PostgreSQL 8.1 and probably later versions, when local trust authentication is enabled and the Database Link library (dblink) is installed, allows remote attackers to access arbitrary accounts and execute arbitrary SQL queries via a dblink host parameter that proxies the connection from 127.0.0.1.
Conclusion & alert: CVE-2007-3278 is rated Moderate Risk (51.2/100): CVSS Medium severity, with medium exploitation likelihood (EPSS 1.26%). Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-15 | 0.64% | 1.26% | +0.62% |
| 2 | 2026-02-25 | 0.77% | 0.64% | -0.13% |
| 3 | 2026-02-05 | — | 0.77% | — |
Full EPSS history (16 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 6.9 | 2.0 | MEDIUM |
|
3.4 | 10.0 | [email protected] |
| vendor | priority | summary | link |
|---|---|---|---|
gentoo
|
high | CVE-2007-3278: 1 GLSA(s) (200801-15), 1 atom(s) (dev-db/postgresql); latest impact high. | https://bugs.gentoo.org/buglist.cgi?quicksearch=CVE-2007-3278 |
redhat
|
— | — | https://access.redhat.com/security/cve/CVE-2007-3278 |
ubuntu
|
medium | CVE-2007-3278 medium priority: Ubuntu including 2 source packages (postgresql-8.1, postgresql-8.2), 8 status rows across 4 suites (dapper, edgy, feisty, upstream): not-affected 4, DNE 2, needs-triage 2. | https://ubuntu.com/security/CVE-2007-3278 |
Red Hat does not consider this do be a security issue. dblink is disabled in default configuration of PostgreSQL packages as shipped with Red Hat Enterprise Linux versions 2.1, 3, 4 and 5, and it is a configuration decision whether to grant local users arbitrary access. Fixes to correct this bug were included in PostgreSQL updates: http:rhn.redhat.comcveCVE-2007-3278.html
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| postgresql | postgresql | >= 7.3, < 7.3.21 | cpe:2.3:a:postgresql:postgresql:*:*:*:*:*:*:*:* |
| postgresql | postgresql | >= 7.4, < 7.4.19 | cpe:2.3:a:postgresql:postgresql:*:*:*:*:*:*:*:* |
| postgresql | postgresql | >= 8.0, < 8.0.15 | cpe:2.3:a:postgresql:postgresql:*:*:*:*:*:*:*:* |
| postgresql | postgresql | >= 8.1, < 8.1.11 | cpe:2.3:a:postgresql:postgresql:*:*:*:*:*:*:*:* |
| postgresql | postgresql | >= 8.2, < 8.2.6 | cpe:2.3:a:postgresql:postgresql:*:*:*:*:*:*:*:* |
| debian | debian_linux | 3.1 | cpe:2.3:o:debian:debian_linux:3.1:*:*:*:*:*:*:* |
| debian | debian_linux | 4.0 | cpe:2.3:o:debian:debian_linux:4.0:*:*:*:*:*:*:* |