Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2006-4227

MySQL before 5.0.25 and 5.1 before 5.1.12 evaluates arguments of suid routines in the security context of the routine's definer instead of the routine's caller, which allows remote authenticated users to gain privileges through a routine that has been made available using GRANT EXECUTE.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.113
EPSS Ranking 93.2%
CVSS Severity
CVSS v2 Score 6.5
References
Products affected by CVE-2006-4227
  • Mysql » Mysql » Version: 5.0.1
    cpe:2.3:a:mysql:mysql:5.0.1
  • Mysql » Mysql » Version: 5.0.2
    cpe:2.3:a:mysql:mysql:5.0.2
  • Mysql » Mysql » Version: 5.0.20
    cpe:2.3:a:mysql:mysql:5.0.20
  • Mysql » Mysql » Version: 5.0.22.1.0.1
    cpe:2.3:a:mysql:mysql:5.0.22.1.0.1
  • Mysql » Mysql » Version: 5.0.24
    cpe:2.3:a:mysql:mysql:5.0.24
  • Mysql » Mysql » Version: 5.0.3
    cpe:2.3:a:mysql:mysql:5.0.3
  • Mysql » Mysql » Version: 5.0.4
    cpe:2.3:a:mysql:mysql:5.0.4
  • Mysql » Mysql » Version: 5.1.5
    cpe:2.3:a:mysql:mysql:5.1.5
  • Oracle » Mysql » Version: 5.0.0
    cpe:2.3:a:oracle:mysql:5.0.0
  • Oracle » Mysql » Version: 5.1.10
    cpe:2.3:a:oracle:mysql:5.1.10
  • Oracle » Mysql » Version: 5.1.6
    cpe:2.3:a:oracle:mysql:5.1.6
  • Oracle » Mysql » Version: 5.1.9
    cpe:2.3:a:oracle:mysql:5.1.9


Contact Us

Shodan ® - All rights reserved