CVE
- Id
- 16473
- CVE No.
- CVE-2006-0369
- Status
- Candidate
- Description
- ** DISPUTED ** MySQL 5.0.18 allows local users with access to a VIEW to obtain sensitive information via the "SELECT * FROM information_schema.views;" query, which returns the query that created the VIEW. NOTE: this issue has been disputed by third parties, saying that the availability of the schema is a normal and sometimes desired aspect of database access.
- Phase
- Assigned (20060122)
- Votes
- None (candidate not yet proposed)
- Comments