CVE-1999-1188Oracle Mysql vulnerability

2 documents2 sources
Severity
4.6MEDIUMNVD
EPSS
0.1%
top 69.10%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 27
Latest updateApr 30

Description

mysqld in MySQL 3.21 creates log files with world-readable permissions, which allows local users to obtain passwords for users who are added to the user database.

CVSS vector

AV:L/AC:L/C:P/I:P/A:PExploitability: 3.9 | Impact: 6.4

Affected Packages1 packages

NVDoracle/mysql3.21

🔴Vulnerability Details

1
GHSA
GHSA-c8f9-m33j-ppw6: mysqld in MySQL 32022-04-30