Description
MySQL before 4.1.21, 5.0 before 5.0.25, and 5.1 before 5.1.12, when run on case-sensitive filesystems, allows remote authenticated users to create or access a database when the database name differs only in case from a database for which they have permissions.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-1169-1 | New MySQL 4.1 packages fix several vulnerabilities |
EUVD |
EUVD-2006-4216 | MySQL before 4.1.21, 5.0 before 5.0.25, and 5.1 before 5.1.12, when run on case-sensitive filesystems, allows remote authenticated users to create or access a database when the database name differs only in case from a database for which they have permissions. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T18:57:46.518Z
Reserved: 2006-08-18T00:00:00.000Z
Link: CVE-2006-4226
No data.
Status : Modified
Published: 2006-08-18T20:04:00.000
Modified: 2026-04-16T00:27:16.627
Link: CVE-2006-4226
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD