9.8
CVE-2018-16203
- EPSS 0.92%
- Veröffentlicht 09.01.2019 23:29:05
- Zuletzt bearbeitet 21.11.2024 03:52:17
- Quelle vultures@jpcert.or.jp
- CVE-Watchlists
- Unerledigt
PgpoolAdmin 4.0 and earlier allows remote attackers to bypass the login authentication and obtain the administrative privilege of the PostgreSQL database via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Pgpool ≫ Pgpooladmin Version <= 4.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.92% | 0.738 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|