Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The core server component in PostgreSQL 8.3 before 8.3.8 and 8.2 before 8.2.14, when using LDAP authentication with anonymous binds, allows remote attackers to bypass authentication via an empty password.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PostgreSQL core server 组件安全绕过漏洞
Vulnerability Description
PostgreSQL是一款高级对象-关系型数据库管理系统,支持扩展的SQL标准子集。 PostgreSQL的core server组件中存在安全漏洞。如果PostgreSQL配置了LDAP认证,且LDAP配置允许匿名绑定,用户就可以使用空口令通过认证,远程攻击者能绕过某些安全限制。
CVSS Information
N/A
Vulnerability Type
N/A