MySQL before 4.1.23, 5.0.x before 5.0.42, and 5.1.x before 5.1.18 does not require the DROP privilege for RENAME TABLE statements, which allows remote authenticated users to rename arbitrary tables.
Get an AI-powered plain-language explanation of this vulnerability and remediation steps.
Login to generate AI explanation64 reference(s) from NVD