Описание
MySQL 3.x before 3.23.59, 4.x before 4.0.19, 4.1.x before 4.1.2, and 5.x before 5.0.1, checks the CREATE/INSERT rights of the original table instead of the target table in an ALTER TABLE RENAME operation, which could allow attackers to conduct unauthorized activities.
MySQL 3.x before 3.23.59, 4.x before 4.0.19, 4.1.x before 4.1.2, and 5.x before 5.0.1, checks the CREATE/INSERT rights of the original table instead of the target table in an ALTER TABLE RENAME operation, which could allow attackers to conduct unauthorized activities.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2004-0835
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17666
- http://bugs.mysql.com/bug.php?id=3270
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000892
- http://lists.mysql.com/internals/13073
- http://secunia.com/advisories/12783
- http://securitytracker.com/id?1011606
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-101864-1
- http://www.ciac.org/ciac/bulletins/p-018.shtml
- http://www.debian.org/security/2004/dsa-562
- http://www.gentoo.org/security/en/glsa/glsa-200410-22.xml
- http://www.mysql.org/doc/refman/4.1/en/news-4-0-19.html
- http://www.mysql.org/doc/refman/4.1/en/news-4-1-2.html
- http://www.redhat.com/support/errata/RHSA-2004-597.html
- http://www.redhat.com/support/errata/RHSA-2004-611.html
- http://www.securityfocus.com/bid/11357
- http://www.trustix.org/errata/2004/0054
EPSS
CVE ID
Связанные уязвимости
MySQL 3.x before 3.23.59, 4.x before 4.0.19, 4.1.x before 4.1.2, and 5.x before 5.0.1, checks the CREATE/INSERT rights of the original table instead of the target table in an ALTER TABLE RENAME operation, which could allow attackers to conduct unauthorized activities.
MySQL 3.x before 3.23.59, 4.x before 4.0.19, 4.1.x before 4.1.2, and 5.x before 5.0.1, checks the CREATE/INSERT rights of the original table instead of the target table in an ALTER TABLE RENAME operation, which could allow attackers to conduct unauthorized activities.
MySQL 3.x before 3.23.59, 4.x before 4.0.19, 4.1.x before 4.1.2, and 5.x before 5.0.1, checks the CREATE/INSERT rights of the original table instead of the target table in an ALTER TABLE RENAME operation, which could allow attackers to conduct unauthorized activities.
MySQL 3.x before 3.23.59, 4.x before 4.0.19, 4.1.x before 4.1.2, and 5 ...
EPSS