7.5

CVE-2006-2753

SQL injection vulnerability in MySQL 4.1.x before 4.1.20 and 5.0.x before 5.0.22 allows context-dependent attackers to execute arbitrary SQL commands via crafted multibyte encodings in character sets such as SJIS, BIG5, and GBK, which are not properly handled when the mysql_real_escape function is used to escape the input.

Data is provided by the National Vulnerability Database (NVD)
MysqlMysql Version4.1.0
MysqlMysql Version4.1.2
MysqlMysql Version4.1.3
MysqlMysql Version4.1.8
MysqlMysql Version4.1.10
MysqlMysql Version4.1.12
MysqlMysql Version4.1.13
MysqlMysql Version4.1.14
MysqlMysql Version4.1.15
MysqlMysql Version5.0.0
MysqlMysql Version5.0.1
MysqlMysql Version5.0.2
MysqlMysql Version5.0.3
MysqlMysql Version5.0.4
MysqlMysql Version5.0.5
MysqlMysql Version5.0.10
MysqlMysql Version5.0.15
MysqlMysql Version5.0.16
MysqlMysql Version5.0.17
MysqlMysql Version5.0.20
OracleMysql Version4.1.1
OracleMysql Version4.1.4
OracleMysql Version4.1.5
OracleMysql Version4.1.6
OracleMysql Version4.1.7
OracleMysql Version4.1.9
OracleMysql Version4.1.11
OracleMysql Version4.1.16
OracleMysql Version4.1.17
OracleMysql Version4.1.18
OracleMysql Version4.1.19
OracleMysql Version5.0.6
OracleMysql Version5.0.7
OracleMysql Version5.0.8
OracleMysql Version5.0.9
OracleMysql Version5.0.11
OracleMysql Version5.0.12
OracleMysql Version5.0.13
OracleMysql Version5.0.14
OracleMysql Version5.0.18
OracleMysql Version5.0.19
OracleMysql Version5.0.21
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 6.99% 0.911
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P