cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-21272,https://securityvulnerability.io/vulnerability/CVE-2024-21272,Vulnerability in MySQL Connectors Could Lead to Takeover,"A vulnerability exists in the MySQL Connectors product of Oracle MySQL, specifically affecting Connector/Python. All supported versions up to and including 9.0.0 are susceptible. The vulnerability poses a risk as it allows a low-privileged attacker with network access to exploit the MySQL Connectors through multiple protocols. Successful exploitation can lead to a compromise of the MySQL Connectors, potentially enabling an unauthorized takeover. This issue highlights the importance of maintaining robust security practices for configurations and access controls within MySQL environments.",Oracle,Mysql Connectors,7.5,HIGH,0.0004799999878741801,false,false,false,false,,false,false,2024-10-15T19:52:58.536Z,0 CVE-2024-21262,https://securityvulnerability.io/vulnerability/CVE-2024-21262,Unauthorized Access to MySQL Connectors Data and Partial Denial of Service Vulnerability,"Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/ODBC). Supported versions that are affected are 9.0.0 and prior. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Connectors. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of MySQL Connectors accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of MySQL Connectors. CVSS 3.1 Base Score 6.5 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L).",Oracle,Mysql Connectors,6.5,MEDIUM,0.0004600000102072954,false,false,false,false,,false,false,2024-10-15T19:52:54.911Z,0 CVE-2024-21247,https://securityvulnerability.io/vulnerability/CVE-2024-21247,Oracle MySQL Client vulnerability allows high privileged attackers to compromise sensitive data,"Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of MySQL Client accessible data as well as unauthorized read access to a subset of MySQL Client accessible data. CVSS 3.1 Base Score 3.8 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N).",Oracle,"Mysql Cluster,Mysql Client",3.8,LOW,0.0004299999854993075,false,false,false,false,,false,false,2024-10-15T19:52:50.451Z,0 CVE-2024-21244,https://securityvulnerability.io/vulnerability/CVE-2024-21244,Oracle MySQL Server Vulnerability Allows High Privileged Attackers to Compromise Data,"A vulnerability exists in the MySQL Server component of Oracle MySQL that allows a high privileged attacker with network access via multiple protocols to exploit the system. This vulnerability can lead to unauthorized read access to certain data within MySQL Server. Versions impacted include 8.4.2 and earlier, as well as 9.0.1 and earlier. Addressing this issue is crucial for maintaining the confidentiality of data managed by Oracle's MySQL products.",Oracle,Mysql Server,2.2,LOW,0.00044999999227002263,false,false,false,false,,false,false,2024-10-15T19:52:49.601Z,0 CVE-2024-21243,https://securityvulnerability.io/vulnerability/CVE-2024-21243,Vulnerability in MySQL Server Allows Highly Privileged Attackers to Read Subset of Data,Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Telemetry). Supported versions that are affected are 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.1 Base Score 2.2 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:N).,Oracle,Mysql Server,2.2,LOW,0.00044999999227002263,false,false,false,false,,false,false,2024-10-15T19:52:49.305Z,0 CVE-2024-21241,https://securityvulnerability.io/vulnerability/CVE-2024-21241,MySQL Server Vulnerability Allows High Privileged Attackers to Cause Hung or Repeated Crash of Server,"Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).",Oracle,Mysql Server,4.9,MEDIUM,0.0004400000034365803,false,false,false,false,,false,false,2024-10-15T19:52:48.644Z,0 CVE-2024-21239,https://securityvulnerability.io/vulnerability/CVE-2024-21239,Highly Easily Exploitable Vulnerability in MySQL Server Could Lead to Hang or Complete DOS,"Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).",Oracle,Mysql Server,4.9,MEDIUM,0.0004400000034365803,false,false,false,false,,false,false,2024-10-15T19:52:48.332Z,0 CVE-2024-21238,https://securityvulnerability.io/vulnerability/CVE-2024-21238,Oracle MySQL Server Vulnerability Allows Low-Privileged Attacks,"Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Thread Pooling). Supported versions that are affected are 8.0.39 and prior, 8.4.1 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H).",Oracle,"Mysql Cluster,Mysql Server",5.3,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-10-15T19:52:47.971Z,0 CVE-2024-21237,https://securityvulnerability.io/vulnerability/CVE-2024-21237,Partial denial of service vulnerability in MySQL Server (CVE-2022-24515),"Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication GCS). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of MySQL Server. CVSS 3.1 Base Score 2.2 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:L).",Oracle,Mysql Server,2.2,LOW,0.0004400000034365803,false,false,false,false,,false,false,2024-10-15T19:52:47.598Z,0 CVE-2024-21236,https://securityvulnerability.io/vulnerability/CVE-2024-21236,Vulnerability in Oracle MySQL Server Could Lead to Hang or Crash,"Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).",Oracle,Mysql Server,4.9,MEDIUM,0.0004400000034365803,false,false,false,false,,false,false,2024-10-15T19:52:47.226Z,0 CVE-2024-21232,https://securityvulnerability.io/vulnerability/CVE-2024-21232,,Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are affected are 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of MySQL Server. CVSS 3.1 Base Score 2.2 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:L).,Oracle,Mysql Server,2.2,LOW,0.0004400000034365803,false,false,false,false,,false,false,2024-10-15T19:52:45.931Z,0 CVE-2024-21231,https://securityvulnerability.io/vulnerability/CVE-2024-21231,,"Vulnerability in the MySQL Server product of Oracle MySQL (component: Client programs). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of MySQL Server. CVSS 3.1 Base Score 3.1 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L).",Oracle,Mysql Server,3.1,LOW,0.0004400000034365803,false,false,false,false,,false,false,2024-10-15T19:52:45.633Z,0 CVE-2024-21230,https://securityvulnerability.io/vulnerability/CVE-2024-21230,,"Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).",Oracle,"Mysql Cluster,Mysql Server",6.5,MEDIUM,0.0004400000034365803,false,false,false,false,,false,false,2024-10-15T19:52:45.238Z,0 CVE-2024-21219,https://securityvulnerability.io/vulnerability/CVE-2024-21219,,"Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).",Oracle,Mysql Server,4.9,MEDIUM,0.0004400000034365803,false,false,false,false,,false,false,2024-10-15T19:52:44.460Z,0 CVE-2024-21218,https://securityvulnerability.io/vulnerability/CVE-2024-21218,,"Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).",Oracle,"Mysql Cluster,Mysql Server",4.9,MEDIUM,0.0004400000034365803,false,false,false,false,,false,false,2024-10-15T19:52:44.128Z,0 CVE-2024-21213,https://securityvulnerability.io/vulnerability/CVE-2024-21213,,"Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.2 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:N/I:N/A:H).",Oracle,Mysql Server,4.2,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-10-15T19:52:42.559Z,0 CVE-2024-21212,https://securityvulnerability.io/vulnerability/CVE-2024-21212,,Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Health Monitor). Supported versions that are affected are 8.0.39 and prior and 8.4.0. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).,Oracle,Mysql Server,4.4,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-10-15T19:52:42.238Z,0 CVE-2024-21209,https://securityvulnerability.io/vulnerability/CVE-2024-21209,,Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Client accessible data. CVSS 3.1 Base Score 2.0 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:N/A:N).,Oracle,Mysql Client,2,LOW,0.0004299999854993075,false,false,false,false,,false,false,2024-10-15T19:52:41.222Z,0 CVE-2024-21207,https://securityvulnerability.io/vulnerability/CVE-2024-21207,,"Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.38 and prior, 8.4.1 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).",Oracle,Mysql Server,4.9,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-10-15T19:52:40.598Z,0 CVE-2024-21204,https://securityvulnerability.io/vulnerability/CVE-2024-21204,,Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PS). Supported versions that are affected are 8.4.0 and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).,Oracle,Mysql Server,4.9,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-10-15T19:52:39.622Z,0 CVE-2024-21203,https://securityvulnerability.io/vulnerability/CVE-2024-21203,,"Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: FTS). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).",Oracle,"Mysql Cluster,Mysql Server",4.9,MEDIUM,0.0004400000034365803,false,false,false,false,,false,false,2024-10-15T19:52:39.267Z,0 CVE-2024-21201,https://securityvulnerability.io/vulnerability/CVE-2024-21201,,"Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).",Oracle,Mysql Server,4.9,MEDIUM,0.0004400000034365803,false,false,false,false,,false,false,2024-10-15T19:52:38.423Z,0 CVE-2024-21200,https://securityvulnerability.io/vulnerability/CVE-2024-21200,,Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).,Oracle,Mysql Server,4.9,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-10-15T19:52:38.110Z,0 CVE-2024-21199,https://securityvulnerability.io/vulnerability/CVE-2024-21199,,"Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).",Oracle,Mysql Server,4.9,MEDIUM,0.0004400000034365803,false,false,false,false,,false,false,2024-10-15T19:52:37.770Z,0 CVE-2024-21198,https://securityvulnerability.io/vulnerability/CVE-2024-21198,,"Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).",Oracle,Mysql Server,4.9,MEDIUM,0.0004400000034365803,false,false,false,false,,false,false,2024-10-15T19:52:37.426Z,0