Showing 1 vulnerability on this page for Amazon Redshift Python Connector

Signals CISA KEV Ransomware Nuclei
Amazon vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

SQL Injection in the Amazon Redshift Python Connector affecting v2.1.4

A SQL injection in the Amazon Redshift Python Connector v2.1.4 allows a user to gain escalated privileges via the get_schemas, get_tables, or get_columns Metadata APIs. Users are recommended to upgrade to the driver version 2.1.5 or revert to driver version 2.1.3.

CWE-89Dec 24, 2024
CVSS8.6v4.0EPSS0.53%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX