SQL Injection Vulnerability in Amazon Redshift ODBC Driver
CVE-2024-12746
What is CVE-2024-12746?
A vulnerability exists in the Amazon Redshift ODBC Driver version 2.1.5.0, where improper input validation in the SQLTables and SQLColumns Metadata APIs can lead to SQL injection attacks. This flaw could allow unauthorized users to gain escalated privileges within the database environment, thereby posing a significant risk to data integrity and security. Users are advised to upgrade to version 2.1.6.0 or downgrade to version 2.1.4.0 to mitigate the issues associated with this vulnerability. For detailed guidance, refer to the vendor's advisory.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Amazon Redshift ODBC Driver 2.1.5.0
News Articles
References
CVSS V4
Timeline
- đź“°
First article discovered by Forbes
Vulnerability published
Vulnerability Reserved
