Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.6.47 and prior, 5.7.29 and prior and 8.0.19 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Client accessible data. CVSS 3.1 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
History
21 Nov 2024, 06:02
Type | Values Removed | Values Added |
---|---|---|
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CS5THZSGI7O2CZO44NWYE57AG2T7NK3K/ - | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/T7EAHJPWOOF4D6PEFLXW5IQWRRSZ3HRC/ - | |
References | () https://security.gentoo.org/glsa/202105-27 - Third Party Advisory | |
References | () https://security.netapp.com/advisory/ntap-20210622-0001/ - Third Party Advisory | |
References | () https://www.oracle.com/security-alerts/cpujan2021.html - Vendor Advisory |
30 Mar 2022, 19:21
Type | Values Removed | Values Added |
---|---|---|
References | (CONFIRM) https://security.netapp.com/advisory/ntap-20210622-0001/ - Third Party Advisory | |
References | (GENTOO) https://security.gentoo.org/glsa/202105-27 - Third Party Advisory | |
CPE | cpe:2.3:a:netapp:oncommand_insight:-:*:*:*:*:*:*:* cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:windows:*:* cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vmware_vsphere:*:* cpe:2.3:a:netapp:oncommand_workflow_automation:-:*:*:*:*:*:*:* |
22 Jun 2021, 09:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
26 May 2021, 12:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
Information
Published : 2021-01-20 15:15
Updated : 2024-11-21 06:02
NVD link : CVE-2021-2007
Mitre link : CVE-2021-2007
CVE.ORG link : CVE-2021-2007
JSON object : View
Products Affected
netapp
- oncommand_workflow_automation
- oncommand_insight
- active_iq_unified_manager
fedoraproject
- fedora
oracle
- mysql
mariadb
- mariadb
CWE