Show filters
160 Total Results
Displaying 31-40 of 160
Sort by:
Attacker Value
Unknown
CVE-2014-9906
Disclosure Date: August 19, 2016 (last updated November 25, 2024)
Use-after-free vulnerability in DBD::mysql before 4.029 allows attackers to cause a denial of service (program crash) or possibly execute arbitrary code via vectors related to a lost server connection.
0
Attacker Value
Unknown
CVE-2015-8949
Disclosure Date: August 19, 2016 (last updated November 25, 2024)
Use-after-free vulnerability in the my_login function in DBD::mysql before 4.033_01 allows attackers to have unspecified impact by leveraging a call to mysql_errno after a failure of my_login.
0
Attacker Value
Unknown
CVE-2015-6944
Disclosure Date: September 15, 2015 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in JSP/MySQL Administrador Web 1 allows remote attackers to hijack the authentication of users for requests that execute arbitrary SQL commands via the cmd parameter to sys/sys/listaBD2.jsp.
0
Attacker Value
Unknown
CVE-2015-6945
Disclosure Date: September 15, 2015 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in JSP/MySQL Administrador Web 1 allows remote attackers to inject arbitrary web script or HTML via the bd parameter to sys/sys/listaBD2.jsp.
0
Attacker Value
Unknown
CVE-2015-5064
Disclosure Date: June 24, 2015 (last updated October 05, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in MySql Lite Administrator (mysql-lite-administrator) beta-1 allow remote attackers to inject arbitrary web script or HTML via the table_name parameter to (1) tabella.php, (2) coloni.php, or (3) insert.php or (4) num_row parameter to coloni.php.
0
Attacker Value
Unknown
CVE-2015-2575
Disclosure Date: April 16, 2015 (last updated October 05, 2023)
Unspecified vulnerability in the MySQL Connectors component in Oracle MySQL 5.1.34 and earlier allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Connector/J.
0
Attacker Value
Unknown
CVE-2014-1466
Disclosure Date: January 15, 2014 (last updated October 05, 2023)
SQL injection vulnerability in CSP MySQL User Manager 2.3 allows remote attackers to execute arbitrary SQL commands via the login field of the login page.
0
Attacker Value
Unknown
CVE-2012-0553
Disclosure Date: March 28, 2013 (last updated October 05, 2023)
Buffer overflow in yaSSL, as used in MySQL 5.1.x before 5.1.68 and 5.5.x before 5.5.28, has unspecified impact and attack vectors, a different vulnerability than CVE-2013-1492.
0
Attacker Value
Unknown
CVE-2013-1492
Disclosure Date: March 28, 2013 (last updated October 05, 2023)
Buffer overflow in yaSSL, as used in MySQL 5.1.x before 5.1.68 and 5.5.x before 5.5.30, has unspecified impact and attack vectors, a different vulnerability than CVE-2012-0553.
0
Attacker Value
Unknown
CVE-2012-0882
Disclosure Date: December 21, 2012 (last updated November 08, 2023)
Buffer overflow in yaSSL, as used in MySQL 5.5.20 and possibly other versions including 5.5.x before 5.5.22 and 5.1.x before 5.1.62, allows remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by VulnDisco Pack Professional 9.17. NOTE: as of 20120224, this disclosure has no actionable information. However, because the module author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes. NOTE: due to lack of details, it is not clear whether this issue is a duplicate of CVE-2012-0492 or another CVE.
0