by @jakaba
11 Jun 2024

Remote Code Execution Vulnerability in pgAdmin (CVE-2024-3116)

by @jakaba
11 Jun 2024

Remote Code Execution Vulnerability in pgAdmin (CVE-2024-3116)

CVEs

7.4 High Severity

Screenshots from the blog posts

images/clxa2l2l08r251hok2551ew6f.jpgimages/clxa2l2l08r251hok2551ew6f.jpg

Summary

A critical Remote Code Execution (RCE) vulnerability in pgAdmin ≤ 8.4 allows attackers to execute arbitrary code via the validate binary path API, posing a significant risk to PostgreSQL database integrity and security.

Description

users/photos/clj8b3h1k16g10uoihwvzgsxi.png

@jakaba

63 posts

Total vcoins

55.3K

Social media links

Comments (0)