CVE Database
/

CVE-2016-6656

Back to search

CVE-2016-6656

Published: Dec 16, 2016

Modified: Aug 6, 2024

PUBLISHED

Description

An issue was discovered in Pivotal Greenplum before 4.3.10.0. Creation of external tables using GPHDFS protocol has a vulnerability whereby arbitrary commands can be injected into the system. In order to exploit this vulnerability the user must have superuser 'gpadmin' access to the system or have been granted GPHDFS protocol permissions in order to create a GPHDFS external table.

VendorProductVersions

n/a

Pivotal Greenplum 4.3.0.0 to 4.3.9.1 and older versions that are end of life

affected
Pivotal Greenplum 4.3.0.0 to 4.3.9.1 and older versions that are end of life

References

94954
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now