Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-2692

Опубликовано: 16 мая 2007
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6

Описание

The mysql_change_db function in MySQL 5.0.x before 5.0.40 and 5.1.x before 5.1.18 does not restore THD::db_access privileges when returning from SQL SECURITY INVOKER stored routines, which allows remote authenticated users to gain privileges.

РелизСтатусПримечание
dapper

released

5.0.22-0ubuntu6.06.8
devel

released

5.0.45-1ubuntu2
edgy

released

5.0.24a-9ubuntu2.4
feisty

released

5.0.38-0ubuntu1.4
gutsy

released

5.0.45-1ubuntu2
upstream

released

5.0.40

Показывать по

EPSS

Процентиль: 68%
0.00581
Низкий

6 Medium

CVSS2

Связанные уязвимости

redhat
около 18 лет назад

The mysql_change_db function in MySQL 5.0.x before 5.0.40 and 5.1.x before 5.1.18 does not restore THD::db_access privileges when returning from SQL SECURITY INVOKER stored routines, which allows remote authenticated users to gain privileges.

nvd
около 18 лет назад

The mysql_change_db function in MySQL 5.0.x before 5.0.40 and 5.1.x before 5.1.18 does not restore THD::db_access privileges when returning from SQL SECURITY INVOKER stored routines, which allows remote authenticated users to gain privileges.

debian
около 18 лет назад

The mysql_change_db function in MySQL 5.0.x before 5.0.40 and 5.1.x be ...

github
больше 3 лет назад

The mysql_change_db function in MySQL 5.0.x before 5.0.40 and 5.1.x before 5.1.18 does not restore THD::db_access privileges when returning from SQL SECURITY INVOKER stored routines, which allows remote authenticated users to gain privileges.

oracle-oval
около 17 лет назад

ELSA-2008-0364: mysql security and bug fix update (LOW)

EPSS

Процентиль: 68%
0.00581
Низкий

6 Medium

CVSS2