CVE-2005-0684
Published Apr 25, 2005
Last updated 14 years ago
Overview
- Description
- Multiple buffer overflows in the web tool for MySQL MaxDB before 7.5.00.26 allows remote attackers to execute arbitrary code via (1) an HTTP GET request with a long file parameter after a percent ("%") sign or (2) a long Lock-Token string to the WebDAV functionality, which is not properly handled by the getLockTokenHeader function in WDVHandler_CommonUtils.c.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 10
- Impact score
- 10
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:mysql:maxdb:7.5.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1FBA6898-4D32-4A3D-8529-1FC7A63894B6" }, { "criteria": "cpe:2.3:a:mysql:maxdb:7.5.00.08:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A2635818-D83B-4C7A-9693-4EB202DA16AC" }, { "criteria": "cpe:2.3:a:mysql:maxdb:7.5.00.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D28E5409-B8F1-4A9E-9A1E-0B023E5190DB" }, { "criteria": "cpe:2.3:a:mysql:maxdb:7.5.00.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "67E23371-678E-476B-B067-FCD655861CE6" }, { "criteria": "cpe:2.3:a:mysql:maxdb:7.5.00.14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0C6C9B28-F515-4F47-83F6-F2D4164B8D83" }, { "criteria": "cpe:2.3:a:mysql:maxdb:7.5.00.15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "160A9738-B169-4022-85BC-14B0BBFD1C01" }, { "criteria": "cpe:2.3:a:mysql:maxdb:7.5.00.16:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F8442206-133D-4048-8064-D5724FDF0E04" }, { "criteria": "cpe:2.3:a:mysql:maxdb:7.5.00.18:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4EAE96CE-D059-4C87-A7EC-5578EFD93849" }, { "criteria": "cpe:2.3:a:mysql:maxdb:7.5.00.19:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7B406A8D-48C1-4E62-BD40-2EA7D1A1A1DB" }, { "criteria": "cpe:2.3:a:mysql:maxdb:7.5.00.23:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "45F2163D-2A4E-4471-974B-36304ACE1F80" } ], "operator": "OR" } ] } ]