A vulnerability was found in pgadmin. Users logging into pgAdmin running in server mode using LDAP authentication may be attached to another user's session if multiple connection attempts occur simultaneously.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=2218384 |
History
Thu, 09 Jan 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-276 | |
Metrics |
ssvc
|
Thu, 09 Jan 2025 07:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in pgadmin. Users logging into pgAdmin running in server mode using LDAP authentication may be attached to another user's session if multiple connection attempts occur simultaneously. | |
Title | Pgadmin: users authenticated simultaneously via ldap may be attached to the wrong session | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2025-01-09T07:26:48.686Z
Updated: 2025-01-09T14:53:05.215Z
Reserved: 2023-04-06T10:56:57.129Z
Link: CVE-2023-1907
Vulnrichment
Updated: 2025-01-09T14:52:59.667Z
NVD
Status : Received
Published: 2025-01-09T08:15:24.477
Modified: 2025-01-09T15:15:10.753
Link: CVE-2023-1907
Redhat
No data.