CVE-2010-1621

The mysql_uninstall_plugin function in sql/sql_plugin.cc in MySQL 5.1 before 5.1.46 does not check privileges before uninstalling a plugin, which allows remote attackers to uninstall arbitrary plugins via the UNINSTALL PLUGIN command.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:N/I:P/A:N
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 61%
VendorProductVersion
mysqlmysql
𝑥
≤ 5.1.45
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
mysql-5.1
maverick
not-affected
lucid
dne
karmic
dne
jaunty
dne
hardy
dne
dapper
dne
mysql-dfsg-5.0
maverick
dne
lucid
dne
karmic
not-affected
jaunty
not-affected
hardy
not-affected
dapper
not-affected
mysql-dfsg-5.1
maverick
dne
lucid
Fixed 5.1.41-3ubuntu12.3
released
karmic
Fixed 5.1.37-1ubuntu5.4
released
jaunty
ignored
hardy
dne
dapper
dne
Common Weakness Enumeration