6.8
CVE-2025-30722
- EPSS 0.06%
- Veröffentlicht 15.04.2025 20:31:15
- Zuletzt bearbeitet 03.11.2025 20:18:15
- Quelle secalert_us@oracle.com
- CVE-Watchlists
- Unerledigt
Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all MySQL Client accessible data as well as unauthorized update, insert or delete access to some of MySQL Client accessible data. CVSS 3.1 Base Score 5.9 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:N).
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Oracle ≫ Mysql Cluster Version >= 7.6.0 <= 7.6.33
Oracle ≫ Mysql Cluster Version >= 8.0.0 <= 8.0.41
Oracle ≫ Mysql Cluster Version >= 8.4.0 <= 8.4.4
Oracle ≫ Mysql Cluster Version >= 9.0.0 <= 9.2.0
Oracle ≫ Mysql Client Version >= 8.0.0 <= 8.0.41
Oracle ≫ Mysql Client Version >= 8.4.0 <= 8.4.4
Oracle ≫ Mysql Client Version >= 9.0.0 <= 9.2.0
Netapp ≫ Active Iq Unified Manager Version- SwPlatformvmware_vsphere
Netapp ≫ Active Iq Unified Manager Version- SwPlatformwindows
Netapp ≫ Snapcenter Version-
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.06% | 0.188 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.8 | 1.6 | 5.2 |
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N
|
| secalert_us@oracle.com | 5.3 | 1.6 | 3.6 |
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
|