Threats Tagged 'cve-2025-12764'
View all threats tagged with 'cve-2025-12764'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2025-12764'
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2025-12764 is a high-severity LDAP injection vulnerability affecting pgAdmin 4 versions up to 9.9. The flaw exists in the LDAP authentication flow, where specially crafted usernames containing LDAP special characters can cause excessive processing by the LDAP server and client, resulting in a denial-of-service (DoS) condition. This vulnerability does not impact confidentiality or integrity but can severely affect availability by overwhelming directory services. Exploitation requires no authentication or user interaction and can be performed remotely over the network. No known exploits are currently reported in the wild. European organizations using pgAdmin 4 with LDAP authentication are at risk, especially those with critical PostgreSQL database infrastructure. Mitigation involves input validation and sanitization of LDAP queries, monitoring LDAP server performance, and applying vendor patches once available. Countries with significant PostgreSQL adoption and critical infrastructure relying on LDAP authentication, such as Germany, France, and the UK, are most likely to be affected. Join the discussion | CVE Database V5 | 11/13/2025, 13:00:10 UTC Added: 11/13/2025, 13:12:03 UTC |
Showing 1 to 1 of 1 result