Oracle MySQL
cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*
- >= 8.0.0, <= 8.0.42
- >= 8.4.0, <= 8.4.5
- >= 9.0.0, <= 9.3.0
A vulnerability has been identified in the MySQL Server component of Oracle MySQL, affecting versions 8.0.0 through 8.0.42, 8.4.0 through 8.4.5, and 9.0.0 through 9.3.0. This vulnerability allows a high-privileged attacker with network access to MySQL Server to cause a complete denial-of-service by hanging the server or causing a frequent, repeatable crash. Additionally, the vulnerability permits unauthorized updates, inserts, or deletions of some data accessible to MySQL Server.
Exploitation of this vulnerability leads to a complete denial-of-service on the MySQL Server, causing it to hang or crash frequently and repeatedly. Furthermore, it allows unauthorized modifications to some of the data accessible on the MySQL Server.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.