9
CVSSv2

CVE-2007-3280

Published: 19/06/2007 Updated: 16/10/2018
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
VMScore: 801
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

The Database Link library (dblink) in PostgreSQL 8.1 implements functions via CREATE statements that map to arbitrary libraries based on the C programming language, which allows remote authenticated superusers to map and execute a function from any library, as demonstrated by using the system function in libc.so.6 to gain shell access.

Vulnerable Product Search on Vulmon Subscribe to Product

postgresql postgresql 8.1

Github Repositories

SoftwareSec-Metasploitable2 Overview Attempt to get a shell onto a remote system (Metasploitable2) and extract its password and shadow files for password cracking Using SSH to verify results Set Ups Virtual Box Set up a local nat network File > Preferences > Network > add Nat Network Kali Settings > Network > Attach to > Nat Network u