Postgresql Windows installer before versions 11.5, 10.10, 9.6.15, 9.5.19, 9.4.24 is vulnerable via bundled OpenSSL executing code from unprotected directory.
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon
- https://github.com/Ahuramal/VulnerabilityScanner
- https://github.com/amir-mohammad-azimi/VulnerabilityScanner
- https://github.com/chnzzh/OpenSSL-CVE-lib
- https://github.com/lekctut/sdb-hw-13-01
- https://github.com/mirchr/openssldir_check
- https://github.com/pedr0alencar/vlab-metasploitable2