postgresql Postgresql 8.3.6
Postgresql Postgresql 8.2.10
Postgresql Postgresql 8.2.4
Postgresql Postgresql 8.2.11
Postgresql Postgresql 8.2.12
Postgresql Postgresql 8.2.2
Postgresql Postgresql 8.3.3
Postgresql Postgresql 8.3.2
Postgresql Postgresql 8.2.5
Postgresql Postgresql 8.4
Postgresql Postgresql 8.2.1
Postgresql Postgresql 8.3.1
Postgresql Postgresql 8.3.5
Postgresql Postgresql 8.2.7
Postgresql Postgresql 8.2.6
Postgresql Postgresql 8.3.7
Postgresql Postgresql 8.3
Postgresql Postgresql 8.3.4
Postgresql Postgresql 8.2.3
Postgresql Postgresql 8.2.8
Postgresql Postgresql 8.2.13
4
CVSSv2
CVE-2007-4772
The regular expression parser in TCL prior to 8.4.17, as used in PostgreSQL 8.2 prior to 8.2.6, 8.1 prior to 8.1.11, 8.0 prior to 8.0.15, and 7.4 prior to 7.4.19, allows context-dependent malicious users to cause a denial of service (infinite loop) via a crafted regular expressio...
Postgresql Postgresql
Tcl Tcl/tk
Debian Debian Linux 3.1
Canonical Ubuntu Linux 6.06
Canonical Ubuntu Linux 7.04
Canonical Ubuntu Linux 7.10
Canonical Ubuntu Linux 6.10
4
CVSSv2
CVE-2006-5540
backend/parser/analyze.c in PostgreSQL 8.1.x prior to 8.1.5 allows remote authenticated users to cause a denial of service (daemon crash) via certain aggregate functions in an UPDATE statement, which are not properly handled during a "MIN/MAX index optimization."
Postgresql Postgresql 8.0.7
Postgresql Postgresql 8.0.2
Postgresql Postgresql 7.2.7
Postgresql Postgresql 7.3.3
Postgresql Postgresql 7.2
Postgresql Postgresql 7.3
Postgresql Postgresql 8.1
Postgresql Postgresql 6.3.2
Postgresql Postgresql 7.4.1
Postgresql Postgresql 7.3.9
Postgresql Postgresql 7.3.10
Postgresql Postgresql 7.2.3
Postgresql Postgresql 8.1.3
Postgresql Postgresql 7.4.6
Postgresql Postgresql 7.1.1
Postgresql Postgresql 7.4.11
Postgresql Postgresql 8.0.3
Postgresql Postgresql 7.3.15
Postgresql Postgresql 7.4.7
Postgresql Postgresql 7.3.11
Postgresql Postgresql 7.1.3
Postgresql Postgresql 7.4.3
2.1
CVSSv2
CVE-2005-1410
The tsearch2 module in PostgreSQL 7.4 up to and including 8.0.x declares the (1) dex_init, (2) snb_en_init, (3) snb_ru_init, (4) spell_init, and (5) syn_init functions as "internal" even when they do not take an internal argument, which allows malicious users to cause a...
Postgresql Postgresql 8.0.2
Postgresql Postgresql 7.4.6
Postgresql Postgresql 7.4.7
Postgresql Postgresql 7.4.3
Postgresql Postgresql 7.4.5
Postgresql Postgresql 7.4
Postgresql Postgresql 8.0.1
Postgresql Postgresql 8.0
Trustix Secure Linux 2.0
1.5
CVSSv2
CVE-2006-0678
PostgreSQL 7.3.x prior to 7.3.14, 7.4.x prior to 7.4.12, 8.0.x prior to 8.0.7, and 8.1.x prior to 8.1.3, when compiled with Asserts enabled, allows local users to cause a denial of service (server crash) via a crafted SET SESSION AUTHORIZATION command, a different vulnerability t...
Postgresql Postgresql 8.0.2
Postgresql Postgresql 7.3.3
Postgresql Postgresql 7.3
Postgresql Postgresql 8.1
Postgresql Postgresql 7.4.1
Postgresql Postgresql 7.3.9
Postgresql Postgresql 7.3.10
Postgresql Postgresql 7.4.6
Postgresql Postgresql 7.4.11
Postgresql Postgresql 8.0.3
Postgresql Postgresql 7.4.7
Postgresql Postgresql 7.3.11
Postgresql Postgresql 7.4.3
Postgresql Postgresql 7.3.6
Postgresql Postgresql 7.4.9
Postgresql Postgresql 7.4.5
Postgresql Postgresql 7.3.8
Postgresql Postgresql 7.4.8
Postgresql Postgresql 8.0.6
Postgresql Postgresql 7.4
Postgresql Postgresql 7.4.4
Postgresql Postgresql 7.3.13
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
TCP
CVE-2024-4577
CVE-2024-2695
CVE-2024-31870
injection
CVE-2024-3813
arbitrary code
CVE-2024-27801
CVE-2024-30120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3