MySQL 3.x before 3.23.59, 4.x before 4.0.19, 4.1.x before 4.1.2, and 5.x before 5.0.1, checks the CREATE/INSERT rights of the original table instead of the target table in an ALTER TABLE RENAME operation, which could allow attackers to conduct unauthorized activities.
References
Configurations
History
No history.
Information
Published : 2004-11-03 05:00
Updated : 2019-10-07 16:42
NVD link : CVE-2004-0835
Mitre link : CVE-2004-0835
CVE.ORG link : CVE-2004-0835
JSON object : View
Products Affected
debian
- debian_linux
mysql
- mysql
oracle
- mysql
CWE