Description
Buffer overflow in MySQL daemon (mysqld) before 3.23.50, and 4.0 beta before 4.02, on the Win32 platform, allows local users to execute arbitrary code via a long "datadir" parameter in the my.ini initialization file, whose permissions on Windows allow Full Control to the Everyone group.
Remediation
References
Related Vulnerabilities
WordPress Plugin Asgaros Forum Multiple SQL Injection Vulnerabilities (1.15.12)
MySQL CVE-2017-3317 Vulnerability (CVE-2017-3317)
WordPress Plugin Shantz WordPress QOTD Cross-Site Request Forgery (1.2.2)
WordPress Plugin Cool Timeline (Horizontal & Vertical Timeline) Cross-Site Request Forgery (2.0.2)
b2evolution Credentials Management Errors Vulnerability (CVE-2016-9479)