PT-2006-6382 · Mysql Server+1 · Mysql Server+1

Publicado

2006-11-03

·

Atualizado

2017-07-20

·

CVE-2006-5675

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Pentaho Business Intelligence (BI) Suite versions prior to 1.2 RC3 (1.2.0.470-RC3)
Description: The issue is related to "MySQL Scripts need changes for security," and is possibly associated with SQL injection vulnerabilities. The impact and attack vectors of these vulnerabilities are unknown.
Recommendations: For versions prior to 1.2 RC3 (1.2.0.470-RC3), update to version 1.2 RC3 (1.2.0.470-RC3) or later to resolve the issue. As a temporary workaround, consider reviewing and modifying the MySQL scripts to address potential security concerns. Restrict access to sensitive data and databases to minimize the risk of exploitation.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2006-5675

Produtos afetados

Mysql Server
Pentaho Business Intelligence Suite