Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2007-5970

Опубликовано: 15 нояб. 2007
Источник: redhat
EPSS Низкий

Описание

MySQL 5.1.x before 5.1.23 and 6.0.x before 6.0.4 allows remote authenticated users to gain privileges on arbitrary tables via unspecified vectors involving use of table-level DATA DIRECTORY and INDEX DIRECTORY options when creating a partitioned table with the same name as a table on which the user lacks privileges.

Отчет

Not vulnerable. This issue did not affect the mysql packages as shipped in Red Hat Enterprise Linux 2.1, 3, 4, 5, Red Hat Application Stack v1, and v2, as the versions shipped do not support table partitioning. The partitioning feature was introduced in development MySQL version 5.1.

Дополнительная информация

https://bugzilla.redhat.com/show_bug.cgi?id=397091mysql: table privilege gain via partitioned table with the same name

EPSS

Процентиль: 64%
0.0048
Низкий

Связанные уязвимости

ubuntu
больше 17 лет назад

MySQL 5.1.x before 5.1.23 and 6.0.x before 6.0.4 allows remote authenticated users to gain privileges on arbitrary tables via unspecified vectors involving use of table-level DATA DIRECTORY and INDEX DIRECTORY options when creating a partitioned table with the same name as a table on which the user lacks privileges.

nvd
больше 17 лет назад

MySQL 5.1.x before 5.1.23 and 6.0.x before 6.0.4 allows remote authenticated users to gain privileges on arbitrary tables via unspecified vectors involving use of table-level DATA DIRECTORY and INDEX DIRECTORY options when creating a partitioned table with the same name as a table on which the user lacks privileges.

debian
больше 17 лет назад

MySQL 5.1.x before 5.1.23 and 6.0.x before 6.0.4 allows remote authent ...

github
больше 3 лет назад

MySQL 5.1.x before 5.1.23 and 6.0.x before 6.0.4 allows remote authenticated users to gain privileges on arbitrary tables via unspecified vectors involving use of table-level DATA DIRECTORY and INDEX DIRECTORY options when creating a partitioned table with the same name as a table on which the user lacks privileges.

suse-cvrf
больше 1 года назад

Recommended update for mariadb104

EPSS

Процентиль: 64%
0.0048
Низкий