CVE-2017-7547: PostgreSQL
High severity, CVSS 8.8. EPSS: 5.6% chance of exploitation in the next 30 days.
PostgreSQL versions before 9.2.22, 9.3.18, 9.4.13, 9.5.8 and 9.6.4 are vulnerable to authorization flaw allowing remote authenticated attackers to retrieve passwords from the user mappings defined by the foreign server owners without actually having the privileges to do so.
Affected products
- PostgreSQL PostgreSQL: version 9.2 only; version 9.2.1 only; version 9.2.2 only; version 9.2.3 only; version 9.2.4 only; version 9.2.5 only; …
Published 2017-08-16. Last modified 2026-06-17.