Skip to content
Noroxi

mysql records

112 published records for vendor mysql.

All records

112 records
  • CVE-2006-4305
    62This week

    Buffer overflow in SAP DB and MaxDB before 7.6.00.30 allows remote attackers to execute arbitrary code via a long database name when connect

    CriticalCVSS 10.0WeaponizedEPSS 72%

    mysql · maxdbAug 29, 2006

  • CVE-2004-0627
    61This week

    The check_scramble_323 function in MySQL 4.1.x before 4.1.3, and 5.0, allows remote attackers to bypass authentication via a zero-length scr

    CriticalCVSS 10.0Proof of conceptEPSS 70%

    mysql · mysqlDec 6, 2004

  • CVE-2005-0684
    61This week

    Multiple buffer overflows in the web tool for MySQL MaxDB before 7.5.00.26 allows remote attackers to execute arbitrary code via (1) an HTTP

    CriticalCVSS 10.0WeaponizedEPSS 69%

    mysql · maxdbApr 25, 2005

  • CVE-2003-0780
    60This week

    Buffer overflow in get_salt_from_password from sql_acl.cc for MySQL 4.0.14 and earlier, and 3.23.x, allows attackers with ALTER TABLE privil

    CriticalCVSS 9.0Proof of conceptEPSS 78%

    mysql · mysqlSep 22, 2003

  • Multiple buffer overflows in yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allow remote attackers to execute arbitr

    HighCVSS 7.5WeaponizedEPSS 92%

    yassl · yasslJan 10, 2008

  • Stack-based buffer overflow in MySQL 4.1.x before 4.1.3, and 5.0, allows remote attackers to cause a denial of service (crash) and possibly

    CriticalCVSS 10.0No exploitEPSS 8%

    mysql · mysqlDec 6, 2004

  • Stack-based buffer overflow in the WebDav handler in MaxDB WebTools 7.5.00.18 and earlier allows remote attackers to execute arbitrary code

    CriticalCVSS 10.0No exploitEPSS 5%

    mysql · maxdbJan 10, 2005

  • Stack-based buffer overflow in the getIfHeader function in the WebDAV functionality in MySQL MaxDB before 7.5.00.26 allows remote attackers

    CriticalCVSS 10.0No exploitEPSS 4%

    mysql · maxdbApr 26, 2005

  • CVE-2006-1518
    38Monitor

    Buffer overflow in the open_table function in sql_base.cc in MySQL 5.0.x up to 5.0.20 might allow remote attackers to execute arbitrary code

    MediumCVSS 6.5Proof of conceptEPSS 38%

    mysql · mysqlMay 5, 2006

  • CVE-2004-0835
    37Monitor

    MySQL 3.x before 3.23.59, 4.x before 4.0.19, 4.1.x before 4.1.2, and 5.x before 5.0.1, checks the CREATE/INSERT rights of the original table

    HighCVSS 7.5Proof of conceptEPSS 22%

    mysql · mysqlNov 3, 2004

  • CVE-2009-2446
    37Monitor

    Multiple format string vulnerabilities in the dispatch_command function in libmysqld/sql_parse.cc in mysqld in MySQL 4.0.0 through 5.0.83 al

    HighCVSS 8.5Proof of conceptEPSS 11%

    mysql · mysqlJul 13, 2009

  • CVE-2007-5969
    32Monitor

    MySQL Community Server 5.0.x before 5.0.51, Enterprise Server 5.0.x before 5.0.52, Server 5.1.x before 5.1.23, and Server 6.0.x before 6.0.4

    HighCVSS 7.1No exploitEPSS 14%

    mysql · mysql serverDec 10, 2007

  • CVE-2012-0882
    32Monitor

    Buffer overflow in yaSSL, as used in MySQL 5.5.20 and possibly other versions including 5.5.x before 5.5.22 and 5.1.x before 5.1.62, allows

    HighCVSS 7.5No exploitEPSS 5%

    mysql · mysqlDec 21, 2012

  • CVE-2006-1516
    31Monitor

    The check_connection function in sql_parse.cc in MySQL 4.0.x up to 4.0.26, 4.1.x up to 4.1.18, and 5.0.x up to 5.0.20 allows remote attacker

    MediumCVSS 5.0Proof of conceptEPSS 36%

    mysql · mysqlMay 5, 2006

  • CVE-2010-1850
    31Monitor

    Buffer overflow in MySQL 5.0 through 5.0.91 and 5.1 before 5.1.47 allows remote authenticated users to execute arbitrary code via a COM_FIEL

    MediumCVSS 6.0No exploitEPSS 22%

    mysql · mysqlJun 7, 2010

  • CVE-2005-0111
    31Monitor

    Stack-based buffer overflow in the websql CGI program in MySQL MaxDB 7.5.00 allows remote attackers to execute arbitrary code via a long pas

    HighCVSS 7.5No exploitEPSS 4%

    mysql · maxdbJan 13, 2005

  • CVE-2006-2753
    31Monitor

    SQL injection vulnerability in MySQL 4.1.x before 4.1.20 and 5.0.x before 5.0.22 allows context-dependent attackers to execute arbitrary SQL

    HighCVSS 7.5No exploitEPSS 4%

    mysql · mysqlJun 1, 2006

  • CVE-2013-1492
    31Monitor

    Buffer overflow in yaSSL, as used in MySQL 5.1.x before 5.1.68 and 5.5.x before 5.5.30, has unspecified impact and attack vectors, a differe

    HighCVSS 7.5No exploitEPSS 3%

    mysql · mysqlMar 28, 2013

  • CVE-2012-0553
    31Monitor

    Buffer overflow in yaSSL, as used in MySQL 5.1.x before 5.1.68 and 5.5.x before 5.5.28, has unspecified impact and attack vectors, a differe

    HighCVSS 7.5No exploitEPSS 3%

    mysql · mysqlMar 28, 2013

  • CVE-2009-2942
    31Monitor

    The mysql-ocaml bindings 1.0.4 for MySQL do not properly support the mysql_real_escape_string function, which might allow remote attackers t

    HighCVSS 7.5No exploitEPSS 2%

    mysql-ocaml · mysql-ocamlOct 22, 2009

  • The installation scripts in the Gentoo dev-db/mysql, dev-db/mariadb, dev-db/percona-server, dev-db/mysql-cluster, and dev-db/mariadb-galera

    HighCVSS 7.8No exploitEPSS 0%

    mariadb · mariadbOct 27, 2017

  • CVE-2006-4227
    30Monitor

    MySQL before 5.0.25 and 5.1 before 5.1.12 evaluates arguments of suid routines in the security context of the routine's definer instead of t

    MediumCVSS 6.5Proof of conceptEPSS 14%

    mysql · mysqlAug 18, 2006

  • CVE-2009-5026
    29Monitor

    The executable comment feature in MySQL 5.0.x before 5.0.93 and 5.1.x before 5.1.50, when running in certain slave configurations in which t

    MediumCVSS 6.8Proof of conceptEPSS 8%

    mysql · mysqlAug 16, 2012

  • CVE-2009-4028
    28Monitor

    The vio_verify_callback function in viosslfactories.c in MySQL 5.0.x before 5.0.88 and 5.1.x before 5.1.41, when OpenSSL is used, accepts a

    MediumCVSS 6.8No exploitEPSS 2%

    mysql · mysqlNov 30, 2009

  • CVE-2010-1848
    27Monitor

    Directory traversal vulnerability in MySQL 5.0 through 5.0.91 and 5.1 before 5.1.47 allows remote authenticated users to bypass intended tab

    MediumCVSS 6.5No exploitEPSS 3%

    mysql · mysqlJun 7, 2010