pgAgent
cpe:2.3:a:pgadmin:pgagent:*:*:*:*:postgresql:*:*
- < 4.2.3
A vulnerability in pgAgent versions prior to 4.2.3 allows local attackers to disrupt scheduled tasks by pre-creating directories used for executing batch job scripts. The issue arises from the use of a poorly seeded random number generator for directory name generation, which creates a window of opportunity for interference.
Exploitation of this vulnerability can lead to disruption of scheduled tasks by preventing pgAgent from executing jobs.
Users can upgrade to pgAgent version 4.2.3 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.