Lucene search

K
osvGoogleOSV:GHSA-W6F2-8WX4-47R5
HistoryMay 24, 2022 - 7:18 p.m.

Incorrect Authorization in MySQL Connector Java

2022-05-2419:18:20
Google
osv.dev
61
mysql
oracle
vulnerability
authorization
connector/j
network access
exploit
cvss 3.1
confidentiality
availability
dos

EPSS

0.001

Percentile

27.3%

Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are 8.0.26 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Connectors. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all MySQL Connectors accessible data and unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Connectors. CVSS 3.1 Base Score 5.9 (Confidentiality and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:H).