CVE-2012-4452 describes a local privilege bypass vulnerability affecting MySQL 5.0.88 and potentially other versions. An attacker can manipulate DATA DIRECTORY or INDEX DIRECTORY arguments when creating a MyISAM table, allowing them to bypass privilege checks by pointing to future symlinked directories within the MySQL data home. This vulnerability has a low severity CVSS score of 2.1 (AV:L/AC:L/Au:N/C:N/I:P/A:N), indicating local access is required for partial integrity impact. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 5.0.88CPE matchmatch criteria | cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:N/I:P/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.6 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.