CVE-2005-0004

Severity CVSS v4.0:
Pending analysis
Type:
CWE-59 Link Following
Publication date:
14/04/2005
Last modified:
03/04/2025

Description

The mysqlaccess script in MySQL 4.0.23 and earlier, 4.1.x before 4.1.10, 5.0.x before 5.0.3, and other versions including 3.x, allows local users to overwrite arbitrary files or read temporary files via a symlink attack on temporary files.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*:* 4.0.0 (including) 4.0.23 (excluding)
cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*:* 4.1.0 (including) 4.1.10 (excluding)
cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*:* 5.0.0 (including) 5.0.3 (excluding)
cpe:2.3:o:debian:debian_linux:3.0:*:*:*:*:*:*:*
cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:* 5.5.0 (including) 5.5.66 (excluding)