← back
CVE-2007-3280

CVE-2007-3280

23Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 25%
from disclosure to weapon0 days
Published on NVDJun 19
metasploitJun 5
exploitation probability
25%top 2% of all CVEs
observed exploitation
nono source reports it
The Database Link library (dblink) in PostgreSQL 8.1 implements functions via CREATE statements that map to arbitrary libraries based on the C programming language, which allows remote authenticated superusers to map and execute a function from any library, as demonstrated by using the system function in libc.so.6 to gain shell access.
Affected products
n/a · n/a