Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-08446
HistoryJul 21, 2022 - 12:00 a.m.

Oracle MySQL Server PAM Auth Component Input Validation Error Vulnerability

2022-07-2100:00:00
China National Vulnerability Database
www.cnvd.org.cn
11

0.001 Low

EPSS

Percentile

22.9%

Oracle MySQL is an open source relational database management system from Oracle Corporation. MySQL Server is one of the database server components, and an input validation error vulnerability exists in Oracle MySQL 8.0.28 and earlier versions, which originates in the PAM Auth component of MySQL Server. An incorrect input validation exists, which can be exploited by an attacker to create, delete, or modify critical data or all MySQL Server accessible data without authorization.

CPENameOperatorVersion
oracle mysql serverle8.0.29