DirectorySecurity Advisories
Sign In
Security Advisories

CVE-2023-22102

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2023-22102

CGA ID

CGA-2vxp-5gw9-mqfx

Severity

8.3

High

CVSS V3

Summary

MySQL Connectors takeover vulnerability

Description

Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are 8.1.0 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Connectors. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in MySQL Connectors, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of MySQL Connectors.

References

Affected packages


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images