Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mysql mysql 5.0.20 vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv2
CVE-2006-4227
MySQL prior to 5.0.25 and 5.1 prior to 5.1.12 evaluates arguments of suid routines in the security context of the routine's definer instead of the routine's caller, which allows remote authenticated users to gain privileges through a routine that has been made available...
Mysql Mysql 5.0.3
Mysql Mysql 5.0.24
Mysql Mysql 5.0.2
Mysql Mysql 5.0.22.1.0.1
Mysql Mysql 5.0.20
Mysql Mysql 5.0.1
Mysql Mysql 5.0.4
Mysql Mysql 5.1.5
Oracle Mysql 5.0.0
Oracle Mysql 5.1.6
Oracle Mysql 5.1.9
Oracle Mysql 5.1.10
1 EDB exploit
2.1
CVSSv2
CVE-2007-1420
MySQL 5.x prior to 5.0.36 allows local users to cause a denial of service (database crash) by performing information_schema table subselects and using ORDER BY to sort a single-row result, which prevents certain structure elements from being initialized and triggers a NULL derefe...
Mysql Mysql 5.0.5
Mysql Mysql 5.0.10
Mysql Mysql 5.0.0
Mysql Mysql 5.0.15
Mysql Mysql 5.0.17
Mysql Mysql 5.0.3
Mysql Mysql
Mysql Mysql 5.0.24
Mysql Mysql 5.0.2
Mysql Mysql 5.0.30
Mysql Mysql 5.0.20
Mysql Mysql 5.0.1
Mysql Mysql 5.0.4
Mysql Mysql 5.0.16
Oracle Mysql 5.0.6
Oracle Mysql 5.0.32
Oracle Mysql 5.0.41
Oracle Mysql 5.0.7
1 EDB exploit
6.5
CVSSv2
CVE-2006-1518
Buffer overflow in the open_table function in sql_base.cc in MySQL 5.0.x up to 5.0.20 might allow remote malicious users to execute arbitrary code via crafted COM_TABLE_DUMP packets with invalid length values.
Mysql Mysql 5.0.5
Mysql Mysql 5.0.10
Mysql Mysql 5.0.15
Mysql Mysql 5.0.17
Mysql Mysql 5.0.3
Mysql Mysql 5.0.2
Mysql Mysql 5.0.20
Mysql Mysql 5.0.1
Mysql Mysql 5.0.4
Mysql Mysql 5.0.16
Oracle Mysql 5.0.0
Oracle Mysql 5.0.3
Oracle Mysql 5.0.6
Oracle Mysql 5.0.11
Oracle Mysql 5.0.12
Oracle Mysql 5.0.13
Oracle Mysql 5.0.14
Oracle Mysql 5.0.18
Oracle Mysql 5.0.19
Oracle Mysql 5.0.7
Oracle Mysql 5.0.8
Oracle Mysql 5.0.9
1 EDB exploit
3.5
CVSSv2
CVE-2007-6303
MySQL 5.0.x prior to 5.0.51a, 5.1.x prior to 5.1.23, and 6.0.x prior to 6.0.4 does not update the DEFINER value of a view when the view is altered, which allows remote authenticated users to gain privileges via a sequence of statements including a CREATE SQL SECURITY DEFINER VIEW...
Mysql Mysql 5.0.5
Mysql Mysql 5.0.10
Mysql Mysql 5.0.0
Mysql Mysql 5.0.15
Mysql Mysql 5.0.17
Mysql Mysql 5.0.5.0.21
Mysql Mysql 5.0.3
Mysql Mysql 5.0.24
Mysql Mysql 5.0.2
Mysql Mysql 5.0.22.1.0.1
Mysql Mysql 5.0.20
Mysql Mysql 5.0.1
Mysql Mysql 5.0.4
Mysql Mysql 5.0.16
Oracle Mysql 6.0.0
Oracle Mysql 6.0.1
Oracle Mysql 6.0.2
Oracle Mysql 6.0.3
Oracle Mysql 5.0.41
Oracle Mysql 5.1.1
Oracle Mysql 5.1.2
Oracle Mysql 5.1.10
2.1
CVSSv2
CVE-2006-3486
Off-by-one buffer overflow in the Instance_options::complete_initialization function in instance_options.cc in the Instance Manager in MySQL prior to 5.0.23 and 5.1 prior to 5.1.12 might allow local users to cause a denial of service (application crash) via unspecified vectors, w...
Mysql Mysql 5.0.5
Mysql Mysql 5.0.10
Mysql Mysql 5.0.0
Mysql Mysql 5.0.15
Mysql Mysql 5.0.17
Mysql Mysql 5.0.3
Mysql Mysql 5.0.2
Mysql Mysql 5.0.20
Mysql Mysql 5.0.1
Mysql Mysql 5.0.4
Mysql Mysql 5.0.16
Mysql Mysql 5.1.5
Oracle Mysql 5.0.6
Oracle Mysql 5.0.11
Oracle Mysql 5.0.12
Oracle Mysql 5.0.13
Oracle Mysql 5.0.14
Oracle Mysql 5.0.18
Oracle Mysql 5.0.19
Oracle Mysql 5.0.21
Oracle Mysql 5.0.22
Oracle Mysql 5.0.7
7.5
CVSSv2
CVE-2006-2753
SQL injection vulnerability in MySQL 4.1.x prior to 4.1.20 and 5.0.x prior to 5.0.22 allows context-dependent malicious users to execute arbitrary SQL commands via crafted multibyte encodings in character sets such as SJIS, BIG5, and GBK, which are not properly handled when the m...
Mysql Mysql 5.0.5
Mysql Mysql 5.0.10
Mysql Mysql 5.0.0
Mysql Mysql 5.0.15
Mysql Mysql 5.0.17
Mysql Mysql 4.1.13
Mysql Mysql 5.0.3
Mysql Mysql 4.1.15
Mysql Mysql 4.1.8
Mysql Mysql 4.1.14
Mysql Mysql 4.1.12
Mysql Mysql 4.1.10
Mysql Mysql 5.0.2
Mysql Mysql 5.0.20
Mysql Mysql 5.0.1
Mysql Mysql 4.1.0
Mysql Mysql 5.0.4
Mysql Mysql 4.1.3
Mysql Mysql 5.0.16
Mysql Mysql 4.1.2
Oracle Mysql 4.1.1
Oracle Mysql 4.1.4
5
CVSSv2
CVE-2006-1516
The check_connection function in sql_parse.cc in MySQL 4.0.x up to 4.0.26, 4.1.x up to 4.1.18, and 5.0.x up to 5.0.20 allows remote malicious users to read portions of memory via a username without a trailing null byte, which causes a buffer over-read.
Mysql Mysql 5.0.5
Mysql Mysql 5.0.10
Mysql Mysql 5.0.15
Mysql Mysql 5.0.17
Mysql Mysql 4.1.13
Mysql Mysql 5.0.3
Mysql Mysql 4.1.15
Mysql Mysql 4.1.8
Mysql Mysql 4.1.14
Mysql Mysql 4.1.12
Mysql Mysql 4.1.10
Mysql Mysql 5.0.2
Mysql Mysql 5.0.1
Mysql Mysql 4.1.0
Mysql Mysql 5.0.4
Mysql Mysql 4.1.3
Mysql Mysql 5.0.16
Oracle Mysql 4.0.0
Oracle Mysql 4.0.1
Oracle Mysql 4.0.2
Oracle Mysql 4.0.3
Oracle Mysql 4.0.4
1 EDB exploit
5
CVSSv2
CVE-2007-6304
The federated engine in MySQL 5.0.x prior to 5.0.51a, 5.1.x prior to 5.1.23, and 6.0.x prior to 6.0.4, when performing a certain SHOW TABLE STATUS query, allows remote MySQL servers to cause a denial of service (federated handler crash and daemon crash) via a response that lacks ...
Mysql Mysql 5.0.5
Mysql Mysql 5.0.10
Mysql Mysql 5.0.0
Mysql Mysql 5.0.15
Mysql Mysql 5.0.17
Mysql Mysql 5.0.5.0.21
Mysql Mysql 5.0.3
Mysql Mysql 5.0.24
Mysql Mysql 5.0.2
Mysql Mysql 5.0.22.1.0.1
Mysql Mysql 5.0.20
Mysql Mysql 5.0.1
Mysql Mysql 5.0.4
Mysql Mysql 5.0.16
Oracle Mysql 6.0.0
Oracle Mysql 6.0.1
Oracle Mysql 6.0.2
Oracle Mysql 6.0.3
Oracle Mysql 5.0.0
Oracle Mysql 5.0.3
Oracle Mysql 5.0.6
Oracle Mysql 5.0.11
3.6
CVSSv2
CVE-2010-1626
MySQL prior to 5.1.46 allows local users to delete the data and index files of another user's MyISAM table via a symlink attack in conjunction with the DROP TABLE command, a different vulnerability than CVE-2008-4098 and CVE-2008-7247.
Mysql Mysql
Mysql Mysql 5.1.23
Mysql Mysql 5.0.84
Mysql Mysql 5.0.15
Mysql Mysql 5.1.34
Mysql Mysql 5.0.17
Mysql Mysql 5.0.5.0.21
Mysql Mysql 5.0.24
Mysql Mysql 5.0.87
Mysql Mysql 5.1.37
Mysql Mysql 5.0.20
Mysql Mysql 5.1.31
Mysql Mysql 5.0.82
Mysql Mysql 5.1.32
Mysql Mysql 5.0.16
Mysql Mysql 5.0.45b
Mysql Mysql 5.1.5
Oracle Mysql 5.1.39
Oracle Mysql 5.1.40
Oracle Mysql 5.1.41
Oracle Mysql 5.1.42
Oracle Mysql 5.1.43
6
CVSSv2
CVE-2007-2692
The mysql_change_db function in MySQL 5.0.x prior to 5.0.40 and 5.1.x prior to 5.1.18 does not restore THD::db_access privileges when returning from SQL SECURITY INVOKER stored routines, which allows remote authenticated users to gain privileges.
Mysql Mysql 5.0.5
Mysql Mysql 5.0.10
Mysql Mysql 5.0.0
Mysql Mysql 5.0.15
Mysql Mysql 5.0.17
Mysql Mysql 5.0.5.0.21
Mysql Mysql 5.0.3
Mysql Mysql 5.0.24
Mysql Mysql 5.0.2
Mysql Mysql 5.0.22.1.0.1
Mysql Mysql 5.0.20
Mysql Mysql 5.0.1
Mysql Mysql 5.0.4
Mysql Mysql 5.0.16
Mysql Mysql 5.1.5
Oracle Mysql 5.0.0
Oracle Mysql 5.0.3
Oracle Mysql 5.0.6
Oracle Mysql 5.0.11
Oracle Mysql 5.0.12
Oracle Mysql 5.0.13
Oracle Mysql 5.0.14
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-28995
CVE-2024-36680
CVE-2024-35537
unauthorized
CVE-2024-21518
CVE-2024-37673
cross-site scripting
SSRF
CVE-2024-6241
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »