Multiple buffer overflows in the web tool for MySQL MaxDB before 7.5.00.26 allows remote attackers to execute arbitrary code via (1) an HTTP GET request with a long file parameter after a percent ("%") sign or (2) a long Lock-Token string to the WebDAV functionality, which is not properly handled by the getLockTokenHeader function in WDVHandler_CommonUtils.c.
2005-04-25T04:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 10.0 (HIGH)
AV:N/AC:L/Au:N/C:C/I:C/A:C
10.0
10.0
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | mysql | maxdb | 7.5.00 | Yes |
| Application | mysql | maxdb | 7.5.00.08 | Yes |
| Application | mysql | maxdb | 7.5.00.11 | Yes |
| Application | mysql | maxdb | 7.5.00.12 | Yes |
| Application | mysql | maxdb | 7.5.00.14 | Yes |
| Application | mysql | maxdb | 7.5.00.15 | Yes |
| Application | mysql | maxdb | 7.5.00.16 | Yes |
| Application | mysql | maxdb | 7.5.00.18 | Yes |
| Application | mysql | maxdb | 7.5.00.19 | Yes |
| Application | mysql | maxdb | 7.5.00.23 | Yes |