← Vulnerability feed

Vulnerability record · CVE-2007-5969 · published 10 December 2007

CVE-2007-5969: Mysql server permissions and access controls vulnerability

Mysql · Mysql Server

MySQL Community Server 5.0.x before 5.0.51, Enterprise Server 5.0.x before 5.0.52, Server 5.1.x before 5.1.23, and Server 6.0.x before 6.0.4, when a table relies on symlinks created through explicit DATA DIRECTORY and INDEX DIRECTORY options, allows remote authenticated users to overwrite system table information and gain privileges via a RENAME TABLE statement that changes the symlink to point to an existing file.

7.1 CVSS 2.0 High EPSS 14% · top 3.5% CWE-264 · Permissions and access controls
7.1CVSS 2.0 base score
14%EPSS exploitation probability, 30 days
NoNot in CISA KEV
3Affected product versions listed by NVD
82References, 2 tagged exploit
16 Jun 2026Last modified by NVD

Description

MySQL Community Server 5.0.x before 5.0.51, Enterprise Server 5.0.x before 5.0.52, Server 5.1.x before 5.1.23, and Server 6.0.x before 6.0.4, when a table relies on symlinks created through explicit DATA DIRECTORY and INDEX DIRECTORY options, allows remote authenticated users to overwrite system table information and gain privileges via a RENAME TABLE statement that changes the symlink to point to an existing file.

AV:N/AC:H/Au:S/C:C/I:C/A:C

Affected products

3 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://bugs.mysql.com/32111
http://dev.mysql.com/doc/refman/4.1/en/news-4-1-24.html
http://dev.mysql.com/doc/refman/5.0/en/releasenotes-cs-5-0-51.html
http://dev.mysql.com/doc/refman/5.0/en/releasenotes-es-5-0-52.html
http://forums.mysql.com/read.php?3%2C186931%2C186931
http://lists.apple.com/archives/security-announce/2008/Oct/msg00001.html
http://lists.mysql.com/announce/495 ExploitVendor Advisory
http://lists.opensuse.org/opensuse-security-announce/2008-02/msg00003.html
http://secunia.com/advisories/27981 Vendor Advisory
http://secunia.com/advisories/28025 Vendor Advisory
http://secunia.com/advisories/28040 Vendor Advisory
http://secunia.com/advisories/28063 Vendor Advisory
http://secunia.com/advisories/28099 Vendor Advisory
http://secunia.com/advisories/28108 Vendor Advisory
http://secunia.com/advisories/28128 Vendor Advisory
http://secunia.com/advisories/28343 Vendor Advisory
http://secunia.com/advisories/28559 Vendor Advisory
http://secunia.com/advisories/28838 Vendor Advisory
http://secunia.com/advisories/29706 Vendor Advisory
http://secunia.com/advisories/32222 Vendor Advisory
http://security.gentoo.org/glsa/glsa-200804-04.xml
http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.428959
http://support.apple.com/kb/HT3216
http://www.debian.org/security/2008/dsa-1451
http://www.mandriva.com/security/advisories?name=MDKSA-2007:243
http://www.redhat.com/support/errata/RHSA-2007-1155.html Vendor Advisory
http://www.redhat.com/support/errata/RHSA-2007-1157.html Vendor Advisory
http://www.securityfocus.com/archive/1/486477/100/0/threaded
http://www.securityfocus.com/bid/26765
http://www.securityfocus.com/bid/31681 Patch
http://www.securitytracker.com/id?1019060
http://www.vupen.com/english/advisories/2007/4142 Vendor Advisory
http://www.vupen.com/english/advisories/2007/4198 Vendor Advisory
http://www.vupen.com/english/advisories/2008/0560/references Vendor Advisory
http://www.vupen.com/english/advisories/2008/1000/references Vendor Advisory
http://www.vupen.com/english/advisories/2008/2780 Vendor Advisory
https://issues.rpath.com/browse/RPL-1999
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10509
https://usn.ubuntu.com/559-1/
https://www.redhat.com/archives/fedora-package-announce/2007-December/msg00467.html

Track CVE-2007-5969 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

5.0CVE-2007-3780Mysql community server improper input validation vulnerabilityMySQL Community Server before 5.0.45 allows remote attackers to cause a denial of service (daemon crash) via a malformed password packet in the conne…EPSS 14%4.0CVE-2012-1696Mysql vulnerabilityUnspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.19 and earlier allows remote authenticated users to affect availability v…EPSS 1.9%4.0CVE-2007-3781Mysql community server vulnerabilityMySQL Community Server before 5.0.45 does not require privileges such as SELECT for the source table in a CREATE TABLE LIKE statement, which allows r…EPSS 1.8%3.5CVE-2007-3782Mysql community server permissions and access controls vulnerabilityMySQL Community Server before 5.0.45 allows remote authenticated users to gain update privileges for a table in another database via a view that refe…EPSS 1.6%5.1CVE-2015-3246libuser userhelper direct /etc/passwd write race conditionlibuser before 0.56.13-8 and 0.60 before 0.60-7, as used by the userhelper program in the usermode package, modifies /etc/passwd directly instead of …KEVEPSS 8.8%analysed6.6CVE-2015-1769Windows Mount Manager symlink mishandling allows local privilege escalationThe Windows Mount Manager mishandles symbolic links, allowing a crafted USB device to trigger arbitrary code execution. Because the flaw is in a core…KEVEPSS 4.1%analysed7.8CVE-2016-3643SolarWinds Virtualization Manager sudo misconfiguration privilege escalationSolarWinds Virtualization Manager 6.3.1 and earlier ship with a misconfigured sudo policy that lets a local user run privileged commands, as shown by…KEVEPSS 3.7%analysed

Source: NIST National Vulnerability Database (record CVE-2007-5969), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.