CVE-2005-0004

Description

The mysqlaccess script in MySQL 4.0.23 and earlier, 4.1.x before 4.1.10, 5.0.x before 5.0.3, and other versions including 3.x, allows local users to overwrite arbitrary files or read temporary files via a symlink attack on temporary files.

Risk Information

Base Score
7.9
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:C/C:N/I:H/A:H
EPSS Score
Exploitation Probability
0.045

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2019-2974,CVE-2005-0004 are fixed in MariaDB 5.5.66Windows
Vulnerabilities CVE-2019-2974,CVE-2005-0004 are fixed in MariaDB 5.5.66 (For Linux)Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234