Immunity, Inc.
Name mysql_auth_bypass
CVE CVE-2004-0627
Exploit Pack CANVAS
DescriptionMySQL authentication bypass
NotesCVE Name: CVE-2004-0627
OSVDB: http://www.osvdb.org/displayvuln.php?osvdb_id=7475
Notes:
Mysql authentication can be bypass by a special crafted password with zeroed-strings password. Note
that the version 4.1.3 should really be treated as 4.1.03 and can be misleading when testing against
a server that has a version number of say 4.1.20.

Date public: 07/2004
CVE Url: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0627
CVSS: 10.0

Learn more about the CANVAS Exploit Pack here: CANVAS