PostgreSQL Weakness Utilized Alongside BeyondTrust Zero-Day in Focused Offensives
Assailants responsible for leveraging a zero-day weakness in BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) solutions in December 2024 probably also manipulated an undisclosed SQL injection vulnerability in PostgreSQL, as highlighted in insights from Rapid7.
The flaw, identified as CVE-2025-1094 (CVSS score: 8.1), impacts the interactive utility psql in PostgreSQL.
“An
The flaw, identified as CVE-2025-1094 (CVSS score: 8.1), impacts the interactive utility psql in PostgreSQL.
“An
