Lucene search

K
cve[email protected]CVE-2006-0903
HistoryFeb 27, 2006 - 11:02 p.m.

CVE-2006-0903

2006-02-2723:02:00
web.nvd.nist.gov
45
cve-2006-0903
mysql
logging mechanisms
sql queries
security vulnerability

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

6.3 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

26.5%

MySQL 5.0.18 and earlier allows local users to bypass logging mechanisms via SQL queries that contain the NULL character, which are not properly handled by the mysql_real_query function. NOTE: this issue was originally reported for the mysql_query function, but the vendor states that since mysql_query expects a null character, this is not an issue for mysql_query.

Affected configurations

NVD
Node
mysqlmysqlMatch4.1.0
OR
mysqlmysqlMatch4.1.3
OR
mysqlmysqlMatch4.1.8
OR
mysqlmysqlMatch4.1.10
OR
mysqlmysqlMatch4.1.12
OR
mysqlmysqlMatch4.1.13
OR
mysqlmysqlMatch4.1.14
OR
mysqlmysqlMatch4.1.15
OR
mysqlmysqlMatch5.0.1
OR
mysqlmysqlMatch5.0.2
OR
mysqlmysqlMatch5.0.4
OR
mysqlmysqlMatch5.0.5
OR
mysqlmysqlMatch5.0.10
OR
mysqlmysqlMatch5.0.15
OR
mysqlmysqlMatch5.0.16
OR
mysqlmysqlMatch5.0.17
OR
oraclemysqlMatch3.23
OR
oraclemysqlMatch3.23.0alpha
OR
oraclemysqlMatch3.23.1
OR
oraclemysqlMatch3.23.2
OR
oraclemysqlMatch3.23.3
OR
oraclemysqlMatch3.23.4
OR
oraclemysqlMatch3.23.5
OR
oraclemysqlMatch3.23.6
OR
oraclemysqlMatch3.23.7
OR
oraclemysqlMatch3.23.8
OR
oraclemysqlMatch3.23.9
OR
oraclemysqlMatch3.23.10
OR
oraclemysqlMatch3.23.11
OR
oraclemysqlMatch3.23.12
OR
oraclemysqlMatch3.23.13
OR
oraclemysqlMatch3.23.14
OR
oraclemysqlMatch3.23.15
OR
oraclemysqlMatch3.23.16
OR
oraclemysqlMatch3.23.17
OR
oraclemysqlMatch3.23.18
OR
oraclemysqlMatch3.23.19
OR
oraclemysqlMatch3.23.20beta
OR
oraclemysqlMatch3.23.21
OR
oraclemysqlMatch3.23.22
OR
oraclemysqlMatch3.23.23
OR
oraclemysqlMatch3.23.24
OR
oraclemysqlMatch3.23.25
OR
oraclemysqlMatch3.23.26
OR
oraclemysqlMatch3.23.27
OR
oraclemysqlMatch3.23.28gamma
OR
oraclemysqlMatch3.23.29
OR
oraclemysqlMatch3.23.30
OR
oraclemysqlMatch3.23.31
OR
oraclemysqlMatch3.23.32
OR
oraclemysqlMatch3.23.33
OR
oraclemysqlMatch3.23.34
OR
oraclemysqlMatch3.23.35
OR
oraclemysqlMatch3.23.36
OR
oraclemysqlMatch3.23.37
OR
oraclemysqlMatch3.23.38
OR
oraclemysqlMatch3.23.39
OR
oraclemysqlMatch3.23.40
OR
oraclemysqlMatch3.23.41
OR
oraclemysqlMatch3.23.42
OR
oraclemysqlMatch3.23.43
OR
oraclemysqlMatch3.23.44
OR
oraclemysqlMatch3.23.45
OR
oraclemysqlMatch3.23.46
OR
oraclemysqlMatch3.23.47
OR
oraclemysqlMatch3.23.48
OR
oraclemysqlMatch3.23.49
OR
oraclemysqlMatch3.23.50
OR
oraclemysqlMatch3.23.51
OR
oraclemysqlMatch3.23.52
OR
oraclemysqlMatch3.23.53
OR
oraclemysqlMatch3.23.54
OR
oraclemysqlMatch3.23.55
OR
oraclemysqlMatch3.23.56
OR
oraclemysqlMatch3.23.57
OR
oraclemysqlMatch3.23.58
OR
oraclemysqlMatch3.23.59
OR
oraclemysqlMatch4.0.0
OR
oraclemysqlMatch4.0.1
OR
oraclemysqlMatch4.0.2
OR
oraclemysqlMatch4.0.3
OR
oraclemysqlMatch4.0.4
OR
oraclemysqlMatch4.0.5
OR
oraclemysqlMatch4.0.5a
OR
oraclemysqlMatch4.0.6
OR
oraclemysqlMatch4.0.7
OR
oraclemysqlMatch4.0.7gamma
OR
oraclemysqlMatch4.0.8
OR
oraclemysqlMatch4.0.8gamma
OR
oraclemysqlMatch4.0.9
OR
oraclemysqlMatch4.0.9gamma
OR
oraclemysqlMatch4.0.10
OR
oraclemysqlMatch4.0.11
OR
oraclemysqlMatch4.0.11gamma
OR
oraclemysqlMatch4.0.12
OR
oraclemysqlMatch4.0.13
OR
oraclemysqlMatch4.0.14
OR
oraclemysqlMatch4.0.15
OR
oraclemysqlMatch4.0.16
OR
oraclemysqlMatch4.0.17
OR
oraclemysqlMatch4.0.18
OR
oraclemysqlMatch4.0.19
OR
oraclemysqlMatch4.0.20
OR
oraclemysqlMatch4.0.21
OR
oraclemysqlMatch4.0.23
OR
oraclemysqlMatch4.0.24
OR
oraclemysqlMatch4.0.25
OR
oraclemysqlMatch4.0.26
OR
oraclemysqlMatch4.0.27
OR
oraclemysqlMatch4.1.0alpha
OR
oraclemysqlMatch4.1.2alpha
OR
oraclemysqlMatch4.1.3beta
OR
oraclemysqlMatch4.1.4
OR
oraclemysqlMatch4.1.5
OR
oraclemysqlMatch4.1.6
OR
oraclemysqlMatch4.1.7
OR
oraclemysqlMatch4.1.9
OR
oraclemysqlMatch4.1.11
OR
oraclemysqlMatch4.1.16
OR
oraclemysqlMatch4.1.17
OR
oraclemysqlMatch4.1.18
OR
oraclemysqlMatch4.1.19
OR
oraclemysqlMatch5.0.0alpha
OR
oraclemysqlMatch5.0.3beta
OR
oraclemysqlMatch5.0.6
OR
oraclemysqlMatch5.0.7
OR
oraclemysqlMatch5.0.8
OR
oraclemysqlMatch5.0.9
OR
oraclemysqlMatch5.0.11
OR
oraclemysqlMatch5.0.12
OR
oraclemysqlMatch5.0.13
OR
oraclemysqlMatch5.0.14
OR
oraclemysqlMatch5.0.18

References

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

6.3 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

26.5%