Lucene search

K
cve[email protected]CVE-2005-0227
HistoryMay 02, 2005 - 4:00 a.m.

CVE-2005-0227

2005-05-0204:00:00
CWE-94
web.nvd.nist.gov
32
postgresql
local users
arbitrary shared libraries
code execution
load extension
cve-2005-0227
nvd

4.3 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:S/C:P/I:P/A:P

6.4 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

10.3%

PostgreSQL (pgsql) 7.4.x, 7.2.x, and other versions allows local users to load arbitrary shared libraries and execute code via the LOAD extension.

Affected configurations

NVD
Node
postgresqlpostgresqlRange7.3.07.3.9
OR
postgresqlpostgresqlRange7.47.4.7
OR
postgresqlpostgresqlRange8.08.0.1

4.3 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:S/C:P/I:P/A:P

6.4 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

10.3%