Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-01497
HistoryOct 19, 2022 - 12:00 a.m.

Oracle MySQL Installer Information Disclosure Vulnerability (CNVD-2023-01497)

2022-10-1900:00:00
China National Vulnerability Database
www.cnvd.org.cn
15
oracle
mysql
information disclosure
vulnerability
installer
unauthorized updates
unauthorized reads
denial of service
cnvd-2023-01497

EPSS

0

Percentile

15.6%

Oracle MySQL Server, a relational database from Oracle Corporation, is vulnerable to an information disclosure in the Installer: General component of Oracle MySQL Installer 1.6.3 and prior versions. An attacker can compromise MySQL Installer and perform unauthorized updates, insertions, or deletions to certain accessible data in MySQL Installer, and unauthorized reads to a subset of its accessible data, and cause a partial denial of service in MySQL Installer.

EPSS

0

Percentile

15.6%