2017-05-23 03:56:00
debian
PUBLISHED
PgBouncer 1.6.x before 1.6.1, when configured with auth_user, allows remote attackers to gain login access as auth_user via an unknown username.