CVE Vulnerabilities

CVE-2002-0802

Published: Aug 12, 2002 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The multibyte support in PostgreSQL 6.5.x with SQL_ASCII encoding consumes an extra character when processing a character that cannot be converted, which could remove an escape character from the query and make the application subject to SQL injection attacks.

Affected Software

Name Vendor Start Version End Version
Postgresql Postgresql 6.5.0 (including) 6.5.0 (including)
Red Hat Database 7.1 RedHat *

References