First published: Wed Jun 28 2023(Updated: )
A vulnerability was found in pgadmin, where users logging into pgAdmin running in server mode using LDAP authentication may be attached to another user's session if multiple connection attempts occur simultaneously.
Affected Software | Affected Version | How to fix |
---|---|---|
pgAdmin 4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-2218384 is considered medium due to the potential for session hijacking.
To fix REDHAT-BUG-2218384, it is recommended to update pgAdmin to a version that addresses this session management issue.
Users of pgAdmin running in server mode using LDAP authentication are affected by REDHAT-BUG-2218384.
The specific versions of pgAdmin that are vulnerable in REDHAT-BUG-2218384 have not been explicitly listed.
The potential risks of REDHAT-BUG-2218384 include unauthorized access to another user's session, leading to data exposure or manipulation.