Medium severity5.5NVD Advisory· Published Oct 23, 2007· Updated Jun 16, 2026
CVE-2007-5626
CVE-2007-5626
Description
make_catalog_backup in Bacula 2.2.5, and probably earlier, sends a MySQL password as a command line argument, and sometimes transmits cleartext e-mail containing this command line, which allows context-dependent attackers to obtain the password by listing the process and its arguments, or by sniffing the network.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
9- bugs.bacula.org/view.phpnvdPermissions RequiredVendor Advisory
- bugs.debian.org/cgi-bin/bugreport.cginvdIssue TrackingMailing ListThird Party Advisory
- secunia.com/advisories/27243nvdBroken LinkThird Party Advisory
- secunia.com/advisories/31184nvdBroken LinkThird Party Advisory
- security.gentoo.org/glsa/glsa-200807-10.xmlnvdThird Party Advisory
- www.securityfocus.com/bid/26156nvdBroken LinkThird Party AdvisoryVDB Entry
- www.vupen.com/english/advisories/2007/3572nvdBroken LinkPermissions RequiredThird Party Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/37336nvdThird Party AdvisoryVDB Entry
- osvdb.org/41861nvdBroken Link
News mentions
0No linked articles in our index yet.