A vulnerability was found in pgadmin. Users logging into pgAdmin running in server mode using LDAP authentication may be attached to another user's session if multiple connection attempts occur simultaneously.
References
Link | Resource |
---|---|
https://access.redhat.com/security/cve/CVE-2023-1907 | Third Party Advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=2218384 | Issue Tracking Third Party Advisory |
Configurations
History
20 Jun 2025, 17:57
Type | Values Removed | Values Added |
---|---|---|
References | () https://access.redhat.com/security/cve/CVE-2023-1907 - Third Party Advisory | |
References | () https://bugzilla.redhat.com/show_bug.cgi?id=2218384 - Issue Tracking, Third Party Advisory | |
First Time |
Pgadmin pgadmin
Pgadmin |
|
CPE | cpe:2.3:a:pgadmin:pgadmin:*:*:*:*:*:postgresql:*:* | |
CWE | ||
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
06 Feb 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-488 CWE-276 |
06 Feb 2025, 08:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
09 Jan 2025, 15:15
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : unknown |
09 Jan 2025, 08:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-01-09 08:15
Updated : 2025-06-20 17:57
NVD link : CVE-2023-1907
Mitre link : CVE-2023-1907
JSON object : View
Products Affected
pgadmin
- pgadmin
CWE
CWE-488
Exposure of Data Element to Wrong Session