GaussDB 200 with version of 6.5.1 have a command injection vulnerability. Due to insufficient input validation, remote attackers with low permissions could exploit this vulnerability by sending crafted commands to the affected device. Successful exploit could allow an attacker to execute commands.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-12637 | GaussDB 200 with version of 6.5.1 have a command injection vulnerability. Due to insufficient input validation, remote attackers with low permissions could exploit this vulnerability by sending crafted commands to the affected device. Successful exploit could allow an attacker to execute commands. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: huawei
Published:
Updated: 2024-08-04T06:46:30.911Z
Reserved: 2019-11-29T00:00:00
Link: CVE-2020-1811
No data.
Status : Modified
Published: 2020-02-18T00:15:11.180
Modified: 2024-11-21T05:11:25.590
Link: CVE-2020-1811
No data.
OpenCVE Enrichment
No data.
EUVD