Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2012-0868

CRLF injection vulnerability in pg_dump in PostgreSQL 8.3.x before 8.3.18, 8.4.x before 8.4.11, 9.0.x before 9.0.7, and 9.1.x before 9.1.3 allows user-assisted remote attackers to execute arbitrary SQL commands via a crafted file containing object names with newlines, which are inserted into an SQL script that is used when the database is restored.

  • Published: Jul 19, 2012
  • Updated: Apr 13, 2023
  • CVE: CVE-2012-0868
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 6.8
  • AV:N/AC:M/Au:N/C:P/I:P/A:P

CWEs:

OWASP TOP 10:

Software From Fixed in
postgresql / postgresql 8.3.6 8.3.6.x
postgresql / postgresql 8.3.17 8.3.17.x
postgresql / postgresql 8.3.3 8.3.3.x
postgresql / postgresql 8.3.2 8.3.2.x
postgresql / postgresql 8.3.12 8.3.12.x
postgresql / postgresql 8.3.14 8.3.14.x
postgresql / postgresql 8.3.1 8.3.1.x
postgresql / postgresql 8.3.5 8.3.5.x
postgresql / postgresql 8.3.8 8.3.8.x
postgresql / postgresql 8.3.7 8.3.7.x
postgresql / postgresql 8.3.10 8.3.10.x
postgresql / postgresql 8.3 8.3.x
postgresql / postgresql 8.3.16 8.3.16.x
postgresql / postgresql 8.3.4 8.3.4.x
postgresql / postgresql 8.3.11 8.3.11.x
postgresql / postgresql 8.3.9 8.3.9.x
postgresql / postgresql 8.3.13 8.3.13.x
postgresql / postgresql 8.3.15 8.3.15.x
postgresql / postgresql 8.4.8 8.4.8.x
postgresql / postgresql 8.4.4 8.4.4.x
postgresql / postgresql 8.4.1 8.4.1.x
postgresql / postgresql 8.4.9 8.4.9.x
postgresql / postgresql 8.4.3 8.4.3.x
postgresql / postgresql 8.4.10 8.4.10.x
postgresql / postgresql 8.4.6 8.4.6.x
postgresql / postgresql 8.4 8.4.x
postgresql / postgresql 8.4.5 8.4.5.x
postgresql / postgresql 8.4.7 8.4.7.x
postgresql / postgresql 8.4.2 8.4.2.x
postgresql / postgresql 9.0.6 9.0.6.x
postgresql / postgresql 9.0.4 9.0.4.x
postgresql / postgresql 9.0.1 9.0.1.x
postgresql / postgresql 9.0.3 9.0.3.x
postgresql / postgresql 9.0 9.0.x
postgresql / postgresql 9.0.2 9.0.2.x
postgresql / postgresql 9.0.5 9.0.5.x
postgresql / postgresql 9.1 9.1.x
postgresql / postgresql 9.1.2 9.1.2.x
postgresql / postgresql 9.1.1 9.1.1.x