Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2006-0369

EPSS 0.15% · P35
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2006-0369

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
MySQL 5.0.18 allows local users with access to a VIEW to obtain sensitive information via the "SELECT * FROM information_schema.views;" query, which returns the query that created the VIEW. NOTE: this issue has been disputed by third parties, saying that the availability of the schema is a normal and sometimes desired aspect of database access
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
MySQL 查询返回创建VIEW查询敏感信息泄露漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
** 有争议 ** MySQL 5.0.18可让能够访问VIEW的本地用户通过"SELECT * FROM information_schema.views;"查询返回创建VIEW的查询,以此获取敏感信息。注意:第三方对此问题有争议,称架构可用性对于数据库访问来说是正常的有时候还是需要的。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2006-0369

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2006-0369

登录查看更多情报信息。

Same Patch Batch · n/a · 2006-01-22 · 24 CVEs total

CVE-2006-0365XMB 跨站脚本攻击漏洞
CVE-2006-0353LSH 访问验证错误
CVE-2006-0376Windows 系列版本802.11无线客户机安全警告漏洞
CVE-2006-0375ACT P202S VOIP WIFI Phones未明漏洞
CVE-2006-0374ACT P202S VOIP WIFI Phones多个远程漏洞
CVE-2006-0373Douran FollowWeb Portal Register.ASPX 跨站脚本攻击漏洞
CVE-2006-0372BlogPHP多个SQL注入漏洞
CVE-2006-0371RCBlog Index.PHP目录遍历漏洞
CVE-2006-0370Noah Medling RCBlog 安全访问控制漏洞
CVE-2006-0368Cisco Call Manager端口管理拒绝服务漏洞
CVE-2006-0367Cisco CallManager CCMAdmin远程权限提升漏洞
CVE-2006-0366Phpclanwebsite BBCode IMG 跨站脚本攻击漏洞
CVE-2006-0354Cisco Aironet无线接入点ARP攻击拒绝服务漏洞
CVE-2006-0364MyBB Signature 跨站脚本攻击漏洞
CVE-2006-0363MSN Messenger CryptUnprotectData程序原始密码获取漏洞
CVE-2006-03623Com TippingPoint IPS远程未指定的拒绝服务漏洞
CVE-2006-0361Bit 5 Blog AddComment.PHP 跨站脚本攻击漏洞
CVE-2006-0360MPM HP-180W VOIP WIFI Phone信息泄露漏洞
CVE-2006-0359CounterPath eyeBeam SIP首部数据远程溢出漏洞
CVE-2006-0358PowerPortal 多个SQL注入漏洞

Showing top 20 of 24 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2006-0369

No comments yet


Leave a comment