MySQL Server 5.1.x before 5.1.23 and 6.0.x before 6.0.4 does not check the rights of the entity executing BINLOG, which allows remote authorized users to execute arbitrary BINLOG statements.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2008-02-18 15:00
Updated : 2011-03-07 19:02
NVD link : CVE-2007-6313
Mitre link : CVE-2007-6313
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
mysql
- mysql_community_server