Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:19747
HistoryMay 16, 2019 - 3:23 a.m.

Arbitrary Code Execution

2019-05-1603:23:17
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.005 Low

EPSS

Percentile

75.9%

Postgresql is vulnerable to arbitrary code execution. This is because a Postgresql user could modify the behavior of a query for other users. A malicious user could insert a trojan-horse function that, when executed by a superuser, grants escalated privileges to the malicious user.

References