CVE-2007-6601
HIGH 7.2EPSS 1.6%
The DBLink module in PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 before 8.0.15, 7.4 before 7.4.19, and 7.3 before 7.3.21, when local trust or ident authentication is used, allows remote attackers to gain privileges via unspecified vectors. NOTE: this issue exists because of an incomplete fix for CVE-2007-3278.
- CVSS v2.0
- 7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C - EPSS
- 1.57% chance of exploitation in the next 30 days, 74th percentile
- Published
- 2008-01-09
- Updated
- 2024-08-07
Proof-of-concept exploits (1)
- brunoh6/postgresql-cve-exploitation0★ · 2025-06-11