EIP-2026-119015
PRE-CVEOracle MySQL for Microsoft Windows - Payload Execution (Metasploit)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-119015. PoCs published by Metasploit.
AI-analyzed exploit summary This Metasploit module exploits MySQL on Windows by uploading a custom UDF (User Defined Function) via SELECT ... INTO DUMPFILE to achieve remote command execution. It targets MySQL versions <= 5.5.9 on Windows, leveraging weak directory permissions and LocalSystem privileges.
Description
Oracle MySQL for Microsoft Windows - Payload Execution (Metasploit)
Exploits (1)
This Metasploit module exploits MySQL on Windows by uploading a custom UDF (User Defined Function) via SELECT ... INTO DUMPFILE to achieve remote command execution. It targets MySQL versions <= 5.5.9 on Windows, leveraging weak directory permissions and LocalSystem privileges.