CVE Vulnerabilities

CVE-2010-4178

Insufficiently Protected Credentials

Published: Nov 06, 2019 | Modified: Nov 08, 2019
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

MySQL-GUI-tools (mysql-administrator) leaks passwords into process list after with launch of mysql text console

Weakness

The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.

Affected Software

Name Vendor Start Version End Version
Mysql-gui-tools Oracle - (including) - (including)
Mysql-gui-tools Ubuntu hardy *
Mysql-gui-tools Ubuntu lucid *
Mysql-gui-tools Ubuntu natty *
Mysql-gui-tools Ubuntu oneiric *

Potential Mitigations

References