Description
Argument injection vulnerability in PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, and 9.0.x before 9.0.13 allows remote attackers to cause a denial of service (file corruption), and allows remote authenticated users to modify configuration settings and execute arbitrary code, via a connection request using a database name that begins with a "-" (hyphen).
Remediation
References
Related Vulnerabilities
Oracle JRE CVE-2024-21138 Vulnerability (CVE-2024-21138)
WordPress Plugin WordPress Landing Pages Cross-Site Scripting (2.2.4)
WordPress Plugin WP Subtitle Unspecified Vulnerability (2.5)
WordPress Plugin PhoneTrack Meu Site Manager Cross-Site Scripting (0.1)
WordPress Plugin XCloner-Backup and Restore Multiple Vulnerabilities (3.1.2)