The sapdbwa_GetUserData function in MySQL MaxDB 7.5.0.0, and other versions prior to 7.5.0.21, allows remote malicious users to cause a denial of service (crash) via invalid parameters to the WebDAV handler code, which triggers a null dereference that causes the SAP DB Web Agent to crash.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mysql maxdb 7.5.00.16 |
||
mysql maxdb 7.5.00.18 |
||
mysql maxdb 7.5.00.19 |
||
mysql maxdb 7.5.00.12 |
||
mysql maxdb 7.5.00.15 |
||
mysql maxdb 7.5.00 |
||
mysql maxdb 7.5.00.08 |
||
mysql maxdb 7.5.00.11 |
||
mysql maxdb 7.5.00.14 |