CVE-2000-1199

PostgreSQL stores usernames and passwords in plaintext in (1) pg_shadow and (2) pg_pwd, which allows attackers with sufficient privileges to gain access to databases.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:postgresql:postgresql:6.3.2:*:*:*:*:*:*:*
cpe:2.3:a:postgresql:postgresql:6.5.3:*:*:*:*:*:*:*

History

20 Nov 2024, 23:34

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=95659987018649&w=2 - () http://marc.info/?l=bugtraq&m=95659987018649&w=2 -
References () http://www.securityfocus.com/bid/1139 - Exploit, Vendor Advisory () http://www.securityfocus.com/bid/1139 - Exploit, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/4364 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/4364 -

Information

Published : 2001-08-31 04:00

Updated : 2024-11-20 23:34


NVD link : CVE-2000-1199

Mitre link : CVE-2000-1199

CVE.ORG link : CVE-2000-1199


JSON object : View

Products Affected

postgresql

  • postgresql