CVE-2013-1899

Scores

EPSS

0.811high81.1%
0%20%40%60%80%100%

Percentile: 81.1%

CVSS

5.0medium2.0
0246810

CVSS Score: 5.0/10

All CVSS Scores

CVSS 2.0
5.0

Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Description

Argument injection vulnerability in PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, and 9.0.x before 9.0.13 allows remote attackers to cause a denial of service (file corruption), and allows remote authenticated users to modify configuration settings and execute arbitrary code, via a connection request using a database name that begins with a “-” (hyphen).

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

debiannvdredhatubuntu

CWEs

CWE-94

Vulnerable Software (197)

Type: Configuration

Product: cfme

Operating System: rhel

Trait:
{  "fixed": "5.2.0.37-1.el6cf"}

Source: redhat

Type: Configuration

Product: cfme-vnc-plugin

Operating System: rhel

Trait:
{  "fixed": "1.0.0-2.el6cf"}

Source: redhat

Type: Configuration

Product: libdnet

Operating System: rhel

Trait:
{  "fixed": "1.12-11.el6cf"}

Source: redhat

Type: Configuration

Product: netapp-manageability-sdk

Operating System: rhel

Trait:
{  "fixed": "4.0P1-3.el6cf"}

Source: redhat

Type: Configuration

Product: open-vm-tools

Operating System: rhel

Trait:
{  "fixed": "9.2.3-5.el6cf"}

Source: redhat

Type: Configuration

Product: postgresql-8.2

Operating System: ubuntu hardy 8.04

Trait:
{  "unaffected": true}

Source: ubuntu

Type: Configuration

Product: postgresql-8.3

Operating System: ubuntu hardy 8.04

Trait:
{  "unaffected": true}

Source: ubuntu

Type: Configuration

Product: postgresql-9.1

Operating System: debian

Trait:
{  "fixed": "9.1.9-1"}

Source: debian

Type: Configuration

Product: postgresql92

Operating System: rhel

Trait:
{  "fixed": "1-12.el6"}

Source: redhat

Type: Configuration

Product: postgresql92-postgresql

Operating System: rhel

Trait:
{  "fixed": "9.2.4-7.el6"}

Source: redhat

Type: Configuration

Product: prince

Operating System: rhel

Trait:
{  "fixed": "9.0r2-3.el6cf"}

Source: redhat

Type: Configuration

Product: pyliblzma

Operating System: rhel

Trait:
{  "fixed": "0.5.3-7.el6cf"}

Source: redhat

Type: Configuration

Product: ruby193

Operating System: rhel

Trait:
{  "fixed": "1-11.el6"}

Source: redhat

Type: Configuration

Product: ruby193-libyaml

Operating System: rhel

Trait:
{  "fixed": "0.1.4-5.el6"}

Source: redhat

Type: Configuration

Product: ruby193-ruby

Operating System: rhel

Trait:
{  "fixed": "1.9.3.448-38.el6"}

Source: redhat

Type: Configuration

Product: ruby193-rubygem-Platform

Operating System: rhel

Trait:
{  "fixed": "0.4.0-4.el6cf"}

Source: redhat

Type: Configuration

Product: ruby193-rubygem-actionmailer

Operating System: rhel

Trait:
{  "fixed": "3.2.13-3.el6cf"}

Source: redhat

Type: Configuration

Product: ruby193-rubygem-actionpack

Operating System: rhel

Trait:
{  "fixed": "3.2.13-4.el6cf"}

Source: redhat

Type: Configuration

Product: ruby193-rubygem-actionwebservice

Operating System: rhel

Trait:
{  "fixed": "3.1.0-3.el6cf"}

Source: redhat

Type: Configuration

Product: ruby193-rubygem-activemodel

Operating System: rhel

Trait:
{  "fixed": "3.2.13-3.el6cf"}

Source: redhat