6.8

CVE-2004-0957

Unknown vulnerability in MySQL 3.23.58 and earlier, when a local user has privileges for a database whose name includes a "_" (underscore), grants privileges to other databases that have similar names, which can allow the user to conduct unauthorized activities.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
OpenpkgOpenpkg Version2.1
OpenpkgOpenpkg Version2.2
OpenpkgOpenpkg Versioncurrent
OracleMysql Version3.20
OracleMysql Version3.20.32a
OracleMysql Version3.21
OracleMysql Version3.22
OracleMysql Version3.22.26
OracleMysql Version3.22.27
OracleMysql Version3.22.28
OracleMysql Version3.22.29
OracleMysql Version3.22.30
OracleMysql Version3.22.32
OracleMysql Version3.23
OracleMysql Version3.23.2
OracleMysql Version3.23.3
OracleMysql Version3.23.4
OracleMysql Version3.23.5
OracleMysql Version3.23.8
OracleMysql Version3.23.9
OracleMysql Version3.23.10
OracleMysql Version3.23.22
OracleMysql Version3.23.23
OracleMysql Version3.23.24
OracleMysql Version3.23.25
OracleMysql Version3.23.26
OracleMysql Version3.23.27
OracleMysql Version3.23.28
OracleMysql Version3.23.28 Updategamma
OracleMysql Version3.23.29
OracleMysql Version3.23.30
OracleMysql Version3.23.31
OracleMysql Version3.23.32
OracleMysql Version3.23.33
OracleMysql Version3.23.34
OracleMysql Version3.23.36
OracleMysql Version3.23.37
OracleMysql Version3.23.38
OracleMysql Version3.23.39
OracleMysql Version3.23.40
OracleMysql Version3.23.41
OracleMysql Version3.23.42
OracleMysql Version3.23.43
OracleMysql Version3.23.44
OracleMysql Version3.23.45
OracleMysql Version3.23.46
OracleMysql Version3.23.47
OracleMysql Version3.23.48
OracleMysql Version3.23.49
OracleMysql Version3.23.50
OracleMysql Version3.23.51
OracleMysql Version3.23.52
OracleMysql Version3.23.53
OracleMysql Version3.23.53a
OracleMysql Version3.23.54
OracleMysql Version3.23.54a
OracleMysql Version3.23.55
OracleMysql Version3.23.56
OracleMysql Version3.23.58
OracleMysql Version3.23.59
OracleMysql Version4.0.0
OracleMysql Version4.0.1
OracleMysql Version4.0.2
OracleMysql Version4.0.3
OracleMysql Version4.0.4
OracleMysql Version4.0.5
OracleMysql Version4.0.5a
OracleMysql Version4.0.6
OracleMysql Version4.0.7
OracleMysql Version4.0.7 Updategamma
OracleMysql Version4.0.8
OracleMysql Version4.0.8 Updategamma
OracleMysql Version4.0.9
OracleMysql Version4.0.9 Updategamma
OracleMysql Version4.0.10
OracleMysql Version4.0.11
OracleMysql Version4.0.11 Updategamma
OracleMysql Version4.0.12
OracleMysql Version4.0.13
OracleMysql Version4.0.14
OracleMysql Version4.0.15
OracleMysql Version4.0.18
OracleMysql Version4.0.20
RedhatEnterprise Linux Version3.0 Editionadvanced_server
RedhatEnterprise Linux Version3.0 Editionenterprise_server
RedhatEnterprise Linux Version3.0 Editionworkstation_server
SuseSuse Linux Version8.0
SuseSuse Linux Version8.1
SuseSuse Linux Version8.2
SuseSuse Linux Version9.0
SuseSuse Linux Version9.0 Editionx86_64
SuseSuse Linux Version9.1
SuseSuse Linux Version9.2
TrustixSecure Linux Version1.5
TrustixSecure Linux Version2.0
TrustixSecure Linux Version2.1
UbuntuUbuntu Linux Version4.1 Editionia64
UbuntuUbuntu Linux Version4.1 Editionppc
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.48% 0.642
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P