CVE-2023-30625 is a critical SQL injection vulnerability affecting RudderStack rudder-server versions prior to 1.3.0-rc.1. This flaw allows authenticated attackers to execute arbitrary SQL queries, potentially leading to Remote Code Execution (RCE) due to default superuser permissions of the 'rudder' role in PostgreSQL. With a CVSS score of 8.8 (HIGH) and an EPSS percentile of 99.46%, this vulnerability presents a significant risk. While not yet observed in active exploitation, public exploit modules for Metasploit and Nuclei templates are available, indicating a high likelihood of future exploitation. Community discussion and media coverage are currently minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 1.2.5CPE matchmatch criteria | cpe:2.3:a:rudderstack:rudder-server:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.