PT-2020-6837 · Unknown+1 · Postgresql+1

Hjy79425575

·

Published

2020-05-14

·

Updated

2024-03-06

·

CVE-2020-10733

CVSS v3.1

7.3

High

VectorAV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions PostgreSQL versions 9.5 through 12
Description The issue is related to the Windows installer for PostgreSQL, which invokes system-provided executables without fully-qualified paths. This allows executables in the directory where the installer loads or the current working directory to take precedence over the intended executables. An attacker with permission to add files to one of these directories can execute arbitrary code with the installer's administrative rights. The vulnerability is associated with incorrect path handling, which can be exploited to elevate privileges and execute arbitrary code.
Recommendations For PostgreSQL versions 9.5 through 12, consider restricting access to the directories where the installer loads or the current working directory to minimize the risk of exploitation. Avoid executing the installer in directories where an attacker may have permission to add files. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Untrusted Search Path

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2020-1993
ALT-PU-2020-1994
ALT-PU-2020-2009
ALT-PU-2020-2010
ALT-PU-2020-2011
ALT-PU-2020-2012
ALT-PU-2020-2013
BDU:2023-00612
BIT-POSTGRESQL-2020-10733
CVE-2020-10733

Affected Products

Alt Linux
Postgresql