Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
EnterpriseDB EDB Postgres Advanced Server (EPAS) before 14.6.0 logs unredacted passwords in situations where optional parameters are used with CREATE/ALTER USER/GROUP/ROLE, and redacting was configured with edb_filter_log.redact_password_commands. The fixed versions are 10.23.33, 11.18.29, 12.13.17, 13.9.13, and 14.6.0.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
EnterpriseDB EDB Postgres Advanced Server 安全漏洞
Vulnerability Description
EnterpriseDB EDB Postgres Advanced Server是美国EnterpriseDB公司的EDB的核心数据库产品。 EnterpriseDB EDB Postgres Advanced Server (EPAS) 14.6.0之前版本 存在安全漏洞,该漏洞源于在可选参数与 CREATE/ALTER USER/GROUP/ROLE 一起使用并且使用 edb_filter_log.redact_password_commands 配置编辑的情况下会记录未编辑的密码。
CVSS Information
N/A
Vulnerability Type
N/A