pgAdmin Remote Code Execution (RCE) vulnerability
High severity
GitHub Reviewed
Published
Apr 4, 2024
to the GitHub Advisory Database
•
Updated Feb 11, 2025
Description
Published by the National Vulnerability Database
Apr 4, 2024
Published to the GitHub Advisory Database
Apr 4, 2024
Reviewed
Apr 4, 2024
Last updated
Feb 11, 2025
pgAdmin <= 8.4 is affected by a Remote Code Execution (RCE) vulnerability through the validate binary path API. This vulnerability allows attackers to execute arbitrary code on the server hosting PGAdmin, posing a severe risk to the database management system's integrity and the security of the underlying data.
References