CVE-2007-2691

Description

From CVE.org

MySQL before 4.1.23, 5.0.x before 5.0.42, and 5.1.x before 5.1.18 does not require the DROP privilege for RENAME TABLE statements, which allows remote authenticated users to rename arbitrary tables.

Frequently Asked Questions

Want to get errata notifications? Sign up here.