5.9
CVSSv3

CVE-2021-23222

Published: 02/03/2022 Updated: 07/11/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.9 | Impact Score: 3.6 | Exploitability Score: 2.2
VMScore: 384
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

A man-in-the-middle attacker can inject false responses to the client's first few queries, despite the use of SSL certificate verification and encryption.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

postgresql postgresql

postgresql postgresql 14.0

Vendor Advisories

Synopsis Moderate: ACS 370 enhancement and security update Type/Severity Security Advisory: Moderate Topic Updated images are now available for Red Hat Advanced Cluster Security forKubernetes (RHACS) The updated image includes bug fixes and featureimprovementsRed Hat Product Security has rated this update as having a security impact of Mod ...
Synopsis Important: RHACS 369 security update Type/Severity Security Advisory: Important Topic Updated images are now available for Red Hat Advanced Cluster Security for Kubernetes (RHACS) The updated image includes bug and security fixesRed Hat Product Security has rated this update as having a security impact of Important A Common Vulne ...
Synopsis Important: RHACS 368 security update Type/Severity Security Advisory: Important Topic Updated images are now available for Red Hat Advanced Cluster Security for Kubernetes (RHACS) The updated image includes bug and security fixesRed Hat Product Security has rated this update as having a security impact of Important A Common Vulne ...
Jacob Champion discovered two vulnerabilities in the PostgreSQL database system, which could result in man-in-the-middle attacks For the oldstable distribution (buster), these problems have been fixed in version 1114-0+deb10u1 We recommend that you upgrade your postgresql-11 packages For the detailed security status of postgresql-11 please refe ...
Jacob Champion discovered two vulnerabilities in the PostgreSQL database system, which could result in man-in-the-middle attacks For the stable distribution (bullseye), these problems have been fixed in version 135-0+deb11u1 We recommend that you upgrade your postgresql-13 packages For the detailed security status of postgresql-13 please refer ...
A man-in-the-middle attacker can inject false responses to the client's first few queries, despite the use of SSL certificate verification and encryption (CVE-2021-23222) ...
A man-in-the-middle attacker can inject false responses to the client's first few queries, despite the use of SSL certificate verification and encryption (CVE-2021-23222) ...
A security issue has been found in PostgreSQL versions 96 up to 14 A man-in-the-middle attacker can inject false responses to the client's first few queries, despite the use of SSL certificate verification and encryption If more preconditions hold, the attacker can exfiltrate the client's password or other confidential data that might be transm ...
Hitachi Infrastructure Analytics Advisor and Hitachi Ops Center Analyzer contain the following vulnerability: CVE-2021-42550 Hitachi Ops Center Analyzer viewpoint and Hitachi Ops Center Viewpoint contain the following vulnerabilities: CVE-2021-23214, CVE-2021-23222, CVE-2021-39226, CVE-2021-42550, CVE-2021-43813 Affected products and vers ...
A man-in-the-middle attacker can inject false responses to the client's first few queries, despite the use of SSL certificate verification and encryption ...