CNNVD-202601-2801 Information

CNNVD ID

CNNVD-202601-2801

CVE-2026-0949

  • CNNVD Published: 2026-01-16

Description (Chinese)

EDB Postgres Enterprise Manager是美国EDB公司的一款数据库管理与监控平台。 EDB Postgres Enterprise Manager 9.8.1之前版本存在安全漏洞,该漏洞源于创建新图表时输入验证不足,可能导致存储型跨站脚本攻击。

Description (English)

EDB Postgrese Enterprise Manager is a database management and monitoring platform for the United States company EDB. There was a security loophole in the pre-EDB Postgrese Enterprise Manager 9.8/.1 version, which stemmed from inadequate input verification when creating a new chart, which could result in a storage-type cross-site script attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

EDB

Published

2026-01-16

Last Modified

2026-02-24

References

https://www.enterprisedb.com/docs/security/advisories/cve20260949/ https://access.redhat.com/security/cve/cve-2026-0949

Patch

https://www.enterprisedb.com/products/postgres-enterprise-manager

Share on: