Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-5969

Опубликовано: 10 дек. 2007
Источник: nvd
CVSS2: 7.1
EPSS Средний

Описание

MySQL Community Server 5.0.x before 5.0.51, Enterprise Server 5.0.x before 5.0.52, Server 5.1.x before 5.1.23, and Server 6.0.x before 6.0.4, when a table relies on symlinks created through explicit DATA DIRECTORY and INDEX DIRECTORY options, allows remote authenticated users to overwrite system table information and gain privileges via a RENAME TABLE statement that changes the symlink to point to an existing file.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:mysql:mysql_server:5.1.22:*:*:*:*:*:*:*
cpe:2.3:a:mysql:mysql_server:6.0:*:*:*:*:*:*:*
cpe:2.3:a:mysql:mysql_server:6.0.1:*:*:*:*:*:*:*
cpe:2.3:a:mysql:mysql_server:6.0.2:*:*:*:*:*:*:*
cpe:2.3:a:mysql:mysql_server:6.0.3:*:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:a:mysql:community_server:*:*:*:*:*:*:*:*
Версия до 5.0.50 (включая)
cpe:2.3:a:mysql:community_server:5.0.41:*:*:*:*:*:*:*
cpe:2.3:a:mysql:community_server:5.0.44:*:*:*:*:*:*:*
cpe:2.3:a:mysql:community_server:5.0.45:*:*:*:*:*:*:*
Конфигурация 3
cpe:2.3:a:mysql:mysql_enterprise_server:5.0.50:*:*:*:*:*:*:*

EPSS

Процентиль: 96%
0.1426
Средний

7.1 High

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
почти 19 лет назад

MySQL Community Server 5.0.x before 5.0.51, Enterprise Server 5.0.x before 5.0.52, Server 5.1.x before 5.1.23, and Server 6.0.x before 6.0.4, when a table relies on symlinks created through explicit DATA DIRECTORY and INDEX DIRECTORY options, allows remote authenticated users to overwrite system table information and gain privileges via a RENAME TABLE statement that changes the symlink to point to an existing file.

redhat
почти 19 лет назад

MySQL Community Server 5.0.x before 5.0.51, Enterprise Server 5.0.x before 5.0.52, Server 5.1.x before 5.1.23, and Server 6.0.x before 6.0.4, when a table relies on symlinks created through explicit DATA DIRECTORY and INDEX DIRECTORY options, allows remote authenticated users to overwrite system table information and gain privileges via a RENAME TABLE statement that changes the symlink to point to an existing file.

debian
почти 19 лет назад

MySQL Community Server 5.0.x before 5.0.51, Enterprise Server 5.0.x be ...

github
больше 4 лет назад

MySQL Community Server 5.0.x before 5.0.51, Enterprise Server 5.0.x before 5.0.52, Server 5.1.x before 5.1.23, and Server 6.0.x before 6.0.4, when a table relies on symlinks created through explicit DATA DIRECTORY and INDEX DIRECTORY options, allows remote authenticated users to overwrite system table information and gain privileges via a RENAME TABLE statement that changes the symlink to point to an existing file.

oracle-oval
больше 18 лет назад

ELSA-2007-1155: Important: mysql security update (IMPORTANT)

EPSS

Процентиль: 96%
0.1426
Средний

7.1 High

CVSS2

Дефекты

CWE-264
Уязвимость CVE-2007-5969