← לוח פגיעויות

CVE-2000-0957

טרם דורגה

טרם דורג — בהתאם למדיניות NVD מאפריל 2026, רוב ה-CVE אינם מנותחים מיידית. ציון EPSS (אם קיים) עדיין מוצג.

תיאור (מקור, אנגלית)

The pluggable authentication module for mysql (pam_mysql) before 0.4.7 does not properly cleanse user input when constructing SQL statements, which allows attackers to obtain plaintext passwords or hashes.

מדדים

EPSS — סבירות ניצול
1% (אחוזון 100) נכון ל-23/9/2026

מוצרים מושפעים

pam_mysql: pam mysql

קישורים