← Back

CVE-2002-1374

nvd nist
Published: Dec 23, 2002Modified: Apr 16, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

The COM_CHANGE_USER command in MySQL 3.x before 3.23.54, and 4.x before 4.0.6, allows remote attackers to gain privileges via a brute force attack using a one-character password, which causes MySQL to only compare the provided password against the first character of the real password.

Affected (62)

1 product
Mysql
Netbackup Advanced Reporter
Netbackup Global Data Manager
Configuration A
62 vulnerable
Vulnerable SoftwareAffected Versions
Oracle
Version 3.22.26
Version 3.22.27
Version 3.22.28
Version 3.22.29
Version 3.22.30
Version 3.22.32
Version 3.23.10
Version 3.23.23
Version 3.23.24
Version 3.23.25
Version 3.23.26
Version 3.23.27
Version 3.23.28
Version 3.23.29
Version 3.23.2
Version 3.23.30
Version 3.23.31
Version 3.23.34
Version 3.23.36
Version 3.23.37
Version 3.23.38
Version 3.23.39
Version 3.23.3
Version 3.23.40
Version 3.23.41
Version 3.23.42
Version 3.23.43
Version 3.23.44
Version 3.23.45
Version 3.23.46
Version 3.23.47
Version 3.23.48
Version 3.23.49
Version 3.23.4
Version 3.23.50
Version 3.23.51
Version 3.23.52
Version 3.23.53
Version 3.23.53a
Version 3.23.5
Version 3.23.8
Version 3.23.9
Version 4.0.0
Version 4.0.1
Version 4.0.2
Version 4.0.3
Version 4.0.5a
Symantec Veritas
Version 3.4
Version 4.5
Version 4.5_fp1
Version 4.5_fp2
Version 4.5_fp3
Version 4.5_mp1
Version 4.5_mp2
Version 4.5_mp3
Symantec Veritas
Version 4.5
Version 4.5_fp1
Version 4.5_fp2
Version 4.5_fp3
Version 4.5_mp1
Version 4.5_mp2
Version 4.5_mp3

References (32)

Source: cve@mitre.org
ExploitPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.