CVE Vulnerabilities

CVE-2007-3567

Published: Jul 05, 2007 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

MySQLDumper 1.21b through 1.23 REV227 uses a Limit GET statement in the .htaccess authentication mechanism, which allows remote attackers to bypass authentication requirements via HTTP POST requests.

Affected Software

Name Vendor Start Version End Version
Mysqldumper Mysqldumper 1.21 (including) 1.21 (including)
Mysqldumper Mysqldumper 1.22 (including) 1.22 (including)
Mysqldumper Mysqldumper 1.23 (including) 1.23 (including)
Mysqldumper Mysqldumper typo3-extension_0.0.5 (including) typo3-extension_0.0.5 (including)

References