The mysqlhotcopy script in mysql 4.0.20 and earlier, when using the scp method from the mysql-server package, allows local users to overwrite arbitrary files via a symlink attack on temporary files.
References
Configurations
Information
Published : 2004-09-27 21:00
Updated : 2019-12-17 09:11
NVD link : CVE-2004-0457
Mitre link : CVE-2004-0457
JSON object : View
CWE
Products Affected
oracle
- mysql