CVE detail
CVE-2003-0150 — CVE-2003-0150
Published 2003-03-24 · Modified 2026-06-16 · Vendor oracle · Product mysql · Source nvd
UNKNOWN
severity
CVSS-derived band
0.4483
EPSS probability
exploitation probability, 30d
99.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
MySQL 3.23.55 and earlier creates world-writeable files and allows mysql users to gain root privileges by using the "SELECT * INFO OUTFILE" operator to overwrite a configuration file and cause mysql to run as root upon restart, as demonstrated by modifying my.cnf.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References