PT-2006-6382 · Mysql Server+1 · Mysql Server+1
Published
2006-11-03
·
Updated
2017-07-20
·
CVE-2006-5675
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
Pentaho Business Intelligence (BI) Suite versions prior to 1.2 RC3 (1.2.0.470-RC3)
Description:
The issue is related to "MySQL Scripts need changes for security," and is possibly associated with SQL injection vulnerabilities. The impact and attack vectors of these vulnerabilities are unknown.
Recommendations:
For versions prior to 1.2 RC3 (1.2.0.470-RC3), update to version 1.2 RC3 (1.2.0.470-RC3) or later to resolve the issue. As a temporary workaround, consider reviewing and modifying the MySQL scripts to address potential security concerns. Restrict access to sensitive data and databases to minimize the risk of exploitation.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Mysql Server
Pentaho Business Intelligence Suite