Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:26640
HistorySep 07, 2020 - 2:40 a.m.

Remote Code Execution (RCE)

2020-09-0702:40:48
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.0004 Low

EPSS

Percentile

14.3%

PostgreSQL is vulnerable to remote code execution (RCE). It did not use search_path safely in their installation script. An attacker with sufficient privileges could use this flaw to trick an administrator into executing a specially crafted script, during the installation or update of such extension.