PostgreSQL Permissions Privileges and Access Controls Vulnerability - CVE-2007-2138 - Vulnerability Database

PostgreSQL Permissions Privileges and Access Controls Vulnerability - CVE-2007-2138

Medium
Reference: CVE-2007-2138
Title: PostgreSQL Permissions Privileges and Access Controls Vulnerability
Overview:

Untrusted search path vulnerability in PostgreSQL before 7.3.19 7.4.x before 7.4.17 8.0.x before 8.0.13 8.1.x before 8.1.9 and 8.2.x before 8.2.4 allows remote authenticated users when permitted to call a SECURITY DEFINER function to gain the privileges of the function owner related to quotsearch_path settings.quot