9

CVE-2003-0150

Exploit

MySQL 3.23.55 and earlier creates world-writeable files and allows mysql users to gain root privileges by using the "SELECT * INFO OUTFILE" operator to overwrite a configuration file and cause mysql to run as root upon restart, as demonstrated by modifying my.cnf.

Data is provided by the National Vulnerability Database (NVD)
OracleMysql Version3.23.52
OracleMysql Version3.23.53
OracleMysql Version3.23.53a
OracleMysql Version3.23.54
OracleMysql Version3.23.54a
OracleMysql Version3.23.55
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 12.81% 0.934
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 9 8 10
AV:N/AC:L/Au:S/C:C/I:C/A:C