AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-1115

CRITICAL · CVSS 9.1 EPSS 4.04% Public Exploit

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-05-10 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2018-1115
Severity
CRITICAL
CVSS
9.1
EPSS
4.04%

Original NVD Description

postgresql before versions 10.4, 9.6.9 is vulnerable in the adminpack extension, the pg_catalog.pg_logfile_rotate() function doesn't follow the same ACLs than pg_rorate_logfile. If the adminpack is added to a database, an attacker able to connect to it could exploit this to force log rotation.