CVE Database · CVE-2023-1907
CVSS v3.1
8.0
EPSS
0.44%
Published
Jan 9, 2025
Modified
Jun 20, 2025
Public PoC / Exploit
All weaponized →No public PoC or exploit code indexed for this CVE.
Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
A vulnerability was found in pgadmin. Users logging into pgAdmin running in server mode using LDAP authentication may be attached to another user's session if multiple connection attempts occur simultaneously.
CVSS Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:HWeaknesses (CWE)
Affected Products (1)
References (2)