Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3x8w-p58r-45ff

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, allows remote authenticated users with INSERT and DELETE privileges to execute arbitrary code by using CREATE FUNCTION to access libc calls, as demonstrated by using strcat, on_exit, and exit.

MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, allows remote authenticated users with INSERT and DELETE privileges to execute arbitrary code by using CREATE FUNCTION to access libc calls, as demonstrated by using strcat, on_exit, and exit.

EPSS

Процентиль: 97%
0.1844
Средний

Дефекты

CWE-94

Связанные уязвимости

ubuntu
около 21 года назад

MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, allows remote authenticated users with INSERT and DELETE privileges to execute arbitrary code by using CREATE FUNCTION to access libc calls, as demonstrated by using strcat, on_exit, and exit.

redhat
больше 21 года назад

MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, allows remote authenticated users with INSERT and DELETE privileges to execute arbitrary code by using CREATE FUNCTION to access libc calls, as demonstrated by using strcat, on_exit, and exit.

nvd
около 21 года назад

MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, allows remote authenticated users with INSERT and DELETE privileges to execute arbitrary code by using CREATE FUNCTION to access libc calls, as demonstrated by using strcat, on_exit, and exit.

debian
около 21 года назад

MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, allows remote authen ...

EPSS

Процентиль: 97%
0.1844
Средний

Дефекты

CWE-94