← All CVEs

CVE-2012-2122

medium · 5.1

A public exploit / detection template exists

Weaponised detection is publicly available, which meaningfully raises real-world risk regardless of CVSS. nuclei-templates

sql/password.c in Oracle MySQL 5.1.x before 5.1.63, 5.5.x before 5.5.24, and 5.6.x before 5.6.6, and MariaDB 5.1.x before 5.1.62, 5.2.x before 5.2.12, 5.3.x before 5.3.6, and 5.5.x before 5.5.23, when running in certain environments with certain implementations of the memcmp function, allows remote attackers to bypass authentication by repeatedly authenticating with the same incorrect password, which eventually causes a token comparison to succeed due to an improperly-checked return value.

5.1
CVSS
96.5%
EPSS (exploit prob.)
100th
EPSS percentile
2012-06-26
Published

AV:N/AC:H/Au:N/C:P/I:P/A:P

Weaknesses

CWE-287

Affected products

VendorProductAffected versions
oraclemysql5.1.51
oraclemysql5.1.52
oraclemysql5.1.52
oraclemysql5.1.53
oraclemysql5.1.54
oraclemysql5.1.55
oraclemysql5.1.56
oraclemysql5.1.57
oraclemysql5.1.58
oraclemysql5.1.59
oraclemysql5.1.60
oraclemysql5.1.61
oraclemysql5.5.10
oraclemysql5.5.11
oraclemysql5.5.12
oraclemysql5.5.13
oraclemysql5.5.14
oraclemysql5.5.15
oraclemysql5.5.16
oraclemysql5.5.17
oraclemysql5.5.18
oraclemysql5.5.19
oraclemysql5.5.20
oraclemysql5.5.21
oraclemysql5.6.2
oraclemysql5.6.3
oraclemysql5.6.4
oraclemysql5.6.5
mariadbmariadb5.1.41
mariadbmariadb5.1.42
mariadbmariadb5.1.44
mariadbmariadb5.1.47
mariadbmariadb5.1.49
mariadbmariadb5.1.50
mariadbmariadb5.1.51
mariadbmariadb5.1.53
mariadbmariadb5.1.55
mariadbmariadb5.1.60
mariadbmariadb5.1.61
mariadbmariadb5.2.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2012-2122