HomeMysqlCVE-2009-5026

CVE-2009-5026

UNKNOWN
6.8CVSS
Published: 2012-08-17
Updated: 2025-04-11
AI Analysis

Description

The executable comment feature in MySQL 5.0.x before 5.0.93 and 5.1.x before 5.1.50, when running in certain slave configurations in which the slave is running a newer version than the master, allows remote attackers to execute arbitrary SQL commands via custom comments.

CVSS Metrics

Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Access Vector
network
Access Cmplx
medium
Auth
none
Confidentiality
partial
Integrity
partial
Availability
partial
Weaknesses
CWE-89

Metadata

Primary Vendor
MYSQL
Published
8/17/2012
Last Modified
4/11/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

mysql : mysqlmysql : mysqlmysql : mysqlmysql : mysqlmysql : mysqlmysql : mysqlmysql : mysqlmysql : mysqlmysql : mysqlmysql : mysqlmysql : mysqlmysql : mysqlmysql : mysqlmysql : mysqlmysql : mysqlmysql : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqlmysql : mysqlmysql : mysqlmysql : mysqlmysql : mysqlmysql : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysqloracle : mysql

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2009-5026 | UNKNOWN Severity | CVEDatabase.com | CVEDatabase.com