Threats Tagged 'cve-2025-12765'
View all threats tagged with 'cve-2025-12765'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2025-12765'
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2025-12765 is a high-severity vulnerability affecting pgAdmin 4 versions up to 9.9, specifically in its LDAP authentication mechanism. The flaw allows an attacker to bypass TLS certificate verification, enabling potential man-in-the-middle attacks during LDAP authentication. This vulnerability does not require authentication or user interaction and can be exploited remotely over the network. While it impacts confidentiality by potentially exposing sensitive authentication credentials, it does not affect integrity or availability. No known exploits are currently reported in the wild. European organizations using pgAdmin 4 with LDAP authentication are at risk, especially those in countries with significant PostgreSQL adoption and critical infrastructure relying on secure database management. Mitigation involves applying patches once available, enforcing strict TLS validation policies, and considering alternative authentication methods until patched. Countries like Germany, France, the UK, the Netherlands, and Sweden are likely most affected due to their extensive use of PostgreSQL and related tools in enterprise and government sectors. Join the discussion | CVE Database V5 | 11/13/2025, 13:00:11 UTC Added: 11/13/2025, 13:12:03 UTC |
Showing 1 to 1 of 1 result