How to Buy
This script is Copyright (C) 2012-2014 Tenable Network Security, Inc.
A remote database client have a cross-site scripting
The version of MySQL installed on the remote host is earlier than
5.0.89 / 5.1.42 / 5.4.2 / 5.5.1 / 6.0.14 and thus does not properly
encode angle brackets when 'mysql --html' option is used. Depending
on how the output of the mysql client command is processed, the user
may be vulnerable to cross-site scripting attacks.
See also :
Upgrade to MySQL version 5.0.89 / 5.1.42 / 5.4.2 / 5.5.1 / 6.0.14 or
Risk factor :
Low / CVSS Base Score : 2.6
CVSS Temporal Score : 2.1
Public Exploit Available : true
Nessus Plugin ID: 17811 ()
Bugtraq ID: 31486
CVE ID: CVE-2008-4456
Nessus Professional: Scan unlimited IPs, run compliance checks & moreNessus Cloud: The power of Nessus for teams – from the cloud
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.