9
CVSSv2

CVE-2003-0150

Published: 24/03/2003 Updated: 07/10/2019
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
VMScore: 905
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

MySQL 3.23.55 and previous versions creates world-writeable files and allows mysql users to gain root privileges by using the "SELECT * INFO OUTFILE" operator to overwrite a configuration file and cause mysql to run as root upon restart, as demonstrated by modifying my.cnf.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle mysql 3.23.53a

oracle mysql 3.23.54

oracle mysql 3.23.54a

oracle mysql 3.23.55

oracle mysql 3.23.52

oracle mysql 3.23.53

Vendor Advisories

CAN-2003-0073: The mysql package contains a bug whereby dynamically allocated memory is freed more than once, which could be deliberately triggered by an attacker to cause a crash, resulting in a denial of service condition In order to exploit this vulnerability, a valid username and password combination for access to the MySQL server is required ...

Exploits

source: wwwsecurityfocuscom/bid/7052/info A vulnerability has been discovered for MySQL that may allow the mysqld service to start with elevated privileges An attacker can exploit this vulnerability by creating a DATADIR/mycnf that includes the line 'user=root' under the '[mysqld]' option section When the mysqld service is executed, ...
MySQL versions 5715 and below, 5633 and below, and 5552 and below suffer from remote root code execution and privilege escalation vulnerabilities ...