Description
PostgreSQL versions before 9.2.22, 9.3.18, 9.4.13, 9.5.8 and 9.6.4 are vulnerable to authorization flaw allowing remote authenticated attackers to retrieve passwords from the user mappings defined by the foreign server owners without actually having the privileges to do so.
Remediation
References
Related Vulnerabilities
WordPress 4.2.x Possible SQL Injection Vulnerability (4.2 - 4.2.16)
WordPress Plugin Arigato Autoresponder and Newsletter Multiple Vulnerabilities (2.5.1.6)
PHP Other Vulnerability (CVE-2005-0596)
phpMyAdmin Permissions, Privileges, and Access Controls Vulnerability (CVE-2010-3055)
WordPress Plugin BuddyPress Unspecified Vulnerability (2.6.0)