Security Advisory

CVE-2023-31043

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-04-23 00:00:00
Last updated 2025-02-04 16:26:08
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

EnterpriseDB EDB Postgres Advanced Server (EPAS) before 14.6.0 logs unredacted passwords in situations where optional parameters are used with CREATE/ALTER USER/GROUP/ROLE, and redacting was configured with edb_filter_log.redact_password_commands. The fixed versions are 10.23.33, 11.18.29, 12.13.17, 13.9.13, and 14.6.0.