CVE-2005-0711
LOW 2.1EPSS 1.7%
MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, uses predictable file names when creating temporary tables, which allows local users with CREATE TEMPORARY TABLE privileges to overwrite arbitrary files via a symlink attack.
- CVSS v2.0
- 2.1 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:N - EPSS
- 1.70% chance of exploitation in the next 30 days, 76th percentile
- Published
- 2005-03-11
- Updated
- 2024-08-07