CVE-2020-7221
- EPSS 0.27%
- Veröffentlicht 04.02.2020 17:15:13
- Zuletzt bearbeitet 21.11.2024 05:36:51
mysql_install_db in MariaDB 10.4.7 through 10.4.11 allows privilege escalation from the mysql user account to root because chown and chmod are performed unsafely, as demonstrated by a symlink attack on a chmod 04755 of auth_pam_tool_dir/auth_pam_tool...
CVE-2020-2574
- EPSS 0.16%
- Veröffentlicht 15.01.2020 17:15:18
- Zuletzt bearbeitet 21.11.2024 05:25:35
Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.6.46 and prior, 5.7.28 and prior and 8.0.18 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with ne...
CVE-2015-2325
- EPSS 0.47%
- Veröffentlicht 14.01.2020 17:15:12
- Zuletzt bearbeitet 21.11.2024 02:27:13
The compile_branch function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code, cause a denial of service (out-of-bounds heap read and crash), or possibly have other unspecified impact via a regular expression with a gro...
CVE-2015-2326
- EPSS 0.57%
- Veröffentlicht 14.01.2020 17:15:12
- Zuletzt bearbeitet 21.11.2024 02:27:13
The pcre_compile2 function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code and cause a denial of service (out-of-bounds read) via regular expression with a group containing both a forward referencing subroutine call a...
CVE-2019-2974
- EPSS 0.21%
- Veröffentlicht 16.10.2019 18:15:32
- Zuletzt bearbeitet 21.11.2024 04:41:54
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 5.6.45 and prior, 5.7.27 and prior and 8.0.17 and prior. Easily exploitable vulnerability allows low privileged attacke...
CVE-2019-2938
- EPSS 0.09%
- Veröffentlicht 16.10.2019 18:15:29
- Zuletzt bearbeitet 21.11.2024 04:41:49
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.27 and prior and 8.0.17 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via ...
CVE-2019-2805
- EPSS 0.48%
- Veröffentlicht 23.07.2019 23:15:42
- Zuletzt bearbeitet 21.11.2024 04:41:35
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Parser). Supported versions that are affected are 5.6.44 and prior, 5.7.26 and prior and 8.0.16 and prior. Easily exploitable vulnerability allows low privileged attac...
CVE-2019-2758
- EPSS 0.42%
- Veröffentlicht 23.07.2019 23:15:39
- Zuletzt bearbeitet 21.11.2024 04:41:29
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.26 and prior and 8.0.16 and prior. Easily exploitable vulnerability allows high privileged attacker with network access v...
CVE-2019-2737
- EPSS 0.2%
- Veröffentlicht 23.07.2019 23:15:38
- Zuletzt bearbeitet 21.11.2024 04:41:27
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server : Pluggable Auth). Supported versions that are affected are 5.6.44 and prior, 5.7.26 and prior and 8.0.16 and prior. Easily exploitable vulnerability allows high privil...
CVE-2019-2739
- EPSS 0.03%
- Veröffentlicht 23.07.2019 23:15:38
- Zuletzt bearbeitet 21.11.2024 04:41:27
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported versions that are affected are 5.6.44 and prior, 5.7.26 and prior and 8.0.16 and prior. Easily exploitable vulnerability allows high p...