Oracle

Mysql

1445 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 3.64%
  • Veröffentlicht 23.12.2002 05:00:00
  • Zuletzt bearbeitet 16.06.2026 21:59:12

Signed integer vulnerability in the COM_TABLE_DUMP package for MySQL 3.23.x before 3.23.54 allows remote attackers to cause a denial of service (crash or hang) in mysqld by causing large negative integers to be provided to a memcpy call.

Exploit
  • EPSS 20.45%
  • Veröffentlicht 23.12.2002 05:00:00
  • Zuletzt bearbeitet 16.06.2026 21:59:12

The COM_CHANGE_USER command in MySQL 3.x before 3.23.54, and 4.x before 4.0.6, allows remote attackers to gain privileges via a brute force attack using a one-character password, which causes MySQL to only compare the provided password against the fi...

  • EPSS 23.51%
  • Veröffentlicht 23.12.2002 05:00:00
  • Zuletzt bearbeitet 16.06.2026 21:59:12

The COM_CHANGE_USER command in MySQL 3.x before 3.23.54, and 4.x to 4.0.6, allows remote attackers to execute arbitrary code via a long response.

  • EPSS 6.79%
  • Veröffentlicht 23.12.2002 05:00:00
  • Zuletzt bearbeitet 16.06.2026 21:59:12

libmysqlclient client library in MySQL 3.x to 3.23.54, and 4.x to 4.0.6, does not properly verify length fields for certain responses in the (1) read_rows or (2) read_one_row routines, which allows remote attackers to cause a denial of service and po...

Exploit
  • EPSS 1.45%
  • Veröffentlicht 11.10.2002 04:00:00
  • Zuletzt bearbeitet 16.06.2026 21:58:28

Buffer overflow in MySQL daemon (mysqld) before 3.23.50, and 4.0 beta before 4.02, on the Win32 platform, allows local users to execute arbitrary code via a long "datadir" parameter in the my.ini initialization file, whose permissions on Windows allo...

  • EPSS 0.61%
  • Veröffentlicht 02.10.2001 04:00:00
  • Zuletzt bearbeitet 16.06.2026 21:55:54

WinMySQLadmin 1.1 stores the MySQL password in plain text in the my.ini file, which allows local users to obtain unathorized access the MySQL database.

Exploit
  • EPSS 2.22%
  • Veröffentlicht 27.06.2001 04:00:00
  • Zuletzt bearbeitet 16.06.2026 21:54:15

Directory traversal vulnerability in MySQL before 3.23.36 allows local users to modify arbitrary files and gain privileges by creating a database whose name starts with .. (dot dot).

Exploit
  • EPSS 11.3%
  • Veröffentlicht 09.02.2001 05:00:00
  • Zuletzt bearbeitet 16.06.2026 21:56:18

Buffer overflow in libmysqlclient.so in MySQL 3.23.33 and earlier allows remote attackers to execute arbitrary code via a long host parameter.

Exploit
  • EPSS 9.63%
  • Veröffentlicht 09.02.2001 05:00:00
  • Zuletzt bearbeitet 16.06.2026 21:56:18

Buffer overflow in MySQL before 3.23.33 allows remote attackers to execute arbitrary code via a long drop database request.

  • EPSS 5.43%
  • Veröffentlicht 23.01.2001 05:00:00
  • Zuletzt bearbeitet 16.06.2026 21:55:56

Buffer overflow in MySQL before 3.23.31 allows attackers to cause a denial of service and possibly gain privileges.