Back

MEDIUM

mysql: Server: Audit Plug-in unspecified vulnerability (CPU Apr 2021)

Published Apr 22, 2021

Description

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Audit Plug-in). Supported versions that are affected are 5.7.33 and prior and 8.0.23 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 4.3 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N).

Affected products

Remediation

No remediation recorded yet.

Weaknesses (0)

No CWE recorded.

References (8)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner oracle
Published Apr 22, 2021
Updated Sep 26, 2024
Reserved Dec 9, 2020

CISA Vulnrichment

Updated Sep 26, 2024

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

Severity Moderate
Public date Apr 20, 2021
Bugzilla 1951753

ENISA EUVD

Assigner oracle
Published Apr 22, 2021
Updated Sep 26, 2024

GitHub

No data