Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2004-0957
Description:Unknown vulnerability in MySQL 3.23.58 and earlier, when a local user has privileges for a database whose name includes a "_" (underscore), grants privileges to other databases that have similar names, which can allow the user to conduct unauthorized activities.
Test IDs: 1.3.6.1.4.1.25623.1.0.52015   1.3.6.1.4.1.25623.1.0.52270   1.3.6.1.4.1.25623.1.0.53750   1.3.6.1.4.1.25623.1.0.52072  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2004-0957
Computer Incident Advisory Center Bulletin: P-018
http://www.ciac.org/ciac/bulletins/p-018.shtml
Conectiva Linux advisory: CLA-2005:947
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000947
Debian Security Information: DSA-707 (Google Search)
http://www.debian.org/security/2005/dsa-707
http://www.mandriva.com/security/advisories?name=MDKSA-2005:070
RedHat Security Advisories: RHSA-2004:597
http://www.redhat.com/support/errata/RHSA-2004-597.html
RedHat Security Advisories: RHSA-2004:611
http://www.redhat.com/support/errata/RHSA-2004-611.html
https://www.ubuntu.com/usn/usn-32-1/
XForce ISS Database: mysql-underscore-gain-priv(17783)
https://exchange.xforce.ibmcloud.com/vulnerabilities/17783




© 1998-2024 E-Soft Inc. All rights reserved.