Lucene search

K
prionPRIOn knowledge basePRION:CVE-2018-1115
HistoryMay 10, 2018 - 7:29 p.m.

Authentication flaw

2018-05-1019:29:00
PRIOn knowledge base
www.prio-n.com
12

5.5 Medium

AI Score

Confidence

High

0.007 Low

EPSS

Percentile

80.7%

postgresql before versions 10.4, 9.6.9 is vulnerable in the adminpack extension, the pg_catalog.pg_logfile_rotate() function doesn’t follow the same ACLs than pg_rorate_logfile. If the adminpack is added to a database, an attacker able to connect to it could exploit this to force log rotation.