Vulnerabilities
Vulnerable Software
Mysql:  >> Mysql  >> 5.0  Security Vulnerabilities
MySQL before 4.1.23, 5.0.x before 5.0.42, and 5.1.x before 5.1.18 does not require the DROP privilege for RENAME TABLE statements, which allows remote authenticated users to rename arbitrary tables.
CVSS Score
4.9
EPSS Score
0.01
Published
2007-05-16
MySQL 5.x before 5.0.36 allows local users to cause a denial of service (database crash) by performing information_schema table subselects and using ORDER BY to sort a single-row result, which prevents certain structure elements from being initialized and triggers a NULL dereference in the filesort function.
CVSS Score
2.1
EPSS Score
0.001
Published
2007-03-12
sql_select.cc in MySQL 5.0.x before 5.0.32 and 5.1.x before 5.1.14 allows remote authenticated users to cause a denial of service (crash) via an EXPLAIN SELECT FROM on the INFORMATION_SCHEMA table, as originally demonstrated using ORDER BY.
CVSS Score
3.5
EPSS Score
0.019
Published
2006-12-31


Contact Us

Shodan ® - All rights reserved