PostgreSQL Permissions Privileges and Access Controls Vulnerability - CVE-2013-1901 - Vulnerability Database

PostgreSQL Permissions Privileges and Access Controls Vulnerability - CVE-2013-1901

Medium
Reference: CVE-2013-1901
Title: PostgreSQL Permissions Privileges and Access Controls Vulnerability
Overview:

PostgreSQL 9.2.x before 9.2.4 and 9.1.x before 9.1.9 does not properly check REPLICATION privileges which allows remote authenticated users to bypass intended backup restrictions by calling the (1) pg_start_backup or (2) pg_stop_backup functions.