- Description
- Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Options). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.1 Base Score 1.8 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:L/I:N/A:N).
- Source
- secalert_us@oracle.com
- NVD status
- Awaiting Analysis
CVSS 3.1
- Type
- Secondary
- Base score
- 1.8
- Impact score
- 1.4
- Exploitability score
- 0.3
- Vector string
- CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:L/I:N/A:N
- Severity
- LOW
- 134c704f-9b21-4f2e-91b3-4a467353bcc0
- CWE-732
- Hype score
- Not currently trending
New post from https://t.co/uXvPWJy6tj (CVE-2025-21520 | Oracle MySQL Server up to 7.6.32/8.0.40/8.4.3/9.1.0 Options improper authorization (Nessus ID 214536)) has been published on https://t.co/7jDuQyC3az
@WolfgangSesin
23 Jan 2025
24 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-21520 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Options). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior an… https://t.co/ZtRpjQdfXd
@CVEnew
21 Jan 2025
292 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes