VYPR

Greenplum Database

by EMC Corporation

CVEs (2)

  • CVE-2023-31131May 15, 2023
    risk 0.00cvss epss 0.01

    Greenplum Database (GPDB) is an open source data warehouse based on PostgreSQL. In versions prior to 6.22.3 Greenplum Database used an unsafe methods to extract tar files within GPPKGs. greenplum-db is vulnerable to path traversal leading to arbitrary file writes. An attacker…

  • CVE-2021-22030Nov 19, 2021
    risk 0.00cvss epss 0.01

    In versions of Greenplum database prior to 5.28.14 and 6.17.0, certain statements execution led to the storage of sensitive(credential) information in the logs of the database. A malicious user with access to logs can read sensitive(credentials) information about users