Leon J Breedt pam-pgsql before 0.5.2 allows remote attackers to execute arbitrary SQL code and bypass authentication or modify user account records by injecting SQL statements into user or password fields.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Pam-pgsql | Leon_j_breedt | 0.5.1 (including) | 0.5.1 (including) |
Pam-pgsql | Leon_j_breedt | 0.5.2 (including) | 0.5.2 (including) |