VDB
CVE-2007-3781
CVE-2007-3781
PUBLISHED
CVSS 4 MEDIUM
MySQL Community Server before 5.0.45 does not require privileges such as SELECT for the source table in a CREATE TABLE LIKE statement, which allows remote authenticated users to obtain sensitive information such as the table structure.
EPSS 0.62% · 70.5th percentile
Risk Scores
CVSS 2.0
4
EPSS Score
0.62%
70.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| mysql | community_server | 5.0.41, 5.0.44 |
| n/a | n/a | n/a |
Exploit Intelligence
- http://bugs.mysql.com/bug.php?id=25578 (circl)
- 28343 (circl)
- 37783 (circl)
- RHSA-2007:0894 (circl)
- 26073 (circl)
- 26498 (circl)
- [announce] 20070712 MySQL Community Server 5.0.45 has been released! (circl)
- DSA-1451 (circl)
- 25017 (circl)
- USN-559-1 (circl)
…and 19 more exploits
Timeline
- Jul 15, 2007 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
References
- http://bugs.mysql.com/bug.php?id=25578 url
- 28343 third-party-advisory
- 37783 vdb
- RHSA-2007:0894 vendor-advisory
- 26073 third-party-advisory
- 26498 third-party-advisory
- [announce] 20070712 MySQL Community Server 5.0.45 has been released! mailing-list
- DSA-1451 vendor-advisory
- 25017 vdb
- USN-559-1 vendor-advisory
- 20070717 rPSA-2007-0143-1 mysql mysql-bench mysql-server mailing-list
- GLSA-200708-10 vendor-advisory
- SSA:2007-348-01 vendor-advisory
- 26987 third-party-advisory
- 25301 third-party-advisory
- 28040 third-party-advisory
- https://issues.rpath.com/browse/RPL-1536 url
- 30351 third-party-advisory
- 28108 third-party-advisory
- http://dev.mysql.com/doc/refman/5.0/en/releasenotes-cs-5-0-45.html url
…and 7 more