CVE-2004-0957 is an unknown vulnerability in MySQL 3.23.58 and earlier, affecting products like openpkg, Oracle, Red Hat, SUSE, Trustix, and Ubuntu. It allows a local user with privileges on a database containing an underscore to gain unauthorized access to other similarly named databases. With a CVSS score of 6.8, this vulnerability has a medium attack complexity and can lead to partial confidentiality, integrity, and availability impacts. There is no known exploit code available, no evidence of active exploitation, and it has received minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.1CPE matchmatch criteria | cpe:2.3:a:openpkg:openpkg:2.1:*:*:*:*:*:*:* | ||
2.2CPE matchmatch criteria | cpe:2.3:a:openpkg:openpkg:2.2:*:*:*:*:*:*:* | ||
currentCPE matchmatch criteria | cpe:2.3:a:openpkg:openpkg:current:*:*:*:*:*:*:* | ||
3.20CPE matchmatch criteria | cpe:2.3:a:oracle:mysql:3.20:*:*:*:*:*:*:* | ||
3.20.32aCPE matchmatch criteria | cpe:2.3:a:oracle:mysql:3.20.32a:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:P/I:P/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.