Description
CRLF injection vulnerability in pg_dump in PostgreSQL 8.3.x before 8.3.18, 8.4.x before 8.4.11, 9.0.x before 9.0.7, and 9.1.x before 9.1.3 allows user-assisted remote attackers to execute arbitrary SQL commands via a crafted file containing object names with newlines, which are inserted into an SQL script that is used when the database is restored.
Remediation
References
Related Vulnerabilities
WordPress Plugin Instagram Feed Unspecified Vulnerability (1.10.2)
WordPress Plugin The Official Facebook Chat Cross-Site Request Forgery (1.2)
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-2203)
WordPress Plugin BSK PDF Manager Multiple Cross-Site Scripting Vulnerabilities (1.3)
WordPress Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-5730)