RSS   Vulnerabilities for 'Community server'   RSS

2007-12-10
 
CVE-2007-5969

CWE-264
 

 
MySQL Community Server 5.0.x before 5.0.51, Enterprise Server 5.0.x before 5.0.52, Server 5.1.x before 5.1.23, and Server 6.0.x before 6.0.4, when a table relies on symlinks created through explicit DATA DIRECTORY and INDEX DIRECTORY options, allows remote authenticated users to overwrite system table information and gain privileges via a RENAME TABLE statement that changes the symlink to point to an existing file.

 
2007-07-15
 
CVE-2007-3782

CWE-264
 

 
MySQL Community Server before 5.0.45 allows remote authenticated users to gain update privileges for a table in another database via a view that refers to this external table.

 
 
CVE-2007-3781

CWE-Other
 

 
MySQL Community Server before 5.0.45 does not require privileges such as SELECT for the source table in a CREATE TABLE LIKE statement, which allows remote authenticated users to obtain sensitive information such as the table structure.

 
 
CVE-2007-3780

CWE-noinfo
 

 
MySQL Community Server before 5.0.45 allows remote attackers to cause a denial of service (daemon crash) via a malformed password packet in the connection protocol.

 

 >>> Vendor: Mysql 8 Products
Mysql
Winmysqladmin
Maxdb
Eventum
Community server
Mysql enterprise server
Mysql server
Mysql community server


Copyright 2024, cxsecurity.com

 

Back to Top