Vulnerabilities > Oracle > Mysql > 1.5.1

DATE CVE VULNERABILITY TITLE RISK
2012-10-16 CVE-2012-3144 Remote Security vulnerability in Oracle MySQL Server
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.26 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server.
network
low complexity
oracle
4.0
2012-05-03 CVE-2012-1696 Remote MySQL Server vulnerability in Oracle MySQL
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.19 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer.
network
low complexity
mysql oracle
4.0
2012-05-03 CVE-2012-0583 Remote MySQL Server vulnerability in Oracle MySQL
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.60 and earlier, and 5.5.19 and earlier, allows remote authenticated users to affect availability, related to MyISAM.
network
low complexity
mysql oracle
4.0
2010-07-13 CVE-2010-2008 Command Injection vulnerability in multiple products
MySQL before 5.1.48 allows remote authenticated users with alter database privileges to cause a denial of service (server crash and database loss) via an ALTER DATABASE command with a #mysql50# string followed by a .
3.5
2007-05-10 CVE-2007-2583 The in_decimal::set function in item_cmpfunc.cc in MySQL before 5.0.40, and 5.1 before 5.1.18-beta, allows context-dependent attackers to cause a denial of service (crash) via a crafted IF clause that results in a divide-by-zero error and a NULL pointer dereference.
network
low complexity
oracle debian canonical
4.0
2004-09-28 CVE-2004-0457 Unspecified vulnerability in Oracle Mysql
The mysqlhotcopy script in mysql 4.0.20 and earlier, when using the scp method from the mysql-server package, allows local users to overwrite arbitrary files via a symlink attack on temporary files.
local
low complexity
oracle
4.6
2002-10-11 CVE-2002-0969 Classic Buffer Overflow vulnerability in Oracle Mysql
Buffer overflow in MySQL daemon (mysqld) before 3.23.50, and 4.0 beta before 4.02, on the Win32 platform, allows local users to execute arbitrary code via a long "datadir" parameter in the my.ini initialization file, whose permissions on Windows allow Full Control to the Everyone group.
local
low complexity
oracle CWE-120
7.8
2001-06-27 CVE-2001-0407 Symbolic Link File Overwriting vulnerability in MySQL Root Operation
Directory traversal vulnerability in MySQL before 3.23.36 allows local users to modify arbitrary files and gain privileges by creating a database whose name starts with ..
local
low complexity
oracle
4.6
2001-02-09 CVE-2001-1454 Unspecified vulnerability in Oracle Mysql
Buffer overflow in MySQL before 3.23.33 allows remote attackers to execute arbitrary code via a long drop database request.
network
low complexity
oracle
7.5
2001-01-23 CVE-2001-1274 Unspecified vulnerability in Oracle Mysql
Buffer overflow in MySQL before 3.23.31 allows attackers to cause a denial of service and possibly gain privileges.
network
low complexity
oracle
7.5