Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-18923 | Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Client accessible data. CVSS 3.1 Base Score 2.0 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:N/A:N). |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 11 Jul 2025 22:45:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 14 Mar 2025 01:15:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-200 |
Fri, 22 Nov 2024 21:00:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Sat, 19 Oct 2024 11:30:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Title | mysql: From CVEorg collector | mysql: mysqldump unspecified vulnerability (CPU Oct 2024) |
Thu, 17 Oct 2024 23:15:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 17 Oct 2024 06:00:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Oracle mysql
|
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*:* cpe:2.3:a:oracle:mysql:9.0.0:*:*:*:*:*:*:* cpe:2.3:a:oracle:mysql:9.0.1:*:*:*:*:*:*:* |
|
| Vendors & Products |
Oracle mysql
|
Wed, 16 Oct 2024 10:15:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Title | mysql: From CVEorg collector | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Wed, 16 Oct 2024 05:00:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Client accessible data. CVSS 3.1 Base Score 2.0 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:N/A:N). | |
| First Time appeared |
Oracle
Oracle mysql Client |
|
| CPEs | cpe:2.3:a:oracle:mysql_client:8.4.2_and_prior:*:*:*:*:*:*:* cpe:2.3:a:oracle:mysql_client:9.0.1_and_prior:*:*:*:*:*:*:* |
|
| Vendors & Products |
Oracle
Oracle mysql Client |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: oracle
Published:
Updated: 2025-03-13T15:50:55.085Z
Reserved: 2023-12-07T22:28:10.690Z
Link: CVE-2024-21209
Updated: 2024-11-01T17:03:07.114Z
Status : Modified
Published: 2024-10-15T20:15:09.640
Modified: 2025-03-13T16:15:15.907
Link: CVE-2024-21209
OpenCVE Enrichment
No data.
EUVD