« List of all CVEs

CVE-2010-1848

Published: 6/7/2010 Last updated: 8/7/2024 Reserved: 5/6/2010

Directory traversal vulnerability in MySQL 5.0 through 5.0.91 and 5.1 before 5.1.47 allows remote authenticated users to bypass intended table grants to read field definitions of arbitrary tables, and on 5.1 to read or delete content of arbitrary tables, via a .. (dot dot) in a table name.

CNA assigner: mitre (8254265b-2729-46b6-b9e3-3dfca2d5bfca) Requested by: n/a

Opam packages affected (1)

conf-mysql

Products affected (1)

Product Vendor Version
n/a n/a <= None

References (30)